Show patches with: Submitter = Stephen Smalley       |   354 patches
« 1 2 3 4 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v2] selinux: Deprecate /sys/fs/selinux/user [v2] selinux: Deprecate /sys/fs/selinux/user - - - --- 2024-10-04 Stephen Smalley pcmoore Accepted
libselinux: formally deprecate security_compute_user() libselinux: formally deprecate security_compute_user() 1 - - --- 2024-10-04 Stephen Smalley bachradsusi Accepted
selinux: Deprecate /sys/fs/selinux/user selinux: Deprecate /sys/fs/selinux/user - - - --- 2024-10-04 Stephen Smalley pcmoore Superseded
[testsuite,v2] tests/extended_socket_class: test SMC sockets [testsuite,v2] tests/extended_socket_class: test SMC sockets - - - --- 2024-08-29 Stephen Smalley omos Accepted
[testsuite] policy,tests: add tests for netlink xperms [testsuite] policy,tests: add tests for netlink xperms - - 1 --- 2024-08-28 Stephen Smalley omos Accepted
selinux: annotate false positive data race to avoid KCSAN warnings selinux: annotate false positive data race to avoid KCSAN warnings - - - --- 2024-08-26 Stephen Smalley pcmoore Accepted
[testsuite] tests/extended_socket_class: test SMC sockets [testsuite] tests/extended_socket_class: test SMC sockets - 1 - --- 2024-08-16 Stephen Smalley omos Superseded
[v3,2/2,testsuite] tests/nfs_filesystem: comment out failing mount [v3,1/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-31 Stephen Smalley omos Accepted
[v3,1/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now [v3,1/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-31 Stephen Smalley omos Accepted
[v2,2/2] tests/nfs_filesystem: remove failing mount [v2,1/2] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-29 Stephen Smalley omos Superseded
[v2,1/2] tools/nfs.sh: comment out the fscontext= tests for now [v2,1/2] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-29 Stephen Smalley omos Superseded
[2/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now [1/2,testsuite] tests/nfs_filesystem: remove failing mount - - - --- 2024-05-06 Stephen Smalley omos Superseded
[1/2,testsuite] tests/nfs_filesystem: remove failing mount [1/2,testsuite] tests/nfs_filesystem: remove failing mount - - - --- 2024-05-06 Stephen Smalley omos Superseded
[v3] nfsd: set security label during create operations [v3] nfsd: set security label during create operations - 2 - --- 2024-05-03 Stephen Smalley pcmoore Handled Elsewhere
[v2] nfsd: set security label during create operations [v2] nfsd: set security label during create operations - 1 - --- 2024-05-02 Stephen Smalley pcmoore Superseded
[RFC] nfsd: set security label during create operations [RFC] nfsd: set security label during create operations - - - --- 2024-05-02 Stephen Smalley Handled Elsewhere
[v3,3/4] selinux: use vma_is_initial_stack() and vma_is_initial_heap() Untitled series #771253 1 1 - --- 2023-07-31 Stephen Smalley pcmoore Handled Elsewhere
[userspace] checkpolicy,libselinux,libsepol,policycoreutils,semodule-utils: update my email [userspace] checkpolicy,libselinux,libsepol,policycoreutils,semodule-utils: update my email 1 - - --- 2023-07-19 Stephen Smalley bachradsusi Accepted
[userspace] libselinux,policycoreutils,python,semodule-utils: de-brand SELinux [userspace] libselinux,policycoreutils,python,semodule-utils: de-brand SELinux 2 - - --- 2023-07-19 Stephen Smalley bachradsusi Accepted
selinux: update my email address selinux: update my email address - - - --- 2023-07-19 Stephen Smalley pcmoore Accepted
selinux: de-brand SELinux selinux: de-brand SELinux - - - --- 2023-07-18 Stephen Smalley pcmoore Accepted
[testsuite] policy: allow inet socket test domains to search user home content [testsuite] policy: allow inet socket test domains to search user home content - - - --- 2023-07-14 Stephen Smalley omos Rejected
selinux: stop returning node from avc_insert selinux: stop returning node from avc_insert - - - --- 2023-04-03 Stephen Smalley pcmoore Accepted
