Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm-4.9
/
b53fab9d48e9bd9aeba0b500dec550becd981a91
/
security
b53fab9
ima: fix build error
by Randy Dunlap
· 16 years ago
35d50e6
tomoyo: fix sparse warning
by Tetsuo Handa
· 16 years ago
42d5aaa
security: change link order of LSMs so security=tomoyo works
by James Morris
· 16 years ago
00d7d6f
Kconfig and Makefile
by Kentaro Takeda
· 16 years ago
f743324
LSM adapter functions.
by Kentaro Takeda
· 16 years ago
26a2a1c
Domain transition handler.
by Kentaro Takeda
· 16 years ago
b69a54e
File operation restriction part.
by Kentaro Takeda
· 16 years ago
9590837
Common functions for TOMOYO Linux.
by Kentaro Takeda
· 16 years ago
c73bd6d
Memory and pathname management functions.
by Kentaro Takeda
· 16 years ago
523979a
integrity: audit update
by Mimi Zohar
· 16 years ago
cb5629b
Merge branch 'master' into next
by James Morris
· 16 years ago
64c61d8
IMA: fix ima_delete_rules() definition
by James Morris
· 16 years ago
1df9f0a
Integrity: IMA file free imbalance
by Mimi Zohar
· 16 years ago
f4bd857
integrity: IMA policy open
by Mimi Zohar
· 16 years ago
4af4662
integrity: IMA policy
by Mimi Zohar
· 16 years ago
bab7393
integrity: IMA display
by Mimi Zohar
· 16 years ago
3323eec9
integrity: IMA as an integrity service provider
by Mimi Zohar
· 16 years ago
faa3aad
securityfs: fix long-broken securityfs_create_file comment
by Serge E. Hallyn
· 16 years ago
5626d3e
selinux: remove hooks which simply defer to capabilities
by James Morris
· 16 years ago
95c1490
selinux: remove secondary ops call to shm_shmat
by James Morris
· 16 years ago
5c4054c
selinux: remove secondary ops call to unix_stream_connect
by James Morris
· 16 years ago
2cbbd19
selinux: remove secondary ops call to task_kill
by James Morris
· 16 years ago
ef76e74
selinux: remove secondary ops call to task_setrlimit
by James Morris
· 16 years ago
ca5143d
selinux: remove unused cred_commit hook
by James Morris
· 16 years ago
af294e4
selinux: remove secondary ops call to task_create
by James Morris
· 16 years ago
d541bbe
selinux: remove secondary ops call to file_mprotect
by James Morris
· 16 years ago
438add6
selinux: remove secondary ops call to inode_setattr
by James Morris
· 16 years ago
188fbcc
selinux: remove secondary ops call to inode_permission
by James Morris
· 16 years ago
f51115b
selinux: remove secondary ops call to inode_follow_link
by James Morris
· 16 years ago
dd4907a
selinux: remove secondary ops call to inode_mknod
by James Morris
· 16 years ago
e473725
selinux: remove secondary ops call to inode_unlink
by James Morris
· 16 years ago
efdfac4
selinux: remove secondary ops call to inode_link
by James Morris
· 16 years ago
97422ab
selinux: remove secondary ops call to sb_umount
by James Morris
· 16 years ago
ef935b9
selinux: remove secondary ops call to sb_mount
by James Morris
· 16 years ago
5565b0b
selinux: remove secondary ops call to bprm_committed_creds
by James Morris
· 16 years ago
2ec5dbe
selinux: remove secondary ops call to bprm_committing_creds
by James Morris
· 16 years ago
bc05595
selinux: remove unused bprm_check_security hook
by James Morris
· 16 years ago
152a649
smackfs load append mode fix
by Casey Schaufler
· 16 years ago
cd89596
SELinux: Unify context mount and genfs behavior
by David P. Quigley
· 16 years ago
11689d4
SELinux: Add new security mount option to indicate security label support.
by David P. Quigley
· 16 years ago
0d90a7e
SELinux: Condense super block security structure flags and cleanup necessary code.
by David P. Quigley
· 16 years ago
0d54ee1
security: introduce missing kfree
by Vegard Nossum
· 16 years ago
938bb9f
[CVE-2009-0029] System call wrappers part 28
by Heiko Carstens
· 16 years ago
1e7bfb2
[CVE-2009-0029] System call wrappers part 27
by Heiko Carstens
· 16 years ago
c19a28e
remove lots of double-semicolons
by Fernando Carrijo
· 16 years ago
0b82ac3
devices cgroup: allow mkfifo
by Serge E. Hallyn
· 16 years ago
116e057
devcgroup: use list_for_each_entry_rcu()
by Lai Jiangshan
· 16 years ago
ac8cc0f
Merge branch 'next' into for-linus
by James Morris
· 16 years ago
3699c53
CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #3]
by David Howells
· 16 years ago
29881c4
Revert "CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #2]"
by James Morris
· 16 years ago
520c853
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs-2.6
by Linus Torvalds
· 16 years ago
56ff5ef
zero i_uid/i_gid on inode allocation
by Al Viro
· 16 years ago
acfa438
inode->i_op is never NULL
by Al Viro
· 16 years ago
76f7ba3
SELinux: shrink sizeof av_inhert selinux_class_perm and context
by Eric Paris
· 16 years ago
14eaddc
CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #2]
by David Howells
· 16 years ago
5c8c40b
Merge branch 'master' of git://git.infradead.org/users/pcmoore/lblnet-2.6_next into next
by James Morris
· 16 years ago
5af75d8
audit: validate comparison operations, store them in sane form
by Al Viro
· 16 years ago
7d3b56b
Merge branch 'cpus4096-for-linus-3' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/linux-2.6-tip
by Linus Torvalds
· 16 years ago
4f4b6c1
cpumask: prepare for iterators to only go to nr_cpu_ids/nr_cpumask_bits.: core
by Rusty Russell
· 16 years ago
90bd49a
keys: fix sparse warning by adding __user annotation to cast
by James Morris
· 16 years ago
be6d3e5
introduce new LSM hooks where vfsmount is available.
