summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)Author
2014-09-17ima: added ima_policy_flag variableRoberto Sassu
2014-09-17ima: return an error code from ima_add_boot_aggregate()Roberto Sassu
2014-09-17ima: provide 'ima_appraise=log' kernel optionDmitry Kasatkin
2014-09-17ima: move keyring initialization to ima_init()Dmitry Kasatkin
2014-09-16KEYS: Make the key matching functions return boolDavid Howells
2014-09-16KEYS: Remove key_type::match in favour of overriding default by match_preparseDavid Howells
2014-09-16KEYS: Remove key_type::def_lookup_typeDavid Howells
2014-09-16KEYS: Preparse match dataDavid Howells
2014-09-16Merge tag 'keys-next-fixes-20140916' into keys-nextDavid Howells
2014-09-16Merge tag 'keys-fixes-20140916' into keys-nextDavid Howells
2014-09-16KEYS: Reinstate EPERM for a key type name beginning with a '.'David Howells
2014-09-16KEYS: Fix missing staticsDavid Howells
2014-09-10selinux: make the netif cache namespace awarePaul Moore
2014-09-09security: make security_file_set_fowner, f_setown and __f_setown void returnJeff Layton
2014-09-09integrity: make integrity files as 'integrity' moduleDmitry Kasatkin
2014-09-09integrity: base integrity subsystem kconfig options on integrityDmitry Kasatkin
2014-09-09integrity: move asymmetric keys config optionDmitry Kasatkin
2014-09-09ima: initialize only required templateDmitry Kasatkin
2014-09-09ima: remove usage of filename parameterDmitry Kasatkin
2014-09-09ima: remove unnecessary appraisal testDmitry Kasatkin
2014-09-09ima: add missing '__init' keywordsDmitry Kasatkin
2014-09-09ima: remove unnecessary extra variableDmitry Kasatkin
2014-09-09ima: simplify conditional statement to improve performanceDmitry Kasatkin
2014-09-09integrity: remove declaration of non-existing functionsDmitry Kasatkin
2014-09-09integrity: prevent flooding with 'Request for unknown key'Dmitry Kasatkin
2014-09-09ima: pass 'opened' flag to identify newly created filesDmitry Kasatkin
2014-09-09evm: properly handle INTEGRITY_NOXATTRS EVM statusDmitry Kasatkin
2014-09-09Documentation: Docbook: Fix generated DocBook/kernel-api.xmlMasanari Iida
2014-09-08selinux: register nf hooks with single nf_register_hooks callJiri Pirko
2014-09-08ima: provide flag to identify new empty filesDmitry Kasatkin
2014-09-08evm: prevent passing integrity check if xattr read failsDmitry Kasatkin
2014-09-03selinux: fix a problem with IPv6 traffic denials in selinux_ip_postroute()Paul Moore
2014-09-03KEYS: Increase root_maxkeys and root_maxbytes sizesSteve Dickson
2014-09-02evm: fix checkpatch warningsDmitry Kasatkin
2014-09-02ima: fix fallback to use new_sync_read()Dmitry Kasatkin
2014-09-02ima: prevent buffer overflow in ima_alloc_tfm()Dmitry Kasatkin
2014-09-02ima: fix ima_alloc_atfm()Mimi Zohar
2014-08-29Make Smack operate on smack_known struct where it still used char*Lukasz Pawelczyk
2014-08-29Fix a bidirectional UDS connect check typoLukasz Pawelczyk
2014-08-29Small fixes in comments describing function parametersLukasz Pawelczyk
2014-08-28Smack: Bring-up access modeCasey Schaufler
2014-08-28selinux: Permit bounded transitions under NO_NEW_PRIVS or NOSUID.Stephen Smalley
2014-08-27module: rename KERNEL_PARAM_FL_NOARG to avoid confusionJani Nikula
2014-08-26tomoyo: Fix pathname calculation breakage.Tetsuo Handa
2014-08-25Smack: Fix setting label on successful file openMarcin Niesluchowski
2014-08-09Merge branch 'stable-3.17' of git://git.infradead.org/users/pcmoore/selinuxLinus Torvalds
2014-08-08Smack: remove unneeded NULL-termination from securtity labelKonstantin Khlebnikov
2014-08-08Smack: handle zero-length security labels without panicKonstantin Khlebnikov
2014-08-08Smack: fix behavior of smack_inode_listsecurityKonstantin Khlebnikov
2014-08-07selinux: remove unused variabled in the netport, netnode, and netif cachesPaul Moore