summaryrefslogtreecommitdiff
path: root/security/integrity
AgeCommit message (Expand)AuthorFilesLines
2014-10-07ima: check ima_policy_flag in the ima_file_free() hookDmitry Kasatkin3-7/+1
2014-10-06integrity: do zero padding of the key idDmitry Kasatkin1-1/+1
2014-09-18ima: detect violations for mmaped filesRoberto Sassu2-9/+5
2014-09-18ima: fix race condition on ima_rdwr_violation_check and process_measurementRoberto Sassu1-21/+33
2014-09-18ima: added ima_policy_flag variableRoberto Sassu4-5/+34
2014-09-18ima: return an error code from ima_add_boot_aggregate()Roberto Sassu1-6/+15
2014-09-18ima: provide 'ima_appraise=log' kernel optionDmitry Kasatkin2-2/+5
2014-09-18ima: move keyring initialization to ima_init()Dmitry Kasatkin2-8/+6
2014-09-09integrity: make integrity files as 'integrity' moduleDmitry Kasatkin1-3/+3
2014-09-09integrity: base integrity subsystem kconfig options on integrityDmitry Kasatkin3-14/+18
2014-09-09integrity: move asymmetric keys config optionDmitry Kasatkin1-12/+12
2014-09-09ima: initialize only required templateDmitry Kasatkin1-24/+4
2014-09-09ima: remove usage of filename parameterDmitry Kasatkin2-14/+10
2014-09-09ima: remove unnecessary appraisal testDmitry Kasatkin1-2/+0
2014-09-09ima: add missing '__init' keywordsDmitry Kasatkin3-5/+3
2014-09-09ima: remove unnecessary extra variableDmitry Kasatkin1-4/+5
2014-09-09ima: simplify conditional statement to improve performanceDmitry Kasatkin1-4/+2
2014-09-09integrity: remove declaration of non-existing functionsDmitry Kasatkin2-10/+0
2014-09-09integrity: prevent flooding with 'Request for unknown key'Dmitry Kasatkin1-2/+3
2014-09-09ima: pass 'opened' flag to identify newly created filesDmitry Kasatkin3-12/+12
2014-09-09evm: properly handle INTEGRITY_NOXATTRS EVM statusDmitry Kasatkin1-0/+7
2014-09-09ima: provide flag to identify new empty filesDmitry Kasatkin3-7/+13
2014-09-09evm: prevent passing integrity check if xattr read failsDmitry Kasatkin1-3/+4
2014-09-03evm: fix checkpatch warningsDmitry Kasatkin1-3/+0
2014-09-03ima: fix fallback to use new_sync_read()Dmitry Kasatkin1-4/+4
2014-09-03ima: prevent buffer overflow in ima_alloc_tfm()Dmitry Kasatkin1-1/+4
2014-09-03ima: fix ima_alloc_atfm()Mimi Zohar1-1/+4
2014-07-25ima: add support for measuring and appraising firmwareMimi Zohar5-3/+35
2014-07-17ima: define '.ima' as a builtin 'trusted' keyringMimi Zohar5-2/+63
2014-07-17ima: provide double buffering for hash calculationDmitry Kasatkin1-16/+49
2014-07-17ima: introduce multi-page collect buffersDmitry Kasatkin1-2/+96
2014-07-17ima: use ahash API for file hash calculationDmitry Kasatkin1-4/+183
2014-07-17audit: fix dangling keywords in integrity ima message outputRichard Guy Briggs2-4/+4
2014-07-17ima: delay template descriptor lookup until useDmitry Kasatkin1-1/+2
2014-07-17ima: remove unnecessary i_mutex locking from ima_rdwr_violation_check()Dmitry Kasatkin1-4/+0
2014-06-13ima: introduce ima_kernel_read()Dmitry Kasatkin1-1/+31
2014-06-13evm: prohibit userspace writing 'security.evm' HMAC valueMimi Zohar1-2/+10
2014-06-13ima: check inode integrity cache in violation checkDmitry Kasatkin1-2/+7
2014-06-13ima: prevent unnecessary policy checkingDmitry Kasatkin1-9/+4
2014-06-13evm: provide option to protect additional SMACK xattrsDmitry Kasatkin2-0/+22
2014-06-13evm: replace HMAC version with attribute maskDmitry Kasatkin4-11/+33
2014-06-13ima: prevent new digsig xattr from being replacedMimi Zohar1-3/+7
2014-06-10Merge branch 'serge-next-1' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds4-3/+19
2014-06-03ima: audit log files opened with O_DIRECT flagMimi Zohar4-3/+19
2014-04-13Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/vir...Linus Torvalds2-2/+2
2014-04-12Merge git://git.infradead.org/users/eparis/auditLinus Torvalds1-1/+1
2014-04-02get rid of pointless checks for NULL ->i_opAl Viro2-2/+2
2014-03-20audit: anchor all pid references in the initial pid namespaceRichard Guy Briggs1-1/+1
2014-03-07evm: enable key retention service automaticallyDmitry Kasatkin1-2/+3
2014-03-07ima: skip memory allocation for empty filesDmitry Kasatkin1-8/+12