Age | Commit message (Expand) | Author | Files | Lines |
2020-04-01 | Merge branch 'next-general' of git://git.kernel.org:/pub/scm/linux/kernel/git... | Linus Torvalds | 1 | -1/+0 |
2020-02-21 | security: remove duplicated include from security.h | YueHaibing | 1 | -1/+0 |
2019-12-10 | security,lockdown,selinux: implement SELinux lockdown | Stephen Smalley | 1 | -0/+2 |
2019-12-01 | Merge tag 'powerpc-5.5-1' of git://git.kernel.org/pub/scm/linux/kernel/git/po... | Linus Torvalds | 1 | -0/+2 |
2019-11-11 | Merge tag 'v5.4-rc7' into perf/core, to pick up fixes | Ingo Molnar | 1 | -0/+1 |
2019-10-31 | efi/efi_test: Lock down /dev/efi_test and require CAP_SYS_ADMIN | Javier Martinez Canillas | 1 | -0/+1 |
2019-10-28 | powerpc/xmon: Restrict when kernel is locked down | Christopher M. Riedl | 1 | -0/+2 |
2019-10-19 | perf/core: Fix !CONFIG_PERF_EVENTS build warnings and failures | Ingo Molnar | 1 | -0/+1 |
2019-10-17 | perf_event: Add support for LSM and SELinux checks | Joel Fernandes (Google) | 1 | -1/+37 |
2019-09-28 | Merge branch 'next-lockdown' of git://git.kernel.org/pub/scm/linux/kernel/git... | Linus Torvalds | 1 | -0/+59 |
2019-09-23 | Merge tag 'selinux-pr-20190917' of git://git.kernel.org/pub/scm/linux/kernel/... | Linus Torvalds | 1 | -2/+8 |
2019-08-20 | tracefs: Restrict tracefs when the kernel is locked down | Matthew Garrett | 1 | -0/+1 |
2019-08-20 | debugfs: Restrict debugfs when the kernel is locked down | David Howells | 1 | -0/+1 |
2019-08-20 | lockdown: Lock down perf when in confidentiality mode | David Howells | 1 | -0/+1 |
2019-08-20 | bpf: Restrict bpf when kernel lockdown is in confidentiality mode | David Howells | 1 | -0/+1 |
2019-08-20 | lockdown: Lock down tracing and perf kprobes when in confidentiality mode | David Howells | 1 | -0/+1 |
2019-08-20 | lockdown: Lock down /proc/kcore | David Howells | 1 | -0/+1 |
2019-08-20 | x86/mmiotrace: Lock down the testmmiotrace module | David Howells | 1 | -0/+1 |
2019-08-20 | lockdown: Lock down module params that specify hardware parameters (eg. ioport) | David Howells | 1 | -0/+1 |
2019-08-20 | lockdown: Lock down TIOCSSERIAL | David Howells | 1 | -0/+1 |
2019-08-20 | lockdown: Prohibit PCMCIA CIS storage when the kernel is locked down | David Howells | 1 | -0/+1 |
2019-08-20 | ACPI: Limit access to custom_method when the kernel is locked down | Matthew Garrett | 1 | -0/+1 |
2019-08-20 | x86/msr: Restrict MSR access when the kernel is locked down | Matthew Garrett | 1 | -0/+1 |
2019-08-20 | x86: Lock down IO port access when the kernel is locked down | Matthew Garrett | 1 | -0/+1 |
2019-08-20 | PCI: Lock down BAR access when the kernel is locked down | Matthew Garrett | 1 | -0/+1 |
2019-08-20 | hibernate: Disable when the kernel is locked down | Josh Boyer | 1 | -0/+1 |
2019-08-20 | kexec_load: Disable at runtime if the kernel is locked down | Matthew Garrett | 1 | -0/+1 |
2019-08-20 | lockdown: Restrict /dev/{mem,kmem,port} when the kernel is locked down | Matthew Garrett | 1 | -0/+1 |
2019-08-20 | lockdown: Enforce module signatures if the kernel is locked down | David Howells | 1 | -0/+1 |
2019-08-20 | security: Add a static lockdown policy LSM | Matthew Garrett | 1 | -0/+3 |
2019-08-20 | security: Add a "locked down" LSM hook | Matthew Garrett | 1 | -0/+32 |
2019-08-20 | security: Support early LSMs | Matthew Garrett | 1 | -0/+6 |
2019-08-13 | fanotify, inotify, dnotify, security: add security hook for fs notifications | Aaron Goidel | 1 | -2/+8 |
2019-06-14 | LSM: switch to blocking policy update notifiers | Janne Karhunen | 1 | -6/+6 |
2019-05-08 | Merge branch 'work.mount-syscalls' of git://git.kernel.org/pub/scm/linux/kern... | Linus Torvalds | 1 | -0/+7 |
2019-03-21 | LSM: add new hook for kernfs node initialization | Ondrej Mosnacek | 1 | -0/+9 |
2019-03-21 | vfs: syscall: Add move_mount(2) to move mounts around | David Howells | 1 | -0/+7 |
2019-03-13 | Merge branch 'work.mount' of git://git.kernel.org/pub/scm/linux/kernel/git/vi... | Linus Torvalds | 1 | -1/+17 |
2019-03-07 | Merge tag 'audit-pr-20190305' of git://git.kernel.org/pub/scm/linux/kernel/gi... | Linus Torvalds | 1 | -3/+2 |
2019-02-28 | introduce cloning of fs_context | Al Viro | 1 | -0/+6 |
2019-02-28 | vfs: Put security flags into the fs_context struct | David Howells | 1 | -1/+1 |
2019-02-28 | vfs: Add LSM hooks for the new mount API | David Howells | 1 | -0/+10 |
2019-02-01 | audit: remove unused actx param from audit_rule_match | Richard Guy Briggs | 1 | -3/+2 |
2019-01-11 | LSM: generalize flag passing to security_capable | Micah Morton | 1 | -14/+14 |
2019-01-09 | procfs: add smack subdir to attrs | Casey Schaufler | 1 | -5/+10 |
2018-12-21 | LSM: new method: ->sb_add_mnt_opt() | Al Viro | 1 | -2/+4 |
2018-12-21 | LSM: bury struct security_mnt_opts | Al Viro | 1 | -8/+0 |
2018-12-21 | LSM: hide struct security_mnt_opts from any generic code | Al Viro | 1 | -33/+10 |
2018-12-21 | LSM: split ->sb_set_mnt_opts() out of ->sb_kern_mount() | Al Viro | 1 | -4/+2 |
2018-12-21 | new helper: security_sb_eat_lsm_opts() | Al Viro | 1 | -25/+3 |