Show patches with: Archived = No       |   9196 patches
« 1 2 ... 89 90 91 92 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[1/7] genhomedircon: factor out common replacement code - - - --- 2016-04-08 Jason Zaman Superseded
[2/2,v3] checkpolicy: Fail if module name different than output base filename - - - --- 2016-04-08 James Carter Accepted
[1/2,v3] policycoreutils/hll/pp: Warn if module name different than output filename - - - --- 2016-04-08 James Carter Accepted
[net-next] security: drop the unused hook skb_owned_by - - - --- 2016-04-08 Paolo Abeni Accepted
[2/2,v2] checkpolicy: Warn if module name different than output filename - - - --- 2016-04-07 James Carter Superseded
[1/2,v2] policycoreutils/hll/pp: Warn if module name different than output filename - - - --- 2016-04-07 James Carter Superseded
[RFC] selinux-testsuite: Add test for execstack on thread stack - - - --- 2016-04-06 Stephen Smalley Superseded
[RFC] selinux: apply execstack check on thread stacks - - - --- 2016-04-06 Stephen Smalley Superseded
[RFC] selinux-testsuite: Add tests for non-init userns capability checks - - - --- 2016-04-06 Stephen Smalley Superseded
[RFC] selinux-testsuite: Add tests for non-init userns capability checks - - - --- 2016-04-06 Stephen Smalley Superseded
[RFC] selinux: distinguish non-init user namespace capability checks - - - --- 2016-04-06 Stephen Smalley Superseded
selinux: Add support for portcon dccp protocol - - - --- 2016-04-06 Richard Haines Accepted
cil_mem.c: #define _GNU_SOURCE - - - --- 2016-04-06 Nick Kralevich Rejected
[v3] selinux: restrict kernel module loading - - - --- 2016-04-05 Jeffrey Vander Stoep Accepted
[v2] selinux: restrict kernel module loading - - - --- 2016-04-03 Jeffrey Vander Stoep Superseded
selinux: restrict kernel module loading - - - --- 2016-04-01 Jeffrey Vander Stoep Superseded
selinux: consolidate the ptrace parent lookup code - - - --- 2016-04-01 Paul Moore Accepted
selinux: simply inode label states to INVALID and INITIALIZED - - - --- 2016-03-28 Paul Moore Accepted
selinux: don't revalidate inodes in selinux_socket_getpeersec_dgram() - - - --- 2016-03-28 Paul Moore Accepted
[RESEND,v2,11/18] fs: Ensure the mounter of a filesystem is privileged towards its inodes - - - --- 2016-03-28 Seth Forshee Superseded
netlabel: fix a problem with netlbl_secattr_catmap_setrng() - - - --- 2016-03-28 Paul Moore Accepted
[3/3] checkpolicy: Warn if module name different than filenames - - - --- 2016-03-25 James Carter Superseded
[2/3] policycoreutils/hll/pp: Warn if module name different from filenames - - - --- 2016-03-25 James Carter Superseded
[1/3] libsepol: Add function to check if module name matches filename - - - --- 2016-03-25 James Carter Superseded
Just sent a small patch to github to fix the selinuxfs man pages. - - - --- 2016-03-25 Daniel Walsh Accepted
selinux: fix memory leak on node_ptr on error return path - - - --- 2016-03-21 Colin King Rejected
policycoreutils/sepolgen: Add support for TYPEBOUNDS statement in INTERFACE policy files. - - - --- 2016-03-21 Miroslav Grepl Accepted
libsepol/cil: fix bug when resetting class permission values - - - --- 2016-03-17 Steve Lawrence Accepted
fs: remove excess check for in_userns - - - --- 2016-03-15 Pavel Tikhomirov Not Applicable
fs: fix a posible leak of allocated superblock - - - --- 2016-03-15 Pavel Tikhomirov Not Applicable
libselinux: only mount /proc if necessary - - - --- 2016-02-29 Stephen Smalley Accepted
[2/2] libselinux: procattr: return einval for <= 0 pid args. - - - --- 2016-02-23 Daniel Cashman Accepted
[1/2] libselinux: procattr: return error on invalid pid_t input. - - - --- 2016-02-23 Daniel Cashman Accepted
libselinux: selinux_restorecon.3 man page corrections. - - - --- 2016-02-21 Richard Haines Accepted
selinux: Don't sleep inside inode_getsecid hook - - - --- 2016-02-18 Andreas Gruenbacher Accepted
[RFC,v3,19/19] netlabel: Implement CALIPSO config functions for SMACK. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,18/19] calipso: Add a label cache. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,17/19] calipso: Add validation of CALIPSO option. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,16/19] netlabel: Pass a family parameter to netlbl_skbuff_err(). - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,15/19] calipso: Allow the lsm to label the skbuff directly. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,14/19] ipv6: constify the skb pointer of ipv6_find_tlv(). - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,13/19] calipso: Allow request sockets to be relabelled by the lsm. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,12/19] ipv6: Allow request socks to contain IPv6 options. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,11/19] netlabel: Prevent setsockopt() from changing the hop-by-hop option. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,10/19] calipso: Set the calipso socket label to match the secattr. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,09/19] netlabel: Move bitmap manipulation functions to the NetLabel core. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,08/19] ipv6: Add ipv6_renew_options_kern() that accepts a kernel mem pointer. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,07/19] netlabel: Add support for removing a CALIPSO DOI. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,06/19] netlabel: Add support for creating a CALIPSO protocol domain mapping. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,05/19] netlabel: Add support for enumerating the CALIPSO DOI list. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,04/19] netlabel: Add support for querying a CALIPSO DOI. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,03/19] netlabel: Initial support for the CALIPSO netlink protocol. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,02/19] netlabel: Add an address family to domain hash entries. - - - --- 2016-02-17 Huw Davies RFC
