index
:
kernel/git/ppwaskie/experimental-scratch.git
master
thread_task_merge
Experimental x86 repo, temporary only, do not use
PJ Waskiewicz
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
security
Age
Commit message (
Expand
)
Author
Files
Lines
2014-02-10
Merge branch 'stable-3.14' of git://git.infradead.org/users/pcmoore/selinux i...
James Morris
2
-0
/
+6
2014-02-05
SELinux: Fix kernel BUG on empty security contexts.
Stephen Smalley
1
-0
/
+4
2014-02-05
selinux: add SOCK_DIAG_BY_FAMILY to the list of netlink message types
Paul Moore
1
-0
/
+2
2014-02-05
Merge tag 'v3.13' into stable-3.14
Paul Moore
54
-1239
/
+2802
2014-02-05
security: select correct default LSM_MMAP_MIN_ADDR on arm on arm64
Colin Cross
1
-1
/
+1
2014-01-23
Merge git://git.infradead.org/users/eparis/audit
Linus Torvalds
2
-11
/
+6
2014-01-21
Merge branch 'for-3.14' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/c...
Linus Torvalds
1
-4
/
+3
2014-01-21
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...
Linus Torvalds
11
-148
/
+366
2014-01-13
smack: call WARN_ONCE() instead of calling audit_log_start()
Richard Guy Briggs
1
-3
/
+2
2014-01-13
selinux: call WARN_ONCE() instead of calling audit_log_start()
Richard Guy Briggs
1
-8
/
+4
2014-01-12
SELinux: Fix possible NULL pointer dereference in selinux_inode_permission()
Steven Rostedt
2
-3
/
+22
2014-01-08
Merge branch 'master' of git://git.infradead.org/users/pcmoore/selinux into next
James Morris
1
-1
/
+13
2014-01-07
SELinux: Fix memory leak upon loading policy
Tetsuo Handa
1
-1
/
+13
2014-01-07
Merge branch 'master' of git://git.infradead.org/users/pcmoore/selinux into next
James Morris
7
-39
/
+164
2014-01-06
Merge to v3.13-rc7 for prerequisite changes in the Xen code for TPM
James Morris
29
-326
/
+361
2014-01-03
ima: remove unneeded size_limit argument from ima_eventdigest_init_common()
Roberto Sassu
1
-8
/
+6
2014-01-03
ima: pass HASH_ALGO__LAST as hash algo in ima_eventdigest_init()
Roberto Sassu
1
-2
/
+2
2014-01-03
ima: change the default hash algorithm to SHA1 in ima_eventdigest_ng_init()
Roberto Sassu
1
-1
/
+1
2013-12-31
Smack: File receive audit correction
Casey Schaufler
1
-1
/
+1
2013-12-31
Smack: Rationalize mount restrictions
Casey Schaufler
1
-54
/
+29
2013-12-23
Smack: change rule cap check
Casey Schaufler
1
-1
/
+1
2013-12-23
Smack: Make the syslog control configurable
Casey Schaufler
3
-13
/
+99
2013-12-23
selinux: selinux_setprocattr()->ptrace_parent() needs rcu_read_lock()
Oleg Nesterov
1
-2
/
+2
2013-12-23
selinux: fix broken peer recv check
Chad Hanson
1
-1
/
+3
2013-12-19
Smack: Prevent the * and @ labels from being used in SMACK64EXEC
Casey Schaufler
1
-16
/
+37
2013-12-16
selinux: selinux_setprocattr()->ptrace_parent() needs rcu_read_lock()
Oleg Nesterov
1
-2
/
+2
2013-12-16
SELinux: remove duplicated include from hooks.c
Wei Yongjun
1
-1
/
+0
2013-12-15
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...
Linus Torvalds
3
-42
/
+165
2013-12-15
Revert "selinux: consider filesystem subtype in policies"
Linus Torvalds
2
-60
/
+22
2013-12-13
selinux: revert 102aefdda4d8275ce7d7100bc16c88c74272b260
Paul Moore
2
-60
/
+22
2013-12-13
Merge branch 'master' of git://git.infradead.org/users/pcmoore/selinux_fixes ...
