Show patches with: none      |   8933 patches
« 1 2 ... 50 51 5289 90 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v15,18/23] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,17/23] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,16/23] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor 1 - - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,15/23] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor 1 - - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,14/23] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,13/23] LSM: Specify which LSM to display LSM: Module stacking for AppArmor 2 - - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,12/23] IMA: Change internal interfaces to use lsmblobs LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,11/23] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,10/23] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,09/23] LSM: Use lsmblob in security_task_getsecid LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,08/23] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,07/23] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,06/23] Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,05/23] net: Prepare UDS for security module stacking LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,04/23] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,03/23] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor 1 2 - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,02/23] LSM: Create and manage the lsmblob data structure. LSM: Module stacking for AppArmor 1 - - --- 2020-02-14 Casey Schaufler Changes Requested
[v15,01/23] LSM: Infrastructure management of the sock security LSM: Module stacking for AppArmor 2 2 - --- 2020-02-14 Casey Schaufler Changes Requested
libselinux: drop error return from is_selinux_enabled documentation libselinux: drop error return from is_selinux_enabled documentation 1 - - --- 2020-02-14 Christian Göttsche Accepted
[3/3] Wire UFFD up to SELinux [1/3] Add a new LSM-supporting anonymous inode interface - - - --- 2020-02-14 Daniel Colascione Superseded
[2/3] Teach SELinux about anonymous inodes [1/3] Add a new LSM-supporting anonymous inode interface - - - --- 2020-02-14 Daniel Colascione Superseded
[1/3] Add a new LSM-supporting anonymous inode interface [1/3] Add a new LSM-supporting anonymous inode interface - - - --- 2020-02-14 Daniel Colascione Superseded
[RFC] security,anon_inodes,kvm: enable security support for anon inodes [RFC] security,anon_inodes,kvm: enable security support for anon inodes - - - --- 2020-02-13 Stephen Smalley RFC
[userspace,v2] libsepol: cache ebitmap cardinality value [userspace,v2] libsepol: cache ebitmap cardinality value 1 - - --- 2020-02-13 Ondrej Mosnacek Accepted
[userspace] libsepol: cache ebitmap cardinality value [userspace] libsepol: cache ebitmap cardinality value - - - --- 2020-02-12 Ondrej Mosnacek Superseded
[v2,2/2] selinux: optimize storage of filename transitions Optimize storage of filename transitions 1 - - --- 2020-02-12 Ondrej Mosnacek Changes Requested
[v2,1/2] selinux: factor out loop body from filename_trans_read() Optimize storage of filename transitions 1 - - --- 2020-02-12 Ondrej Mosnacek Accepted
[v2,6/6] Add a new sysctl for limiting userfaultfd to user mode faults Harden userfaultfd - - - --- 2020-02-11 Daniel Colascione Superseded
[v2,5/6] Let userfaultfd opt out of handling kernel-mode faults Harden userfaultfd - - - --- 2020-02-11 Daniel Colascione Superseded
[v2,4/6] Wire UFFD up to SELinux Harden userfaultfd - - - --- 2020-02-11 Daniel Colascione Superseded
[v2,3/6] Teach SELinux about a new userfaultfd class Harden userfaultfd - - - --- 2020-02-11 Daniel Colascione Superseded
[v2,2/6] Add a concept of a "secure" anonymous file Harden userfaultfd - - - --- 2020-02-11 Daniel Colascione Superseded
[v2,1/6] Add a new flags-accepting interface for anonymous inodes Harden userfaultfd - - - --- 2020-02-11 Daniel Colascione Superseded
[2/2] selinux: optimize storage of filename transitions Optimize storage of filename transitions - - - --- 2020-02-11 Ondrej Mosnacek Superseded
[1/2] selinux: factor out loop body from filename_trans_read() Optimize storage of filename transitions - - - --- 2020-02-11 Ondrej Mosnacek Superseded
selinux-testsuite: add the quota package to the list of deps in README.md selinux-testsuite: add the quota package to the list of deps in README.md 1 - - --- 2020-02-11 Paul Moore Accepted
