Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm-4.19
/
80c094a47dd4ea63375e3f60b5e076064f16e857
/
security
/
apparmor
/
include
80c094a
Revert "apparmor: add base infastructure for socket mediation"
by Linus Torvalds
· 7 years ago
79444df
Merge tag 'apparmor-pr-2017-09-22' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 7 years ago
b1545db
apparmor: fix build failure on sparc caused by undeclared signals
by John Johansen
· 8 years ago
651e28c
apparmor: add base infastructure for socket mediation
by John Johansen
· 8 years ago
2410aa9
apparmor: make policy_unpack able to audit different info messages
by John Johansen
· 8 years ago
26b7899
apparmor: add support for absolute root view based labels
by John Johansen
· 8 years ago
2ea3ffb
apparmor: add mount mediation
by John Johansen
· 8 years ago
cd1dbf7
apparmor: add the ability to mediate signals
by John Johansen
· 8 years ago
993b3ab
apparmor: Refactor to remove bprm_secureexec hook
by Kees Cook
· 8 years ago
40cde7f
apparmor: add domain label stacking info to apparmorfs
by John Johansen
· 8 years ago
93c98a4
apparmor: move exec domain mediation to using labels
by John Johansen
· 8 years ago
064dc94
apparmor: mediate files when they are received
by John Johansen
· 8 years ago
8014370
apparmor: move path_link mediation to using labels
by John Johansen
· 8 years ago
aebd873
apparmor: refactor path name lookup and permission checks around labels
by John Johansen
· 8 years ago
98c3d18
apparmor: update aa_audit_file() to use labels
by John Johansen
· 8 years ago
190a951
apparmor: move aa_file_perm() to use labels
by John Johansen
· 8 years ago
290f458
apparmor: allow ptrace checks to be finer grained than just capability
by John Johansen
· 8 years ago
b2d09ae
apparmor: move ptrace checks to using labels
by John Johansen
· 8 years ago
ca916e8
apparmor: add cross check permission helper macros
by John Johansen
· 8 years ago
86b92cb
apparmor: move resource checks to using labels
by John Johansen
· 8 years ago
c70c86c
apparmor: move capability checks to using labels
by John Johansen
· 8 years ago
76a1d26
apparmor: switch getprocattr to using label_print fns()
by John Johansen
· 8 years ago
637f688
apparmor: switch from profiles to using labels on contexts
by John Johansen
· 8 years ago
f1bd904
apparmor: add the base fns() for domain labels
by John Johansen
· 8 years ago
192ca6b
apparmor: revalidate files during exec
by John Johansen
· 8 years ago
2835a13
apparmor: cleanup rename XXX_file_context() to XXX_file_ctx()
by John Johansen
· 8 years ago
df8073c
apparmor: convert aa_change_XXX bool parameters to flags
by John Johansen
· 8 years ago
a1bd627
apparmor: share profile name on replacement
by John Johansen
· 8 years ago
cf797c0
apparmor: convert to profile block critical sections
by John Johansen
· 8 years ago
fe86482
apparmor: move bprm_committing_creds/committed_creds to lsm.c
by John Johansen
· 8 years ago
3664268
apparmor: add namespace lookup fns()
by John Johansen
· 8 years ago
2d679f3
apparmor: switch from file_perms to aa_perms
by John Johansen
· 8 years ago
aa9aeea
apparmor: add gerneric permissions struct and support fns
by John Johansen
· 8 years ago
b5b2557
apparmor: add fn to test if profile supports a given mediation class
by John Johansen
· 8 years ago
d9bf2c2
apparmor: add policy revision file interface
by John Johansen
· 8 years ago
18e99f1
apparmor: provide finer control over policy management
by John Johansen
· 8 years ago
e53cfe6
apparmor: rework perm mapping to a slightly broader set
by John Johansen
· 8 years ago
fc7e0b2
apparmor: move permissions into their own file to be more easily shared
by John Johansen
· 8 years ago
98407f0
apparmor: allow specifying an already created dir to create ns entries in
by John Johansen
· 8 years ago
c97204b
apparmor: rename apparmor file fns and data to indicate use
by John Johansen
· 8 years ago
5d5182ca
apparmor: move to per loaddata files, instead of replicating in profiles
by John Johansen
· 8 years ago
4227c33
apparmor: Move path lookup to using preallocated buffers
by John Johansen
· 8 years ago
72c8a76
apparmor: allow profiles to provide info to disconnected paths
by John Johansen
· 8 years ago
b91deb9
apparmor: make internal lib fn skipn_spaces available to the rest of apparmor
by John Johansen
· 8 years ago
af7caa8
apparmor: move file context into file.h
by John Johansen
· 8 years ago
a7c3e90
mm: introduce kv[mz]alloc helpers
by Michal Hocko
· 8 years ago
545de8f
apparmor: fix parameters so that the permission test is bypassed at boot
by John Johansen
· 8 years ago
c9341ee
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 8 years ago
e6e8bf4
apparmor: fix restricted endian type warnings for dfa unpack
by John Johansen
· 8 years ago
d4669f0
apparmor: add per cpu work buffers to avoid allocating buffers at every hook