James Morris
3
-42
/
+165
2013-12-12
selinux: process labeled IPsec TCP SYN-ACK packets properly in selinux_ip_pos...
Paul Moore
1
-7
/
+35
2013-12-12
selinux: look for IPsec labels on both inbound and outbound packets
Paul Moore
3
-14
/
+47
2013-12-12
selinux: handle TCP SYN-ACK packets correctly in selinux_ip_postroute()
Paul Moore
1
-15
/
+53
2013-12-12
selinux: handle TCP SYN-ACK packets correctly in selinux_ip_output()
Paul Moore
1
-2
/
+23
2013-12-12
Merge tag 'keys-devel-20131210' of git://git.kernel.org/pub/scm/linux/kernel/...
Linus Torvalds
3
-17
/
+10
2013-12-11
selinux: fix broken peer recv check
Chad Hanson
1
-1
/
+3
2013-12-11
smack: fix: allow either entry be missing on access/access2 check (v2)
Jarkko Sakkinen
1
-14
/
+15
2013-12-10
selinux: process labeled IPsec TCP SYN-ACK packets properly in selinux_ip_pos...
Paul Moore
1
-7
/
+35
2013-12-09
selinux: look for IPsec labels on both inbound and outbound packets
Paul Moore
3
-14
/
+47
2013-12-05
cgroup: replace cftype->read_seq_string() with cftype->seq_show()
Tejun Heo
1
-4
/
+3
2013-12-04
selinux: fix possible memory leak
Geyslan G. Bem
1
-4
/
+7
2013-12-04
selinux: pull address family directly from the request_sock struct
Paul Moore
1
-5
/
+1
2013-12-04
selinux: ensure that the cached NetLabel secattr matches the desired SID
Paul Moore
1
-1
/
+30
2013-12-04
selinux: handle TCP SYN-ACK packets correctly in selinux_ip_postroute()
Paul Moore
1
-15
/
+53
2013-12-04
selinux: handle TCP SYN-ACK packets correctly in selinux_ip_output()
Paul Moore
1
-2
/
+23
2013-12-02
ima: properly free ima_template_entry structures
Roberto Sassu
3
-5
/
+19
2013-12-02
ima: Do not free 'entry' before it is initialized
Christoph Paasch
1
-1
/
+0
2013-12-02
security: shmem: implement kernel private shmem inodes
Eric Paris
1
-1
/
+1
2013-12-02
KEYS: Fix searching of nested keyrings
David Howells
1
-1
/
+1
2013-12-02
KEYS: Fix multiple key add into associative array
David Howells
1
-4
/
+3
2013-12-02
KEYS: Fix the keyring hash function
David Howells
1
-4
/
+4
2013-12-02
KEYS: Pre-clear struct key on allocation
David Howells
1
-7
/
+1
2013-11-30
ima: store address of template_fmt_copy in a pointer before calling strsep
Roberto Sassu
1
-2
/
+4
2013-11-26
Merge tag 'v3.12'
Paul Moore
33
-619
/
+1720
2013-11-25
selinux: fix possible memory leak
Geyslan G. Bem
1
-4
/
+7
2013-11-25
ima: make a copy of template_fmt in template_desc_init_fields()
Roberto Sassu
1
-7
/
+14
2013-11-25
ima: do not send field length to userspace for digest of ima template
Roberto Sassu
3
-5
/
+18
2013-11-25
ima: do not include field length in template digest calc for ima template
Roberto Sassu
3
-6
/
+15
2013-11-23
Revert "ima: define '_ima' as a builtin 'trusted' keyring"
Linus Torvalds
4
-55
/
+1
2013-11-22
Merge tag 'v3.12'
Eric Paris
33
-619
/
+1720
2013-11-21
Merge branch 'for-linus2' of git://git.kernel.org/pub/scm/linux/kernel/git/jm...