by Kentaro Takeda
· 16 years ago
6d3dc07
smack: Add support for unlabeled network hosts and networks
by Casey Schaufler
· 16 years ago
277d342
selinux: Deprecate and schedule the removal of the the compat_net functionality
by Paul Moore
· 16 years ago
6c2e8ac
netlabel: Update kernel configuration API
by Paul Moore
· 16 years ago
eca1bf5
KEYS: Fix variable uninitialisation warnings
by David Howells
· 16 years ago
54d2f64
Merge branch 'next' into for-linus
by James Morris
· 16 years ago
0191b62
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next-2.6
by Linus Torvalds
· 16 years ago
81ea714
smackfs: check for allocation failures in smk_set_access()
by Sergio Luis
· 16 years ago
7419224
SELinux: don't check permissions for kernel mounts
by James Morris
· 16 years ago
12204e2
security: pass mount flags to security_sb_kern_mount()
by James Morris
· 16 years ago
459c19f
SELinux: correctly detect proc filesystems of the form "proc/foo"
by Stephen Smalley
· 16 years ago
200036c
CRED: fix sparse warnings
by Hannes Eder
· 16 years ago
e50a906
capabilities: define get_vfs_caps_from_disk when file caps are not enabled
by Eric Paris
· 16 years ago
3a3b7ce
CRED: Allow kernel services to override LSM settings for task actions
by David Howells
· 16 years ago
1bfdc75
CRED: Add a kernel_service object class to SELinux
by David Howells
· 16 years ago
3b11a1d
CRED: Differentiate objective and effective subjective credentials on a task
by David Howells
· 16 years ago
1d04598
CRED: Prettify commoncap.c
by David Howells
· 16 years ago
a6f76f2
CRED: Make execve() take advantage of copy-on-write credentials
by David Howells
· 16 years ago
d84f4f9
CRED: Inaugurate COW credentials
by David Howells
· 16 years ago
745ca24
CRED: Pass credentials through dentry_open()
by David Howells
· 16 years ago
88e67f3
CRED: Make inode_has_perm() and file_has_perm() take a cred pointer
by David Howells
· 16 years ago
bb952bb
CRED: Separate per-task-group keyrings from signal_struct
by David Howells
· 16 years ago
275bb41
CRED: Wrap access to SELinux's task SID
by David Howells
· 16 years ago
c69e8d9
CRED: Use RCU to access another task's creds and to release a task's own creds
by David Howells
· 16 years ago
86a264a
CRED: Wrap current->cred and a few other accessors
by David Howells
· 16 years ago
f1752ee
CRED: Detach the credentials from task_struct
by David Howells
· 16 years ago
b6dff3e
CRED: Separate task security context from task_struct
by David Howells
· 16 years ago
15a2460
CRED: Constify the kernel_cap_t arguments to the capset LSM hooks
by David Howells
· 16 years ago
1cdcbec
CRED: Neuter sys_capset()
by David Howells
· 16 years ago
8bbf4976
KEYS: Alter use of key instantiation link-to-keyring argument
by David Howells
· 16 years ago
e9e349b
KEYS: Disperse linux/key_ui.h
by David Howells
· 16 years ago
b103c59
CRED: Wrap task credential accesses in the capabilities code
by David Howells
· 16 years ago
47d804b
CRED: Wrap task credential accesses in the key management code
by David Howells
· 16 years ago
7e452ba
Merge branch 'master' of master.kernel.org:/pub/scm/linux/kernel/git/davem/net-2.6
by David S. Miller
· 16 years ago
0667467
Currently SELinux jumps through some ugly hoops to not audit a capbility
by Eric Paris
· 16 years ago
0611216
Add a new capable interface that will be used by systems that use audit to
by Eric Paris
· 16 years ago
3fc689e
Any time fcaps or a setuid app under SECURE_NOROOT is used to result in a
by Eric Paris
· 16 years ago
c0b0044
This patch add a generic cpu endian caps structure and externally available
by Eric Paris
· 16 years ago
1f8f5cf
KEYS: Make request key instantiate the per-user keyrings
by David Howells
· 16 years ago
39c9aed
SELinux: Use unknown perm handling to handle unknown netlink msg types
by Eric Paris
· 16 years ago
Next »