[RFC,v2] selinux: cache access vector decisions in the inode security blob [RFC,v2] selinux: cache access vector decisions in the inode security blob - - - --- 2023-03-14 Stephen Smalley pcmoore RFC
[RFC] selinux: cache access vector decisions in the inode security blob [RFC] selinux: cache access vector decisions in the inode security blob - - - --- 2023-03-10 Stephen Smalley pcmoore Superseded
[testsuite] defconfig: add FAT and GRE config options [testsuite] defconfig: add FAT and GRE config options - - - --- 2023-03-10 Stephen Smalley omos Accepted
ip.7: Document IP_PASSSEC for UDP sockets ip.7: Document IP_PASSSEC for UDP sockets - 1 - --- 2020-09-17 Stephen Smalley sds Accepted
socket.7,ip.7: Document SO_PEERSEC for AF_INET sockets socket.7,ip.7: Document SO_PEERSEC for AF_INET sockets - - - --- 2020-09-15 Stephen Smalley Accepted
[v2] socket.7,unix.7: add initial description for SO_PEERSEC [v2] socket.7,unix.7: add initial description for SO_PEERSEC - 1 - --- 2020-09-14 Stephen Smalley Accepted
socket.7,unix.7: add initial description for SO_PEERSEC socket.7,unix.7: add initial description for SO_PEERSEC - - - --- 2020-09-10 Stephen Smalley Superseded
selinux: access policycaps with READ_ONCE/WRITE_ONCE selinux: access policycaps with READ_ONCE/WRITE_ONCE - - - --- 2020-09-10 Stephen Smalley Accepted
[v2] selinux: move policy mutex to selinux_state, use in lockdep checks [v2] selinux: move policy mutex to selinux_state, use in lockdep checks - 1 - --- 2020-08-26 Stephen Smalley Accepted
selinux: move policy mutex to selinux_state, use in lockdep checks selinux: move policy mutex to selinux_state, use in lockdep checks - - - --- 2020-08-26 Stephen Smalley pcmoore Superseded
selinux: permit removing security.selinux xattr before policy load selinux: permit removing security.selinux xattr before policy load - - - --- 2020-08-20 Stephen Smalley Accepted
[RFC] selinux: enable proper lockdep checking for policy rcu access [RFC] selinux: enable proper lockdep checking for policy rcu access - - - --- 2020-08-20 Stephen Smalley pcmoore Rejected
[RFC,v4] selinux: convert policy read-write lock to RCU [RFC,v4] selinux: convert policy read-write lock to RCU - 1 - --- 2020-08-19 Stephen Smalley pcmoore Accepted
[RFC,v3] selinux: convert policy read-write lock to RCU [RFC,v3] selinux: convert policy read-write lock to RCU - - - --- 2020-08-19 Stephen Smalley Superseded
selinux: avoid dereferencing the policy prior to initialization selinux: avoid dereferencing the policy prior to initialization - - 1 --- 2020-08-19 Stephen Smalley Accepted
[RFC,v2] selinux: convert policy read-write lock to RCU [RFC,v2] selinux: convert policy read-write lock to RCU - - - --- 2020-08-18 Stephen Smalley Superseded
[RFC] selinux: convert policy read-write lock to RCU [RFC] selinux: convert policy read-write lock to RCU - - - --- 2020-08-18 Stephen Smalley Superseded
[v2] selinux: refactor changing booleans [v2] selinux: refactor changing booleans - - - --- 2020-08-11 Stephen Smalley pcmoore Accepted
[RFC] selinux: refactor changing booleans [RFC] selinux: refactor changing booleans - - - --- 2020-08-11 Stephen Smalley Superseded
[v5,2/2] selinux: move policy commit after updating selinuxfs [v5,1/2] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-07 Stephen Smalley pcmoore Accepted
[v5,1/2] selinux: encapsulate policy state, refactor policy load [v5,1/2] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-07 Stephen Smalley pcmoore Accepted
scripts/selinux,selinux: update mdp to enable policy capabilities scripts/selinux,selinux: update mdp to enable policy capabilities - - - --- 2020-08-06 Stephen Smalley pcmoore Accepted
libselinux: fix build order libselinux: fix build order - - - --- 2020-08-06 Stephen Smalley Accepted
[RFC,v2,2/2] selinux: move policy commit after updating selinuxfs [RFC,v4,1/2] selinux: encapsulate policy state, refactor policy load - - 1 --- 2020-08-05 Stephen Smalley pcmoore Superseded