Linus Torvalds
65
-1596
/
+3204
2013-11-21
Merge git://git.infradead.org/users/eparis/audit
Linus Torvalds
2
-1
/
+4
2013-11-19
SELinux: security_load_policy: Silence frame-larger-than warning
Tim Gardner
1
-22
/
+32
2013-11-19
SELinux: Update policy version to support constraints info
Richard Haines
4
-10
/
+101
2013-11-14
KEYS: Fix keyring content gc scanner
David Howells
2
-51
/
+36
2013-11-13
KEYS: Fix error handling in big_key instantiation
David Howells
1
-0
/
+1
2013-11-13
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
Linus Torvalds
2
-9
/
+10
2013-11-13
Merge branch 'for-3.13' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/c...
Linus Torvalds
1
-11
/
+0
2013-11-08
Merge tag 'v3.12'
Paul Moore
33
-619
/
+1720
2013-11-06
KEYS: Fix UID check in keyctl_get_persistent()
David Howells
1
-4
/
+2
2013-11-05
audit: suppress stock memalloc failure warnings since already managed
Richard Guy Briggs
1
-1
/
+2
2013-11-05
selinux: apply selinux checks on new audit message types
Eric Paris
1
-0
/
+2
2013-10-31
ima: define '_ima' as a builtin 'trusted' keyring
Mimi Zohar
4
-1
/
+55
2013-10-31
ima: extend the measurement list to include the file signature
Mimi Zohar
8
-12
/
+73
2013-10-31
Merge branch 'keys-devel' of git://git.kernel.org/pub/scm/linux/kernel/git/dh...
James Morris
5
-16
/
+25
2013-10-30
KEYS: fix error return code in big_key_instantiate()
Wei Yongjun
1
-1
/
+3
2013-10-30
KEYS: Fix keyring quota misaccounting on key replacement and unlink
David Howells
1
-12
/
+15
2013-10-30
KEYS: Fix a race between negating a key and reading the error set
David Howells
3
-2
/
+6
2013-10-30
KEYS: Make BIG_KEYS boolean
Josh Boyer
1
-1
/
+1
2013-10-29
apparmor: remove the "task" arg from may_change_ptraced_domain()
Oleg Nesterov
1
-8
/
+6
2013-10-29
apparmor: remove parent task info from audit logging
John Johansen
2
-7
/
+0
2013-10-29
apparmor: remove tsk field from the apparmor_audit_struct
John Johansen
1
-8
/
+2
2013-10-29
apparmor: fix capability to not use the current task, during reporting
John Johansen
6
-22
/
+15
2013-10-30
Merge branch 'smack-for-3.13' of git://git.gitorious.org/smack-next/kernel in...
James Morris
4
-9
/
+34
2013-10-28
Smack: Ptrace access check mode
Casey Schaufler
1
-1
/
+1
2013-10-26
ima: provide hash algo info in the xattr
Dmitry Kasatkin
2
-15
/
+59
2013-10-26
ima: enable support for larger default filedata hash algorithms
Mimi Zohar
2
-2
/
+59
2013-10-26
ima: define kernel parameter 'ima_template=' to change configured default
Roberto Sassu
1
-0
/
+31
2013-10-26
ima: add Kconfig default measurement list template
Mimi Zohar
2
-2
/
+27
2013-10-26
ima: defer determining the appraisal hash algorithm for 'ima' template
Roberto Sassu
1
-1
/
+5
2013-10-26
ima: add audit log support for larger hashes
Mimi Zohar
1
-1
/
+4
2013-10-25
ima: switch to new template management mechanism
Roberto Sassu
5
-97
/
+107
2013-10-25
ima: define new template ima-ng and template fields d-ng and n-ng
Roberto Sassu
3
-17
/
+150
2013-10-25
ima: define template fields library and new helpers
Roberto Sassu
6
-8
/
+242
2013-10-25
ima: new templates management mechanism
Roberto Sassu
4
-1
/
+146
2013-10-25
ima: define new function ima_alloc_init_template() to API
Roberto Sassu
3
-39
/
+76
2013-10-25
ima: pass the filename argument up to ima_add_template_entry()
Roberto Sassu
4