[RFC,v3,01/19] netlabel: Mark rcu pointers with __rcu. - - - --- 2016-02-17 Huw Davies RFC
read_spec_entry: fail on non-ascii - - - --- 2016-02-09 Roberts, William C Accepted
[2/2] libsemanage: no longer use variables with unused attribute - - - --- 2016-02-05 Nicolas Iooss Accepted
[1/2] libsepol: fix __attribute__((unused)) annotations - - - --- 2016-02-05 Nicolas Iooss Accepted
[3/3] libsemanage: tests: do not overwrite CFLAGS and LDFLAGS - - - --- 2016-02-05 Nicolas Iooss Accepted
[2/3] policycoreutils: sepolicy: do not overwrite CFLAGS - - - --- 2016-02-05 Nicolas Iooss Accepted
[1/3] policycoreutils: sepolicy: rename policy global variable - - - --- 2016-02-05 Nicolas Iooss Accepted
[3/3] libsemanage: move modinfo_tmp definition before goto cleanup - - - --- 2016-01-31 Nicolas Iooss Accepted
[2/3] libsemanage: initialize bools_modified variable. - - - --- 2016-01-31 Nicolas Iooss Accepted
[1/3] libsepol: cil: always initialize __cil_permx_to_sepol_class_perms() result - - - --- 2016-01-31 Nicolas Iooss Accepted
[v3,1/1] selinux: use absolute path to include directory - - - --- 2016-01-28 Andy Shevchenko Accepted
[v2,1/1] selinux: use absolute path to include directory - - - --- 2016-01-19 Andy Shevchenko Changes Requested
policycoreutils: newrole: add missing defined in #if - - - --- 2016-01-19 Nicolas Iooss Accepted
[2/2] sepolgen: Support latest refpolicy interfaces - - - --- 2016-01-16 Nicolas Iooss Accepted
[1/2] sepolgen: Make sepolgen-ifgen output deterministic with Python>=3.3 - - - --- 2016-01-16 Nicolas Iooss Accepted
RESEND [PATCH V3] libselinux: Add selinux_restorecon function - - - --- 2016-01-15 Richard Haines Accepted
[2/2] Added missing descriptions for --*-key params in secon man page. - - - --- 2016-01-11 Lukas Vrabec Accepted
[1/2] Add description of missing newrole parameter -p in newrole man page. - - - --- 2016-01-11 Lukas Vrabec Accepted
secilc: update dependency information and man page creation - - - --- 2016-01-08 Steve Lawrence Accepted
[RFC,v2,18/18] netlabel: Implement CALIPSO config functions for SMACK. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,17/18] calipso: Add a label cache. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,16/18] calipso: Add validation of CALIPSO option. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,15/18] netlabel: Pass a family parameter to netlbl_skbuff_err(). - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,14/18] calipso: Allow the lsm to label the skbuff directly. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,13/18] calipso: Allow request sockets to be relabelled by the lsm. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,12/18] ipv6: Allow request socks to contain IPv6 options. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,11/18] netlabel: Prevent setsockopt() from changing the hop-by-hop option. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,10/18] calipso: Set the calipso socket label to match the secattr. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,09/18] netlabel: Move bitmap manipulation functions to the NetLabel core. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,08/18] ipv6: Add ipv6_renew_options_kern() that accepts a kernel mem pointer. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,07/18] netlabel: Add support for removing a CALIPSO DOI. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,06/18] netlabel: Add support for creating a CALIPSO protocol domain mapping. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,05/18] netlabel: Add support for enumerating the CALIPSO DOI list. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,04/18] netlabel: Add support for querying a CALIPSO DOI. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,03/18] netlabel: Initial support for the CALIPSO netlink protocol. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,02/18] netlabel: Add an address family to domain hash entries. - - - --- 2016-01-08 Huw Davies Changes Requested
[RFC,v2,01/18] netlabel: Mark rcu pointers with __rcu. - - - --- 2016-01-08 Huw Davies Changes Requested
selinux: Inode label revalidation performance fix - - - --- 2016-01-05 Andreas Gruenbacher Accepted
[RESEND,v2,18/18] fuse: Allow user namespace mounts - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,17/18] fuse: Restrict allow_other to the superblock's namespace or a descendant - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,16/18] fuse: Support fuse filesystems outside of init_user_ns - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,15/18] fuse: Add support for pid namespaces - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,14/18] capabilities: Allow privileged user in s_user_ns to set security.* xattrs - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,13/18] fs: Allow superblock owner to access do_remount_sb() - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,12/18] fs: Don't remove suid for CAP_FSETID in s_user_ns - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,11/18] fs: Ensure the mounter of a filesystem is privileged towards its inodes - - - --- 2016-01-04 Seth Forshee Superseded
[RESEND,v2,10/18] fs: Update posix_acl support to handle user namespace mounts - - - --- 2016-01-04 Seth Forshee Superseded
« 1 2 ... 89 90 91 92 »