summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2017-06-21ima: define Kconfig IMA_APPRAISE_BOOTPARAM optionMimi Zohar2-0/+10
2017-06-21ima: define a set of appraisal rules requiring file signaturesMimi Zohar1-1/+25
2017-06-21ima: extend the "ima_policy" boot command line to support multiple policiesMimi Zohar1-5/+10
2017-06-21Merge branch 'smack-for-4.13' of git://github.com/cschaufler/smack-next into ...James Morris4-18/+31
2017-06-11apparmor: export that basic profile namespaces are supportedJohn Johansen1-0/+7
2017-06-11apparmor: add stacked domain labels interfaceJohn Johansen2-0/+8
2017-06-11apparmor: add domain label stacking info to apparmorfsJohn Johansen3-0/+39
2017-06-11apparmor: move change_profile mediation to using labelsJohn Johansen1-68/+123
2017-06-11apparmor: move change_hat mediation to using labelsJohn Johansen1-102/+201
2017-06-11apparmor: move exec domain mediation to using labelsJohn Johansen2-259/+678
2017-06-11apparmor: support v7 transition format compatible with label_parseJohn Johansen2-7/+15
2017-06-11apparmor: mediate files when they are receivedJohn Johansen2-0/+7
2017-06-11apparmor: rework file permission to cache file access in file->ctxJohn Johansen1-6/+76
2017-06-11apparmor: move path_link mediation to using labelsJohn Johansen3-47/+59
2017-06-11apparmor: refactor path name lookup and permission checks around labelsJohn Johansen3-45/+85
2017-06-11apparmor: update aa_audit_file() to use labelsJohn Johansen3-9/+18
2017-06-11apparmor: move aa_file_perm() to use labelsJohn Johansen3-37/+64
2017-06-11apparmor: allow ptrace checks to be finer grained than just capabilityJohn Johansen3-0/+68
2017-06-11apparmor: move ptrace checks to using labelsJohn Johansen5-80/+58
2017-06-11apparmor: add cross check permission helper macrosJohn Johansen1-1/+41
2017-06-11apparmor: move resource checks to using labelsJohn Johansen3-42/+80
2017-06-11apparmor: move capability checks to using labelsJohn Johansen5-29/+58
2017-06-11apparmor: update query interface to support label queriesJohn Johansen1-7/+39
2017-06-11apparmor: switch getprocattr to using label_print fns()John Johansen3-37/+27
2017-06-11apparmor: switch from profiles to using labels on contextsJohn Johansen20-529/+686
2017-06-11apparmor: add the base fns() for domain labelsJohn Johansen2-0/+2561
2017-06-11apparmor: revalidate files during execJohn Johansen4-0/+81
2017-06-11apparmor: cleanup rename XXX_file_context() to XXX_file_ctx()John Johansen2-11/+16
2017-06-11apparmor: convert aa_change_XXX bool parameters to flagsJohn Johansen5-32/+29
2017-06-11apparmor: cleanup remove unused and not fully implemented profile renameJohn Johansen1-37/+2
2017-06-11apparmor: refactor updating profiles to the newest parentJohn Johansen1-4/+31
2017-06-11apparmor: share profile name on replacementJohn Johansen3-9/+72
2017-06-11apparmor: convert to profile block critical sectionsJohn Johansen8-56/+162
2017-06-11apparmor: move bprm_committing_creds/committed_creds to lsm.cJohn Johansen3-32/+30
2017-06-11apparmor: fix display of ns nameJohn Johansen1-1/+1
2017-06-11apparmor: fix apparmor_query dataJohn Johansen1-2/+6
2017-06-11apparmor: fix policy load/remove semanticsJohn Johansen2-15/+13
2017-06-11apparmor: add namespace lookup fns()John Johansen3-4/+73
2017-06-11apparmor: cleanup __find_child()John Johansen1-8/+8
2017-06-11apparmor: provide information about path buffer size at bootJohn Johansen1-2/+9
2017-06-11apparmor: add profile permission query abilityJohn Johansen1-1/+102
2017-06-11apparmor: switch from file_perms to aa_permsJohn Johansen5-48/+29
2017-06-11apparmor: add gerneric permissions struct and support fnsJohn Johansen4-17/+153
2017-06-11apparmor: add fn to test if profile supports a given mediation classJohn Johansen1-0/+10
2017-06-11apparmor: speed up transactional queriesJohn Johansen1-11/+114
2017-06-11apparmor: add label data availability to the feature setJohn Johansen1-0/+10
2017-06-11apparmor: add mkdir/rmdir interface to manage policy namespacesJohn Johansen1-1/+94
2017-06-11apparmor: add policy revision file interfaceJohn Johansen4-1/+116
2017-06-11apparmor: provide finer control over policy managementJohn Johansen3-23/+35
2017-06-09apparmor: rework perm mapping to a slightly broader setJohn Johansen5-53/+133