Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm-4.19
/
57d64e6f5fac7b47dd03487f5f2670a7f0c67335
/
security
/
integrity
/
ima
b4bfec7
security/integrity: Harden against malformed xattrs
by Seth Forshee
· 8 years ago
064be15
ima: include the reason for TPM-bypass mode
by Mimi Zohar
· 8 years ago
f5acb3d
Revert "ima: limit file hash setting by user to fix and log modes"
by Mimi Zohar
· 8 years ago
9a11a18
ima: fix memory leak in ima_release_policy
by Eric Richter
· 8 years ago
97d2116
Merge branch 'work.xattr' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 8 years ago
5d6c319
xattr: Add __vfs_{get,set,remove}xattr helpers
by Andreas Gruenbacher
· 8 years ago
e71b9df
ima: use file_dentry()
by Miklos Szeredi
· 8 years ago
544e1ce
ima: extend the measurement entry specific pcr
by Eric Richter
· 9 years ago
a422638
ima: change integrity cache to store measured pcr
by Eric Richter
· 9 years ago
67696f6
ima: redefine duplicate template entries
by Eric Richter
· 9 years ago
5f6f027
ima: change ima_measurements_show() to display the entry specific pcr
by Eric Richter
· 9 years ago
14b1da8
ima: include pcr for each measurement log entry
by Eric Richter
· 9 years ago
725de7f
ima: extend ima_get_action() to return the policy pcr
by Eric Richter
· 9 years ago
0260643
ima: add policy support for extending different pcrs
by Eric Richter
· 9 years ago
b8b5727
security/integrity/ima/ima_policy.c: use %pU to output UUID in printable format
by Andy Shevchenko
· 9 years ago
f4f27d0
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 9 years ago
c52b761
Merge branch 'work.const-path' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 9 years ago
0250abc
Merge tag 'keys-next-20160505' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs into next
by James Morris
· 9 years ago
cf90ea9
ima: fix the string representation of the LSM/IMA hook enumeration ordering
by Mimi Zohar
· 9 years ago
05d1a71
ima: add support for creating files using the mknodat syscall
by Mimi Zohar
· 9 years ago
42a4c60
ima: fix ima_inode_post_setattr
by Mimi Zohar
· 9 years ago
56104cf
IMA: Use the the system trusted keyrings instead of .ima_mok
by David Howells
· 9 years ago
a511e1a
KEYS: Move the point of trust determination to __key_link()
by David Howells
· 9 years ago
5ac7eac
KEYS: Add a facility to restrict new links into a keyring
by David Howells
· 9 years ago
81cd889
constify ima_d_path()
by Al Viro
· 9 years ago
95ee08f
ima: require signed IMA policy
by Mimi Zohar
· 9 years ago
19f8a84
ima: measure and appraise the IMA policy itself
by Mimi Zohar
· 9 years ago
7429b09
ima: load policy using path
by Dmitry Kasatkin
· 11 years ago
d9ddf07
ima: support for kexec image and initramfs
by Mimi Zohar
· 9 years ago
c6af8ef
ima: remove firmware and module specific cached status info
by Mimi Zohar
· 9 years ago
a1db742
module: replace copy_module_from_fd with kernel version
by Mimi Zohar
· 9 years ago
39eeb4f
security: define kernel_read_file hook
by Mimi Zohar
· 9 years ago
e40ba6d
firmware: replace call to fw_read_file_contents() with kernel version
by Mimi Zohar
· 9 years ago
cf22221
ima: define a new hook to measure and appraise a file already in memory
by Mimi Zohar
· 9 years ago
98304bc
ima: calculate the hash of a buffer using aynchronous hash(ahash)
by Mimi Zohar
· 9 years ago
11d7646
ima: provide buffer hash calculation function
by Dmitry Kasatkin
· 11 years ago
4ad87a3
ima: use "ima_hooks" enum as function argument
by Mimi Zohar
· 9 years ago
b5269ab
ima: refactor ima_policy_show() to display "ima_hooks" rules
by Mimi Zohar
· 9 years ago
1525b06
ima: separate 'security.ima' reading functionality from collect
by Dmitry Kasatkin
· 10 years ago
c75d8e9
IMA: fix non-ANSI declaration of ima_check_policy()
by Colin Ian King
· 9 years ago
5955102
wrappers for ->i_mutex access
by Al Viro
· 9 years ago
6427e6c
ima: ima_write_policy() limit locking
by Petko Manolov
· 9 years ago
0112721
IMA: policy can be updated zero times
by Sasha Levin
· 9 years ago
92cc916
security/integrity: make ima/ima_mok.c explicitly non-modular
by Paul Gortmaker
· 9 years ago
6ad6afa
ima: update appraise flags after policy update completes
by Mimi Zohar
· 9 years ago
501f1bd
IMA: prevent keys on the .ima_blacklist from being removed
by Mimi Zohar
· 9 years ago
80eae20
IMA: allow reading back the current IMA policy
by Petko Manolov
· 9 years ago
41c89b6
IMA: create machine owner and blacklist keyrings
by Petko Manolov
· 9 years ago
38d859f
IMA: policy can now be updated multiple times
by Petko Manolov
· 9 years ago
f4dc377
integrity: define '.evm' as a builtin 'trusted' keyring