-10
/
+13
2013-10-25
ima: pass the file descriptor to ima_add_violation()
Roberto Sassu
3
-5
/
+5
2013-10-25
ima: ima_calc_boot_agregate must use SHA1
Dmitry Kasatkin
3
-5
/
+31
2013-10-25
ima: support arbitrary hash algorithms in ima_calc_buffer_hash
Dmitry Kasatkin
2
-6
/
+25
2013-10-25
ima: provide dedicated hash algo allocation function
Dmitry Kasatkin
1
-14
/
+29
2013-10-25
ima: differentiate between template hash and file data hash sizes
Mimi Zohar
6
-12
/
+12
2013-10-25
ima: use dynamically allocated hash storage
Dmitry Kasatkin
4
-30
/
+49
2013-10-25
ima: pass full xattr with the signature
Dmitry Kasatkin
4
-5
/
+7
2013-10-25
ima: read and use signature hash algorithm
Dmitry Kasatkin
6
-25
/
+94
2013-10-25
ima: provide support for arbitrary hash algorithms
Dmitry Kasatkin
7
-32
/
+98
2013-10-25
Revert "ima: policy for RAMFS"
Mimi Zohar
1
-1
/
+0
2013-10-25
ima: fix script messages
Dmitry Kasatkin
6
-13
/
+13
2013-10-24
device_cgroup: remove can_attach
Serge Hallyn
1
-11
/
+0
2013-10-23
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
David S. Miller
5
-30
/
+17
2013-10-22
Merge branch 'master' of git://git.infradead.org/users/pcmoore/selinux into r...
James Morris
16
-392
/
+432
2013-10-18
Smack: Implement lock security mode
Casey Schaufler
4
-8
/
+33
2013-10-16
apparmor: fix bad lock balance when introspecting policy
John Johansen
1
-3
/
+1
2013-10-16
apparmor: fix memleak of the profile hash
John Johansen
1
-0
/
+1
2013-10-14
netfilter: pass hook ops to hookfn
Patrick McHardy
1
-5
/
+5
2013-10-09
net: fix build errors if ipv6 is disabled
Eric Dumazet
1
-0
/
+2
2013-10-09
ipv6: make lookups simpler and faster
Eric Dumazet
1
-3
/
+2
2013-10-04
selinux: remove 'flags' parameter from avc_audit()
Linus Torvalds
3
-4
/
+4
2013-10-04
selinux: avc_has_perm_flags has no more users
Linus Torvalds
2
-17
/
+6
2013-10-04
selinux: remove 'flags' parameter from inode_has_perm
Linus Torvalds
1
-7
/
+6
2013-10-01
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
David S. Miller
3
-20
/
+21
2013-09-30
net ipv4: Convert ipv4.ip_local_port_range to be per netns v3
Eric W. Biederman
1
-1
/
+1
2013-09-30
apparmor: fix suspicious RCU usage warning in policy.c/policy.h
John Johansen
2
-2
/
+5
2013-09-30
apparmor: Use shash crypto API interface for profile hashes
Tyler Hicks
1
-18
/
+16
2013-09-26
selinux: correct locking in selinux_netlbl_socket_connect)
Paul Moore
1
-4
/
+2
2013-09-26
selinux: Use kmemdup instead of kmalloc + memcpy
Duan Jiong
1
-2
/
+2
2013-09-25
KEYS: initialize root uid and session keyrings early
Mimi Zohar
1
-0
/
+10
2013-09-25
KEYS: Add a 'trusted' flag and a 'trusted only' flag
David Howells
2
-0
/
+12
2013-09-24
KEYS: Add per-user_namespace registers for persistent per-UID kerberos caches
David Howells
7
-0
/
+213
2013-09-24
KEYS: Implement a big key type that can save to tmpfs
David Howells
3
-0
/
+216
2013-09-24
KEYS: Expand the capacity of a keyring
David Howells
6
-742
/
+792
2013-09-24
KEYS: Drop the permissions argument from __keyring_search_one()
David Howells
3
-9
/
+5
2013-09-24
KEYS: Define a __key_get() wrapper to use rather than atomic_inc()
David Howells
3
-12
/
+12
2013-09-24
KEYS: Search for auth-key by name rather than target key ID
David Howells
1
-14
/
+7
2013-09-24
KEYS: Introduce a search context structure
David Howells
7
-158
/
+174
2013-09-24