[v5] libselinux: Eliminate use of security_compute_user() [v5] libselinux: Eliminate use of security_compute_user() 1 - - --- 2020-02-11 Petr Lautrbach Superseded
[GIT,PULL] SELinux fixes for v5.6 (#1) [GIT,PULL] SELinux fixes for v5.6 (#1) - - - --- 2020-02-10 Paul Moore Accepted
[v4] libselinux: Eliminate use of security_compute_user() [v4] libselinux: Eliminate use of security_compute_user() - - - --- 2020-02-10 Petr Lautrbach Changes Requested
[v3] libselinux: Eliminate use of security_compute_user() [v3] libselinux: Eliminate use of security_compute_user() - - - --- 2020-02-08 Petr Lautrbach Superseded
label_file.c: Fix MAC build label_file.c: Fix MAC build 1 - - --- 2020-02-07 Nick Kralevich Accepted
[v3] security: selinux: allow per-file labeling for bpffs [v3] security: selinux: allow per-file labeling for bpffs 1 - - --- 2020-02-07 Steven Moreland Accepted
[userspace] libsepol/cil: remove unnecessary hash tables [userspace] libsepol/cil: remove unnecessary hash tables 1 - - --- 2020-02-07 Ondrej Mosnacek Accepted
libselinux: drop error return from is_selinux_enabled.3 libselinux: drop error return from is_selinux_enabled.3 - - - --- 2020-02-07 Christian Göttsche Superseded
[v2] security: selinux: allow per-file labeling for bpffs [v2] security: selinux: allow per-file labeling for bpffs - - - --- 2020-02-06 Steven Moreland Superseded
security: selinux: allow per-file labeling for bpffs security: selinux: allow per-file labeling for bpffs - - - --- 2020-02-06 Steven Moreland Superseded
[2/2] Travis-CI: test that DEBUG build works userspace: Fix DEBUG=1 build 1 - - --- 2020-02-06 Ondrej Mosnacek Accepted
[1/2] libsemanage: preserve parent Makefile's flags in debug mode userspace: Fix DEBUG=1 build - - - --- 2020-02-06 Ondrej Mosnacek Accepted
[RFC,2/2] semodule: support changing policyvers via command line userspace: Allow changing version of kernel policy built by semodule - - - --- 2020-02-06 Ondrej Mosnacek Rejected
[RFC,1/2] libsemanage: support changing policy version via API userspace: Allow changing version of kernel policy built by semodule - - - --- 2020-02-06 Ondrej Mosnacek Rejected
[v6,10/10] drivers/oprofile: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,09/10] drivers/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,08/10] parisc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,07/10] powerpc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,06/10] trace/bpf_trace: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,05/10] drm/i915/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,04/10] perf tool: extend Perf tool with CAP_PERFMON capability support Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,03/10] perf/core: open access to probes for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,02/10] perf/core: open access to the core for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-02-05 Alexey Budankov Superseded
[v6,01/10] capabilities: introduce CAP_PERFMON to kernel and user space Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-02-05 Alexey Budankov Superseded
[v2] libselinux: Eliminate use of security_compute_user() [v2] libselinux: Eliminate use of security_compute_user() - - - --- 2020-02-04 Petr Lautrbach Changes Requested
[RFC,1/1] selinux-testsuite: Test all mount option context types selinux-testsuite: Test all mount option context types - - - --- 2020-02-04 Richard Haines Rejected
security/selinux: Add support for new key permissions security/selinux: Add support for new key permissions - - - --- 2020-02-03 Richard Haines Rejected
[v3,5/5] selinux: generalize evaluate_cond_node() selinux: Assorted simplifications and cleanups - - - --- 2020-02-03 Ondrej Mosnacek Accepted
[v3,4/5] selinux: convert cond_expr to array selinux: Assorted simplifications and cleanups - 1 - --- 2020-02-03 Ondrej Mosnacek Accepted
[v3,3/5] selinux: convert cond_av_list to array selinux: Assorted simplifications and cleanups - 1 - --- 2020-02-03 Ondrej Mosnacek Accepted
[v3,2/5] selinux: convert cond_list to array selinux: Assorted simplifications and cleanups - - - --- 2020-02-03 Ondrej Mosnacek Accepted
[v3,1/5] selinux: simplify evaluate_cond_node() selinux: Assorted simplifications and cleanups - - - --- 2020-02-03 Ondrej Mosnacek Not Applicable
selinux: fix sidtab string cache locking selinux: fix sidtab string cache locking 1 - - --- 2020-02-03 Ondrej Mosnacek Accepted
