index
:
linux.git
master
Unnamed repository; edit this file 'description' to name the repository.
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
security
Age
Commit message (
Expand
)
Author
2019-08-19
bpf: Restrict bpf when kernel lockdown is in confidentiality mode
David Howells
2019-08-19
lockdown: Lock down tracing and perf kprobes when in confidentiality mode
David Howells
2019-08-19
lockdown: Lock down /proc/kcore
David Howells
2019-08-19
x86/mmiotrace: Lock down the testmmiotrace module
David Howells
2019-08-19
lockdown: Lock down module params that specify hardware parameters (eg. ioport)
David Howells
2019-08-19
lockdown: Lock down TIOCSSERIAL
David Howells
2019-08-19
lockdown: Prohibit PCMCIA CIS storage when the kernel is locked down
David Howells
2019-08-19
ACPI: Limit access to custom_method when the kernel is locked down
Matthew Garrett
2019-08-19
x86/msr: Restrict MSR access when the kernel is locked down
Matthew Garrett
2019-08-19
x86: Lock down IO port access when the kernel is locked down
Matthew Garrett
2019-08-19
PCI: Lock down BAR access when the kernel is locked down
Matthew Garrett
2019-08-19
hibernate: Disable when the kernel is locked down
Josh Boyer
2019-08-19
kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE
Jiri Bohac
2019-08-19
kexec_load: Disable at runtime if the kernel is locked down
Matthew Garrett
2019-08-19
lockdown: Restrict /dev/{mem,kmem,port} when the kernel is locked down
Matthew Garrett
2019-08-19
lockdown: Enforce module signatures if the kernel is locked down
David Howells
2019-08-19
security: Add a static lockdown policy LSM
Matthew Garrett
2019-08-19
security: Add a "locked down" LSM hook
Matthew Garrett
2019-08-19
security: Support early LSMs
Matthew Garrett
2019-08-13
KEYS: trusted: allow module init if TPM is inactive or deactivated
Roberto Sassu
2019-08-12
fanotify, inotify, dnotify, security: add security hook for fs notifications
Aaron Goidel
2019-08-05
ima: fix freeing ongoing ahash_request
Sascha Hauer
2019-08-05
ima: always return negative code for error
Sascha Hauer
2019-08-05
ima: Store the measurement again when appraising a modsig
Thiago Jung Bauermann
2019-08-05
ima: Define ima-modsig template
Thiago Jung Bauermann
2019-08-05
ima: Collect modsig
Thiago Jung Bauermann
2019-08-05
ima: Implement support for module-style appended signatures
Thiago Jung Bauermann
2019-08-05
ima: Factor xattr_verify() out of ima_appraise_measurement()
Thiago Jung Bauermann
2019-08-05
ima: Add modsig appraise_type option for module-style appended signatures
Thiago Jung Bauermann
2019-08-05
integrity: Select CONFIG_KEYS instead of depending on it
Thiago Jung Bauermann
2019-08-05
selinux: always return a secid from the network caches if we find one
Paul Moore
2019-08-05
selinux: policydb - rename type_val_to_struct_array
Ondrej Mosnacek
2019-08-05
selinux: policydb - fix some checkpatch.pl warnings
Ondrej Mosnacek
2019-08-05
selinux: shuffle around policydb.c to get rid of forward declarations
Paul Moore
2019-08-02
Merge tag 'selinux-pr-20190801' of git://git.kernel.org/pub/scm/linux/kernel/...
Linus Torvalds
2019-08-01
ima: initialize the "template" field with the default template
Mimi Zohar
2019-07-31
selinux: fix memory leak in policydb_init()
Ondrej Mosnacek
2019-07-28
Merge tag 'meminit-v5.3-rc2' of git://git.kernel.org/pub/scm/linux/kernel/git...
Linus Torvalds
2019-07-26
Merge tag 'selinux-pr-20190726' of git://git.kernel.org/pub/scm/linux/kernel/...
Linus Torvalds
2019-07-25
structleak: disable STRUCTLEAK_BYREF in combination with KASAN_STACK
Arnd Bergmann
2019-07-24
selinux: check sidtab limit before adding a new entry
Ondrej Mosnacek
2019-07-19
Merge branch 'work.mount0' of git://git.kernel.org/pub/scm/linux/kernel/git/v...
Linus Torvalds
2019-07-18
proc/sysctl: add shared variables for range check
Matteo Croce
2019-07-16
Merge tag 'docs/v5.3-1' of git://git.kernel.org/pub/scm/linux/kernel/git/mche...
Linus Torvalds
2019-07-15
LSM: SafeSetID: fix use of literal -1 in capable hook
Jann Horn
2019-07-15
LSM: SafeSetID: verify transitive constrainedness
Jann Horn
2019-07-15
LSM: SafeSetID: add read handler
Jann Horn
2019-07-15
LSM: SafeSetID: rewrite userspace API to atomic updates
Jann Horn
2019-07-15
LSM: SafeSetID: fix userns handling in securityfs
Jann Horn
2019-07-15
LSM: SafeSetID: refactor policy parsing
Jann Horn
[prev]
[next]