1. 04dc715 apparmor: audit policy ns specified in policy load by John Johansen · 8 years ago
  2. 5ac8c35 apparmor: allow introspecting the loaded policy pre internal transform by John Johansen · 8 years ago
  3. fc1c9fd apparmor: add ns name to the audit data for policy loads by John Johansen · 8 years ago
  4. 078c73c6 apparmor: add profile and ns params to aa_may_manage_policy() by John Johansen · 8 years ago
  5. fd2a804 apparmor: add ns being viewed as a param to policy_admin_capable() by John Johansen · 8 years ago
  6. 2bd8dbb apparmor: add ns being viewed as a param to policy_view_capable() by John Johansen · 8 years ago
  7. a6f2330 apparmor: allow specifying the profile doing the management by John Johansen · 8 years ago
  8. 3e3e569 apparmor: allow introspecting the policy namespace name by John Johansen · 8 years ago
  9. b79473f apparmor: Make aa_remove_profile() callable from a different view by John Johansen · 8 years ago
  10. ee2351e apparmor: track ns level so it can be used to help in view checks by John Johansen · 8 years ago
  11. a71ada3 apparmor: add special .null file used to "close" fds at exec by John Johansen · 8 years ago
  12. 34c426a apparmor: provide userspace flag indicating binfmt_elf_mmap change by John Johansen · 8 years ago
  13. 11c236b apparmor: add a default null dfa by John Johansen · 8 years ago
  14. 6604d4c apparmor: allow policydb to be used as the file dfa by John Johansen · 8 years ago
  15. 293a488 apparmor: add get_dfa() fn by John Johansen · 8 years ago
  16. 474d6b75 apparmor: prepare to support newer versions of policy by John Johansen · 8 years ago
  17. 5ebfb12 apparmor: add support for force complain flag to support learning mode by John Johansen · 8 years ago
  18. abbf873 apparmor: remove paranoid load switch by John Johansen · 8 years ago
  19. 181f7c9 apparmor: name null-XXX profiles after the executable by John Johansen · 8 years ago
  20. 30b026a apparmor: pass gfp_t parameter into profile allocation by John Johansen · 8 years ago
  21. 73688d1 apparmor: refactor prepare_ns() and make usable from different views by John Johansen · 8 years ago
  22. 5fd1b95 apparmor: update policy_destroy to use new debug asserts by John Johansen · 8 years ago
  23. d102d89 apparmor: pass gfp param into aa_policy_init() by John Johansen · 8 years ago
  24. bbe4a7c apparmor: constify policy name and hname by John Johansen · 8 years ago
  25. 6e474e3 apparmor: rename hname_tail to basename by John Johansen · 8 years ago
  26. efeee83 apparmor: rename mediated_filesystem() to path_mediated_fs() by John Johansen · 8 years ago
  27. 680cd62 apparmor: add debug assert AA_BUG and Kconfig to control debug info by John Johansen · 8 years ago
  28. 57e36bb apparmor: add macro for bug asserts to check that a lock is held by John Johansen · 8 years ago
  29. 92b6d8e apparmor: allow ns visibility question to consider subnses by John Johansen · 8 years ago
  30. 31617dd apparmor: add fn to lookup profiles by fqname by John Johansen · 8 years ago
  31. 3b0aaf5 apparmor: add lib fn to find the "split" for fqnames by John Johansen · 8 years ago
  32. 9a2d40c apparmor: add strn version of aa_find_ns by John Johansen · 8 years ago
  33. 1741e9e apparmor: add strn version of lookup_profile fn by John Johansen · 8 years ago
  34. 8399588 apparmor: rename replacedby to proxy by John Johansen · 8 years ago
  35. d97d51d apparmor: rename PFLAG_INVALID to PFLAG_STALE by John Johansen · 8 years ago
  36. 121d4a9 apparmor: rename sid to secid by John Johansen · 8 years ago
  37. 98849df apparmor: rename namespace to ns to improve code line lengths by John Johansen · 8 years ago
  38. cff281f apparmor: split apparmor policy namespaces code into its own file by John Johansen · 8 years ago
  39. fe6bb31 apparmor: split out shared policy_XXX fns to lib by John Johansen · 8 years ago
  40. 12557dc apparmor: move lib definitions into separate lib include by John Johansen · 8 years ago
  41. 8486adf apparmor: use designated initializers by Kees Cook · 8 years ago
  42. a7f6c1b AppArmor: Use GFP_KERNEL for __aa_kvmalloc(). by Tetsuo Handa · 8 years ago
  43. 6b1ffa0 locking/atomic, kref: Use kref_get_unless_zero() more by Peter Zijlstra · 8 years ago
  44. 3a2f5a5 security,selinux,smack: kill security_task_wait hook by Stephen Smalley · 8 years ago
  45. b4ba35c selinux: drop unused socket security classes by Stephen Smalley · 8 years ago
  46. 83a1e53 Smack: ignore private inode for file functions by Seung-Woo Kim · 8 years ago
  47. 805b65a Smack: fix d_instantiate logic for sockfs and pipefs by Rafal Krypa · 8 years ago
  48. c9d238a SMACK: Use smk_tskacc() instead of smk_access() for proper logging by Himanshu Shukla · 8 years ago
  49. 348dc28 Smack: Traverse the smack_known_list using list_for_each_entry_rcu macro by Vishal Goel · 8 years ago
  50. 3d4f673 SMACK: Free the i_security blob in inode using RCU by Himanshu Shukla · 8 years ago