by Dmitry Kasatkin
· 9 years ago
71baba4
mm, page_alloc: rename __GFP_WAIT to __GFP_RECLAIM
by Mel Gorman
· 9 years ago
02201e3
Merge tag 'modules-next-for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/rusty/linux
by Linus Torvalds
· 9 years ago
24fd03c
ima: update builtin policies
by Mimi Zohar
· 10 years ago
4351c29
ima: extend "mask" policy matching support
by Mimi Zohar
· 10 years ago
139069e
ima: add support for new "euid" policy condition
by Mimi Zohar
· 10 years ago
45b2613
ima: fix ima_show_template_data_ascii()
by Mimi Zohar
· 10 years ago
9c27847
kernel/params: constify struct kernel_param_ops uses
by Luis R. Rodriguez
· 10 years ago
8d94eb9
ima: pass iint to ima_add_violation()
by Roberto Sassu
· 10 years ago
23b5741
ima: wrap event related data to the new ima_event_data structure
by Roberto Sassu
· 10 years ago
a18d0cb
ima: remove definition of IMA_X509_PATH
by Dmitry Kasatkin
· 10 years ago
c68ed80
ima: limit file hash setting by user to fix and log modes
by Dmitry Kasatkin
· 10 years ago
cd025f7
ima: do not measure or appraise the NSFS filesystem
by Mimi Zohar
· 10 years ago
6438de9
ima: skip measurement of cgroupfs files and update documentation
by Roberto Sassu
· 10 years ago
5577857
ima: cleanup ima_init_policy() a little
by Dan Carpenter
· 10 years ago
c6f493d
VFS: security/: d_backing_inode() annotations
by David Howells
· 10 years ago
11cd64a
ima: /proc/keys is now mandatory
by David Howells
· 10 years ago
d0bffab
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity into for-linus
by James Morris
· 10 years ago
67e2c38
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 10 years ago
ba00410
Merge branch 'iov_iter' into for-next
by Al Viro
· 10 years ago
63a0eb7
ima: Fix build failure on powerpc when TCG_IBMVTPM dependencies are not met
by Michael Ellerman
· 10 years ago
b583043
kill f_dentry uses
by Al Viro
· 10 years ago
c57782c
ima: require signature based appraisal
by Dmitry Kasatkin
· 10 years ago
fd5f4e90
ima: load x509 certificate from the kernel
by Dmitry Kasatkin
· 10 years ago
e3c4abb
integrity: define a new function integrity_read_file()
by Dmitry Kasatkin
· 10 years ago
6c880ad
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity into for-linus
by James Morris
· 10 years ago
a48fda9
ima: check xattr value length and type in the ima_inode_setxattr()
by Dmitry Kasatkin
· 10 years ago
357aabe
security, crypto: LLVMLinux: Remove VLAIS from ima_crypto.c
by Behan Webster
· 11 years ago
c2426d2
ima: added support for new kernel cmdline parameter ima_template_fmt
by Roberto Sassu
· 10 years ago
1bd7fac
ima: allocate field pointers array on demand in template_desc_init_fields()
by Roberto Sassu
· 10 years ago
9f3166b
ima: don't allocate a copy of template_fmt in template_desc_init_fields()
by Roberto Sassu
· 10 years ago
7dbdb42
ima: display template format in meas. list if template name length is zero
by Roberto Sassu
· 10 years ago
71fed2e
ima: added error messages to template-related functions
by Roberto Sassu
· 10 years ago
0716abb
ima: use atomic bit operations to protect policy update interface
by Dmitry Kasatkin
· 10 years ago
7178784
ima: ignore empty and with whitespaces policy lines
by Dmitry Kasatkin
· 10 years ago
272a6e9
ima: no need to allocate entry for comment
by Dmitry Kasatkin
· 10 years ago
78bb5d0
ima: report policy load status
by Dmitry Kasatkin
· 10 years ago
456f5fd
ima: use path names cache
by Dmitry Kasatkin
· 10 years ago
0f34a00
ima: check ima_policy_flag in the ima_file_free() hook
by Dmitry Kasatkin
· 10 years ago
1b68bdf
ima: detect violations for mmaped files
by Roberto Sassu
· 10 years ago
f7a859f
ima: fix race condition on ima_rdwr_violation_check and process_measurement
by Roberto Sassu
· 10 years ago
a756024
ima: added ima_policy_flag variable
by Roberto Sassu
· 10 years ago
be39ffc
ima: return an error code from ima_add_boot_aggregate()
by Roberto Sassu
· 10 years ago
2faa6ef
ima: provide 'ima_appraise=log' kernel option
by Dmitry Kasatkin
· 11 years ago
31b70f6
ima: move keyring initialization to ima_init()
by Dmitry Kasatkin
· 10 years ago
7ef84e6
integrity: base integrity subsystem kconfig options on integrity
by Dmitry Kasatkin
· 11 years ago
b4148db
ima: initialize only required template
by Dmitry Kasatkin
· 11 years ago
17f4bad
ima: remove usage of filename parameter
by Dmitry Kasatkin
· 10 years ago
86f2bc0
ima: remove unnecessary appraisal test
by Dmitry Kasatkin
· 10 years ago
e4a9c51
ima: add missing '__init' keywords
by Dmitry Kasatkin
· 10 years ago
3a8a2ea
ima: remove unnecessary extra variable
by Dmitry Kasatkin
· 10 years ago
Next »