KEYS: Consolidate the concept of an 'index key' for key access
David Howells
4
-62
/
+67
2013-09-24
KEYS: key_is_dead() should take a const key pointer argument
David Howells
1
-1
/
+1
2013-09-24
KEYS: Use bool in make_key_ref() and is_key_possessed()
David Howells
1
-2
/
+3
2013-09-24
KEYS: Skip key state checks when checking for possession
David Howells
4
-6
/
+11
2013-09-24
security: remove erroneous comment about capabilities.o link ordering
Eric Paris
1
-1
/
+0
2013-09-18
Merge git://git.infradead.org/users/eparis/selinux
Paul Moore
15
-388
/
+430
2013-09-07
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebi...
Linus Torvalds
1
-5
/
+5
2013-09-07
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...
Linus Torvalds
28
-547
/
+1666
2013-09-05
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
Linus Torvalds
1
-1
/
+6
2013-09-04
Merge tag 'modules-next-for-linus' of git://git.kernel.org/pub/scm/linux/kern...
Linus Torvalds
1
-0
/
+2
2013-09-03
Merge branch 'for-3.12' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/c...
Linus Torvalds
1
-39
/
+26
2013-08-30
capabilities: allow nice if we are privileged
Serge Hallyn
1
-4
/
+4
2013-08-30
userns: Allow PR_CAPBSET_DROP in a user namespace.
Eric W. Biederman
1
-1
/
+1
2013-08-28
Revert "SELinux: do not handle seclabel as a special flag"
Eric Paris
2
-1
/
+4
2013-08-28
selinux: consider filesystem subtype in policies
Anand Avati
2
-22
/
+60
2013-08-23
Merge branch 'smack-for-3.12' of git://git.gitorious.org/smack-next/kernel in...
James Morris
4
-114
/
+150
2013-08-20
module/lsm: Have apparmor module parameters work with no args
Steven Rostedt
1
-0
/
+2
2013-08-16
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
David S. Miller
1
-13
/
+11
2013-08-14
apparmor: add the ability to report a sha1 hash of loaded policy
John Johansen
8
-6
/
+199
2013-08-14
apparmor: export set of capabilities supported by the apparmor module
John Johansen
4
-1
/
+15
2013-08-14
apparmor: add the profile introspection file to interface
John Johansen
1
-0
/
+236
2013-08-14
apparmor: add an optional profile attachment string for profiles
John Johansen
4
-0
/
+40
2013-08-14
apparmor: add interface files for profiles and namespaces
John Johansen
7
-29
/
+436
2013-08-14
apparmor: allow setting any profile into the unconfined state
John Johansen
5
-9
/
+22
2013-08-14
apparmor: make free_profile available outside of policy.c
John Johansen
3
-7
/
+7
2013-08-14
apparmor: rework namespace free path
John Johansen
2
-35
/
+10
2013-08-14
apparmor: update how unconfined is handled
John Johansen
3
-83
/
+67
2013-08-14
apparmor: change how profile replacement update is done
John Johansen
6
-87
/
+125
2013-08-14
apparmor: convert profile lists to RCU based locking
John Johansen
4
-111
/
+167
2013-08-14
apparmor: provide base for multiple profiles to be replaced at once
John Johansen
4
-146
/
+283
2013-08-14
apparmor: add a features/policy dir to interface
John Johansen
1
-0
/
+5
2013-08-14
apparmor: enable users to query whether apparmor is enabled
John Johansen
1
-1
/
+1
2013-08-14
apparmor: remove minimum size check for vmalloc()
Tetsuo Handa
1
-5
/
+0
2013-08-12
Smack: parse multiple rules per write to load2, up to PAGE_SIZE-1 bytes
Rafal Krypa
1
-85
/
+82
2013-08-08
cgroup: make css_for_each_descendant() and friends include the origin css in ...