[RFC,v4,1/2] selinux: encapsulate policy state, refactor policy load [RFC,v4,1/2] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-05 Stephen Smalley pcmoore Superseded
[RFC] selinux: move policy commit after updating selinuxfs [RFC] selinux: move policy commit after updating selinuxfs - - - --- 2020-08-04 Stephen Smalley Superseded
[RFC,v3] selinux: encapsulate policy state, refactor policy load [RFC,v3] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-03 Stephen Smalley Superseded
[RFC] selinux: encapsulate policy state, refactor policy load [RFC] selinux: encapsulate policy state, refactor policy load - - - --- 2020-07-30 Stephen Smalley Superseded
selinux: encapsulate policy-dependent state selinux: encapsulate policy-dependent state - - - --- 2020-07-28 Stephen Smalley Changes Requested
selinux: log error messages on required process class / permissions selinux: log error messages on required process class / permissions - - - --- 2020-06-17 Stephen Smalley Accepted
scripts/selinux/mdp: fix initial SID handling scripts/selinux/mdp: fix initial SID handling - - - --- 2020-06-17 Stephen Smalley Accepted
[testsuite] defconfig: add NETFILTER_XT_MATCH_STATE and NFS_V4_1 [testsuite] defconfig: add NETFILTER_XT_MATCH_STATE and NFS_V4_1 1 - - --- 2020-06-09 Stephen Smalley omos Accepted
libselinux: fix selinux_restorecon() statfs bug libselinux: fix selinux_restorecon() statfs bug 1 - 1 --- 2020-06-04 Stephen Smalley Accepted
[testsuite] policy/test_overlayfs.te: allow mounter to create whiteouts [testsuite] policy/test_overlayfs.te: allow mounter to create whiteouts 1 - - --- 2020-06-02 Stephen Smalley omos Accepted
libsepol: drop broken warning on duplicate filename transitions libsepol: drop broken warning on duplicate filename transitions 1 - - --- 2020-05-13 Stephen Smalley Accepted
[v2] libsemanage: fsync final files before rename [v2] libsemanage: fsync final files before rename 1 - - --- 2020-05-13 Stephen Smalley Accepted
libsemanage: fsync before rename libsemanage: fsync before rename - - - --- 2020-05-13 Stephen Smalley Superseded
[v5,testsuite,07/15] test_policy.if: use term_use_all_ptys() instead of unconfined_devpts_t Untitled series #286501 1 - - --- 2020-05-12 Stephen Smalley omos Accepted
[v2,testsuite] tests/filesystem: fix quotas_test [v2,testsuite] tests/filesystem: fix quotas_test 1 - - --- 2020-05-11 Stephen Smalley omos Accepted
[testsuite] tests/filesystem: fix quotas_test [testsuite] tests/filesystem: fix quotas_test - - - --- 2020-05-08 Stephen Smalley Changes Requested
[v4,testsuite,15/15] README.md: Add instructions for Debian Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,14/15] tests/mmap: skip /dev/zero tests if /dev is noexec Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,13/15] tests/cap_userns: set /proc/sys/kernel/unprivileged_userns_clone if needed Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,12/15] policy/Makefile: conditionalize setting of allow_domain_fd_use Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,11/15] test_filesystem.te,tests/{fs_}filesystem: do not force user identity to system… Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,10/15] policy: Add defaultrange rules for overlay tests Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,09/15] policy: Add MCS constraint on peer recv Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,08/15] test_overlayfs.te: allow test_overlay_mounter_t to read user tmp files Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,07/15] test_policy.if: use ptynode instead of unconfined_devpts_t Update to work on Debian - - - --- 2020-05-08 Stephen Smalley Changes Requested