  51. d54a197 SMACK: Delete list_head repeated initialization by Himanshu Shukla · 8 years ago
  52. 2e962e2 SMACK: Add new lock for adding entry in smack master list by Vishal Goel · 8 years ago
  53. 0c96d1f Smack: Fix the issue of wrong SMACK label update in socket bind fail case by Vishal Goel · 8 years ago
  54. 9d44c97 Smack: Fix the issue of permission denied error in ipv6 hook by Vishal Goel · 8 years ago
  55. 3c7ce34 SMACK: Add the rcu synchronization mechanism in ipv6 hooks by Vishal Goel · 8 years ago
  56. 900fde0 selinux: default to security isid in sel_make_bools() if no sid is found by Gary Tierney · 8 years ago
  57. 4262fb5 selinux: log errors when loading new policy by Gary Tierney · 8 years ago
  58. b21507e proc,security: move restriction on writing /proc/pid/attr nodes to proc by Stephen Smalley · 8 years ago
  59. be0554c selinux: clean up cred usage and simplify by Stephen Smalley · 8 years ago
  60. 01593d3 selinux: allow context mounts on tmpfs, ramfs, devpts within user namespaces by Stephen Smalley · 8 years ago
  61. ef37979 selinux: handle ICMPv6 consistently with ICMP by Stephen Smalley · 8 years ago
  62. a2c7c6f selinux: add security in-core xattr support for tracefs by Yongqin Liu · 8 years ago
  63. da69a53 selinux: support distinctions among all network address families by Stephen Smalley · 8 years ago
  64. 7c0f6ba Replace <asm/uaccess.h> with <linux/uaccess.h> globally by Linus Torvalds · 8 years ago
  65. 6732714 Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 8 years ago
  66. bfc5e3a selinux: use the kernel headers when building scripts/selinux by Paul Moore · 8 years ago
  67. 98e1d55d ima: platform-independent hash value by Andreas Steffen · 8 years ago
  68. d68a6fe ima: define a canonical binary_runtime_measurements list format by Mimi Zohar · 8 years ago
  69. c7d0936 ima: support restoring multiple template formats by Mimi Zohar · 8 years ago
  70. 3f23d62 ima: store the builtin/custom template definitions in a list by Mimi Zohar · 8 years ago
  71. 7b8589c ima: on soft reboot, save the measurement list by Mimi Zohar · 8 years ago
  72. d158847 ima: maintain memory size needed for serializing the measurement list by Mimi Zohar · 8 years ago
  73. dcfc569 ima: permit duplicate measurement list entries by Mimi Zohar · 8 years ago
  74. 94c3aac ima: on soft reboot, restore the measurement list by Mimi Zohar · 8 years ago
  75. 9a19a6d Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  76. c4364f8 Merge branches 'work.namei', 'work.dcache' and 'work.iov_iter' into for-linus by Al Viro · 8 years ago
  77. a57cb1c Merge branch 'akpm' (patches from Andrew) by Linus Torvalds · 8 years ago
  78. 5b56d49 mm: add locked parameter to get_user_pages_remote() by Lorenzo Stoakes · 8 years ago
  79. 412ac77a Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace by Linus Torvalds · 8 years ago
  80. 683b96f Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 8 years ago
  81. 9465d9c Merge branch 'timers-core-for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip by Linus Torvalds · 8 years ago
  82. cbbd26b [iov_iter] new primitives - copy_from_iter_full() and friends by Al Viro · 8 years ago
  83. 50523a2 Yama: allow access for the current ptrace parent by Josh Stone · 8 years ago
  84. 4506309 don't open-code file_inode() by Al Viro · 8 years ago
  85. 19339c2 Revert "evm: Translate user/group ids relative to s_user_ns when computing HMAC" by Eric W. Biederman · 8 years ago
  86. 0821e30 Merge branch 'stable-4.10' of git://git.infradead.org/users/pcmoore/selinux into next by James Morris · 8 years ago
  87. b075361 Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity into next by James Morris · 8 years ago
  88. 9287aed selinux: Convert isec->lock into a spinlock by Andreas Gruenbacher · 8 years ago
  89. 636e462 Merge remote branch 'smack/smack-for-4.10' into next by James Morris · 8 years ago
  90. 3322d0d selinux: keep SELinux in sync with new capability definitions by Stephen Smalley · 8 years ago
  91. 3d40658 apparmor: fix change_hat not finding hat after policy replacement by John Johansen · 8 years ago
  92. ea49d10 selinux: normalize input to /sys/fs/selinux/enforce by Stephen Smalley · 8 years ago
  93. baa73d9 posix-timers: Make them configurable by Nicolas Pitre · 8 years ago
  94. 152f91d Smack: Remove unnecessary smack_known_invalid by Casey Schaufler · 8 years ago
  95. 8c15d66 Smack: Use GFP_KERNEL for smack_parse_opts_str(). by Tetsuo Handa · 8 years ago
  96. 13457d0 selinux: Clean up initialization of isec->sclass by Andreas Gruenbacher · 8 years ago
  97. db978da proc: Pass file mode to proc_pid_make_inode by Andreas Gruenbacher · 8 years ago
  98. 4205911 selinux: Minor cleanups by Andreas Gruenbacher · 8 years ago
  99. 8931c3b SELinux: Use GFP_KERNEL for selinux_parse_opts_str(). by Tetsuo Handa · 8 years ago
  100. b4bfec7 security/integrity: Harden against malformed xattrs by Seth Forshee · 8 years ago