Tejun Heo
1
-1
/
+1
2013-08-08
cgroup: make hierarchy iterators deal with cgroup_subsys_state instead of cgroup
Tejun Heo
1
-8
/
+3
2013-08-08
cgroup: pass around cgroup_subsys_state instead of cgroup in file methods
Tejun Heo
1
-6
/
+6
2013-08-08
cgroup: pass around cgroup_subsys_state instead of cgroup in subsystem methods
Tejun Heo
1
-11
/
+11
2013-08-08
cgroup: add css_parent()
Tejun Heo
1
-13
/
+5
2013-08-08
cgroup: add/update accessors which obtain subsys specific data from css
Tejun Heo
1
-1
/
+1
2013-08-08
cgroup: s/cgroup_subsys_state/cgroup_css/ s/task_subsys_state/task_css/
Tejun Heo
1
-2
/
+2
2013-08-06
Smack: IPv6 casting error fix for 3.11
Casey Schaufler
1
-13
/
+11
2013-08-01
Smack: network label match fix
Casey Schaufler
3
-9
/
+31
2013-08-01
security: smack: add a hash table to quicken smk_find_entry()
Tomasz Stanislawski
3
-9
/
+37
2013-08-01
security: smack: fix memleak in smk_write_rules_list()
Tomasz Stanislawski
1
-22
/
+11
2013-07-31
net: split rt_genid for ipv4 and ipv6
fan.du
1
-1
/
+6
2013-07-25
Add SELinux policy capability for always checking packet and peer classes.
Chris PeBenito
4
-6
/
+30
2013-07-25
selinux: fix problems in netnode when BUG() is compiled out
Paul Moore
1
-0
/
+2
2013-07-25
SELinux: use a helper function to determine seclabel
Eric Paris
1
-14
/
+24
2013-07-25
SELinux: pass a superblock to security_fs_use
Eric Paris
3
-15
/
+11
2013-07-25
SELinux: do not handle seclabel as a special flag
Eric Paris
2
-4
/
+1
2013-07-25
SELinux: change sbsec->behavior to short
Eric Paris
3
-3
/
+3
2013-07-25
SELinux: renumber the superblock options
Eric Paris
2
-4
/
+5
2013-07-25
SELinux: do all flags twiddling in one place
Eric Paris
1
-7
/
+5
2013-07-25
SELinux: rename SE_SBLABELSUPP to SBLABEL_MNT
Eric Paris
2
-15
/
+15
2013-07-25
SELinux: use define for number of bits in the mnt flags mask
Eric Paris
1
-1
/
+4
2013-07-25
SELinux: make it harder to get the number of mnt opts wrong
Eric Paris
1
-2
/
+3
2013-07-25
SELinux: remove crazy contortions around proc
Eric Paris
1
-1
/
+1
2013-07-25
SELinux: fix selinuxfs policy file on big endian systems
Eric Paris
1
-2
/
+1
2013-07-25
SELinux: Enable setting security contexts on rootfs inodes.
Stephen Smalley
1
-0
/
+7
2013-07-25
SELinux: Increase ebitmap_node size for 64-bit configuration
Waiman Long
1
-1
/
+7
2013-07-25
SELinux: Reduce overhead of mls_level_isvalid() function call
Waiman Long
4
-19
/
+27
2013-07-25
selinux: remove the BUG_ON() from selinux_skb_xfrm_sid()
Paul Moore
2
-5
/
+8
2013-07-25
selinux: cleanup the XFRM header
Paul Moore
1
-14
/
+5
[next]