[v4,testsuite,06/15] test_sctp.te: make netlabel_peer_t a MCS-constrained type Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,05/15] test_inet_socket.te: switch from generic_port to _all_unreserved_ports() Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,04/15] test_global.te: allow test domains to statfs selinuxfs Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,03/15] test_ibendport.te: use dev_rw_infiniband_mgmt_dev() Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,02/15] test_execute_no_trans.te: stop using mmap_file_perms Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v4,testsuite,01/15] test_capable_net.te: remove corenet_tcp/udp_sendrecv_all_ports() Update to work on Debian - - - --- 2020-05-08 Stephen Smalley omos Accepted
[v3] selinux-testsuite: update to work on Debian [v3] selinux-testsuite: update to work on Debian - - - --- 2020-05-07 Stephen Smalley Superseded
[v2] selinux-testsuite: update to work on Debian [v2] selinux-testsuite: update to work on Debian - - - --- 2020-05-06 Stephen Smalley Superseded
selinux-testsuite: update to work on Debian selinux-testsuite: update to work on Debian - - - --- 2020-05-06 Stephen Smalley omos Superseded
[RFC,5/5] selinux-testsuite: add testing for unprivileged sandboxing capability [RFC,1/5] selinux-testsuite: add tests/sandbox/nodir_no_allow.cil - - - --- 2020-03-13 Stephen Smalley omos New
[RFC,4/5] selinux-testsuite: add tests/sandbox/rxdir_rx_allow.cil [RFC,1/5] selinux-testsuite: add tests/sandbox/nodir_no_allow.cil - - - --- 2020-03-13 Stephen Smalley omos New
[RFC,3/5] selinux-testsuite: add tests/sandbox/rxdir_no_allow.cil [RFC,1/5] selinux-testsuite: add tests/sandbox/nodir_no_allow.cil - - - --- 2020-03-13 Stephen Smalley omos New
[RFC,2/5] selinux-testsuite: add tests/sandbox/nodir_rx_allow.cil [RFC,1/5] selinux-testsuite: add tests/sandbox/nodir_no_allow.cil - - - --- 2020-03-13 Stephen Smalley omos New
[RFC,1/5] selinux-testsuite: add tests/sandbox/nodir_no_allow.cil [RFC,1/5] selinux-testsuite: add tests/sandbox/nodir_no_allow.cil - - - --- 2020-03-13 Stephen Smalley omos New
[RFC] libsepol,secilc,policycoreutils: add unprivileged sandboxing capability [RFC] libsepol,secilc,policycoreutils: add unprivileged sandboxing capability - - - --- 2020-03-13 Stephen Smalley pcmoore New
[RFC] selinux: add unprivileged sandboxing capability [RFC] selinux: add unprivileged sandboxing capability - - - --- 2020-03-13 Stephen Smalley pcmoore New
MAINTAINERS: Update my email address MAINTAINERS: Update my email address - - - --- 2020-03-11 Stephen Smalley Accepted
[RFC] libselinux: deprecate security_compute_user(), update man pages [RFC] libselinux: deprecate security_compute_user(), update man pages - - - --- 2020-02-18 Stephen Smalley RFC
[RFC] security,anon_inodes,kvm: enable security support for anon inodes [RFC] security,anon_inodes,kvm: enable security support for anon inodes - - - --- 2020-02-13 Stephen Smalley RFC
[v3,2/2] testsuite: add further nfs tests [v3,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Accepted
[v3,1/2] testsuite: provide support for testing labeled NFS [v3,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Accepted
[v2,2/2] testsuite: add further nfs tests [v2,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Superseded
[v2,1/2] testsuite: provide support for testing labeled NFS [v2,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Superseded
testsuite: add further nfs tests testsuite: add further nfs tests - - - --- 2020-01-30 Stephen Smalley Superseded
testsuite: provide support for testing labeled NFS testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Superseded
testsuite: enable running over labeled NFS testsuite: enable running over labeled NFS - - - --- 2020-01-29 Stephen Smalley Accepted
[v2] selinux: remove unused initial SIDs and improve handling [v2] selinux: remove unused initial SIDs and improve handling - - - --- 2020-01-29 Stephen Smalley Changes Requested
[v2] libsepol,checkpolicy: support omitting unused initial sid contexts [v2] libsepol,checkpolicy: support omitting unused initial sid contexts 1 - - --- 2020-01-29 Stephen Smalley Accepted
« 1 2 3 4 »