[RFC] libsepol: Add 'key_perms' policy capability [RFC] libsepol: Add 'key_perms' policy capability - - - --- 2020-02-02 Richard Haines Changes Requested
[RFC,1/1] selinux-testsuite: Add additional key permission tests selinux-testsuite: Add additional key permission tests - - - --- 2020-02-02 Richard Haines Changes Requested
selinux: Fix typo in filesystem name selinux: Fix typo in filesystem name 1 - - --- 2020-02-02 Hridya Valsaraju Accepted
[v2] selinux: sel_avc_get_stat_idx should increase position index [v2] selinux: sel_avc_get_stat_idx should increase position index 1 - - --- 2020-02-01 Vasily Averin Accepted
selinux-testsuite: Binder goto brexit fix selinux-testsuite: Binder goto brexit fix 1 - - --- 2020-01-31 Richard Haines Accepted
libsepol/cil: Rewrite verification of map classes and classpermissionsets libsepol/cil: Rewrite verification of map classes and classpermissionsets 1 - - --- 2020-01-31 James Carter Accepted
libsepol: add support for new polcap genfs_seclabel_symlinks libsepol: add support for new polcap genfs_seclabel_symlinks 1 - - --- 2020-01-31 Christian Göttsche Accepted
[v3,2/2] testsuite: add further nfs tests [v3,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Accepted
[v3,1/2] testsuite: provide support for testing labeled NFS [v3,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Accepted
[v2,2/2] testsuite: add further nfs tests [v2,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Superseded
[v2,1/2] testsuite: provide support for testing labeled NFS [v2,1/2] testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Superseded
testsuite: add further nfs tests testsuite: add further nfs tests - - - --- 2020-01-30 Stephen Smalley Superseded
[1/1] selinux-testsuite: Add watch_sb and watch_mount checks selinux-testsuite: Add watch_sb and watch_mount checks 1 - - --- 2020-01-30 Richard Haines Accepted
testsuite: provide support for testing labeled NFS testsuite: provide support for testing labeled NFS - - - --- 2020-01-30 Stephen Smalley Superseded
testsuite: enable running over labeled NFS testsuite: enable running over labeled NFS - - - --- 2020-01-29 Stephen Smalley Accepted
[v2] selinux: remove unused initial SIDs and improve handling [v2] selinux: remove unused initial SIDs and improve handling - - - --- 2020-01-29 Stephen Smalley Changes Requested
[v2] libsepol,checkpolicy: support omitting unused initial sid contexts [v2] libsepol,checkpolicy: support omitting unused initial sid contexts 1 - - --- 2020-01-29 Stephen Smalley Accepted
[v2] selinux: allow kernfs symlinks to inherit parent directory context [v2] selinux: allow kernfs symlinks to inherit parent directory context 1 - - --- 2020-01-28 Christian Göttsche Accepted
libsepol,checkpolicy: support omitting unused initial sid contexts libsepol,checkpolicy: support omitting unused initial sid contexts - - - --- 2020-01-28 Stephen Smalley Superseded
[v6,10/10] drivers/oprofile: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-01-28 Alexey Budankov Superseded
[v6,09/10] drivers/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-01-28 Alexey Budankov Superseded
[v6,08/10] parisc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-01-28 Alexey Budankov Superseded
[v6,07/10] powerpc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-01-28 Alexey Budankov Superseded
[v6,06/10] trace/bpf_trace: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-01-28 Alexey Budankov Superseded
[v6,05/10] drm/i915/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-01-28 Alexey Budankov Superseded
[v6,04/10] perf tool: extend Perf tool with CAP_PERFMON capability support Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-01-28 Alexey Budankov Superseded
[v6,03/10] perf/core: open access to probes for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-01-28 Alexey Budankov Superseded
[v6,02/10] perf/core: open access to the core for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - --- 2020-01-28 Alexey Budankov Superseded
[v6,01/10] capabilities: introduce CAP_PERFMON to kernel and user space Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - --- 2020-01-28 Alexey Budankov Superseded
[GIT,PULL] SELinux patches for v5.6 [GIT,PULL] SELinux patches for v5.6 - - - --- 2020-01-27 Paul Moore Accepted
selinux: remove unused initial SIDs and improve handling selinux: remove unused initial SIDs and improve handling - - - --- 2020-01-27 Stephen Smalley Superseded
« 1 2 ... 50 51 5289 90 »