by John Johansen
· 8 years ago
e025be0
apparmor: support querying extended trusted helper extra data
by William Hua
· 8 years ago
aa9a39a
apparmor: convert change_profile to use fqname later to give better control
by John Johansen
· 8 years ago
ef88a7a
apparmor: change aad apparmor_audit_data macro to a fn macro
by John Johansen
· 8 years ago
47f6e5c
apparmor: change op from int to const char *
by John Johansen
· 8 years ago
55a26eb
apparmor: rename context abreviation cxt to the more standard ctx
by John Johansen
· 8 years ago
b7fd2c0
apparmor: add per policy ns .load, .replace, .remove interface files
by John Johansen
· 8 years ago
12dd717
apparmor: pass the subject profile into profile replace/remove
by John Johansen
· 8 years ago
04dc715
apparmor: audit policy ns specified in policy load
by John Johansen
· 8 years ago
5ac8c35
apparmor: allow introspecting the loaded policy pre internal transform
by John Johansen
· 8 years ago
fc1c9fd
apparmor: add ns name to the audit data for policy loads
by John Johansen
· 8 years ago
078c73c6
apparmor: add profile and ns params to aa_may_manage_policy()
by John Johansen
· 8 years ago
fd2a804
apparmor: add ns being viewed as a param to policy_admin_capable()
by John Johansen
· 8 years ago
2bd8dbb
apparmor: add ns being viewed as a param to policy_view_capable()
by John Johansen
· 8 years ago
b79473f
apparmor: Make aa_remove_profile() callable from a different view
by John Johansen
· 8 years ago
a71ada3
apparmor: add special .null file used to "close" fds at exec
by John Johansen
· 8 years ago
11c236b
apparmor: add a default null dfa
by John Johansen
· 8 years ago
293a488
apparmor: add get_dfa() fn
by John Johansen
· 8 years ago
181f7c9
apparmor: name null-XXX profiles after the executable
by John Johansen
· 8 years ago
30b026a
apparmor: pass gfp_t parameter into profile allocation
by John Johansen
· 8 years ago
73688d1
apparmor: refactor prepare_ns() and make usable from different views
by John Johansen
· 8 years ago
d102d89
apparmor: pass gfp param into aa_policy_init()
by John Johansen
· 8 years ago
bbe4a7c
apparmor: constify policy name and hname
by John Johansen
· 8 years ago
6e474e3
apparmor: rename hname_tail to basename
by John Johansen
· 8 years ago
efeee83
apparmor: rename mediated_filesystem() to path_mediated_fs()
by John Johansen
· 8 years ago
680cd62
apparmor: add debug assert AA_BUG and Kconfig to control debug info
by John Johansen
· 8 years ago
57e36bb
apparmor: add macro for bug asserts to check that a lock is held
by John Johansen
· 8 years ago
92b6d8e
apparmor: allow ns visibility question to consider subnses
by John Johansen
· 8 years ago
31617dd
apparmor: add fn to lookup profiles by fqname
by John Johansen
· 8 years ago
3b0aaf5
apparmor: add lib fn to find the "split" for fqnames
by John Johansen
· 8 years ago
9a2d40c
apparmor: add strn version of aa_find_ns
by John Johansen
· 8 years ago
1741e9e
apparmor: add strn version of lookup_profile fn
by John Johansen
· 8 years ago
8399588
apparmor: rename replacedby to proxy
by John Johansen
· 8 years ago
d97d51d
apparmor: rename PFLAG_INVALID to PFLAG_STALE
by John Johansen
· 8 years ago
121d4a9
apparmor: rename sid to secid
by John Johansen
· 8 years ago
98849df
apparmor: rename namespace to ns to improve code line lengths
by John Johansen
· 8 years ago
cff281f
apparmor: split apparmor policy namespaces code into its own file
by John Johansen
· 8 years ago
fe6bb31
apparmor: split out shared policy_XXX fns to lib
by John Johansen
· 8 years ago
12557dc
apparmor: move lib definitions into separate lib include
by John Johansen
· 8 years ago
6b1ffa0
locking/atomic, kref: Use kref_get_unless_zero() more
by Peter Zijlstra
· 8 years ago
58acf9d
apparmor: fix module parameters can be changed after policy is locked
by John Johansen
· 9 years ago
1575617
apparmor: add missing id bounds check on dfa verification
by John Johansen
· 9 years ago
6059f71
apparmor: add parameter to control whether policy hashing is used
by John Johansen
· 10 years ago
3539aaf
apparmor: constify aa_path_link()
by Al Viro
· 9 years ago
2c7661f
[apparmor] constify struct path * in a bunch of helpers
by Al Viro
· 9 years ago
7ac2856
Apparmor: mediated_filesystem() should use dentry->d_sb not inode->i_sb
by David Howells
· 10 years ago
39f1f78
nick kvfree() from apparmor
by Al Viro
· 11 years ago
78dc53c
Merge branch 'for-linus2' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 11 years ago
4a7fc30
apparmor: remove parent task info from audit logging
by John Johansen
· 11 years ago
dd0c6e8
apparmor: fix capability to not use the current task, during reporting
by John Johansen
· 11 years ago
4cd4fc7
apparmor: fix suspicious RCU usage warning in policy.c/policy.h
by John Johansen
· 11 years ago
Next »