October 2024 Archives by author
Starting: Tue Oct 1 07:09:46 UTC 2024
Ending: Thu Oct 31 23:58:13 UTC 2024
Messages: 649
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Burn Alting
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Burn Alting
- [PATCH v3 2/5] LSM: Replace context+len with lsm_context
Pablo Neira Ayuso
- [PATCH v3 2/5] LSM: Replace context+len with lsm_context
Pablo Neira Ayuso
- [PATCH v3 2/5] LSM: Replace context+len with lsm_context
Pablo Neira Ayuso
- [RFC PATCH v2 1/8] landlock: Fix non-TCP sockets restriction
Matthieu Baerts
- [PATCH v5 1/5] tpm: Return on tpm2_create_null_primary() failure
Stefan Berger
- [PATCH v5 0/5] Lazy flush for the auth session
Stefan Berger
- [PATCH v5 2/5] tpm: Implement tpm2_load_null() rollback
Stefan Berger
- [PATCH] ima: Suspend PCR extends and log appends when rebooting
Stefan Berger
- [PATCH] ima: Suspend PCR extends and log appends when rebooting
Stefan Berger
- [PATCH v8 1/3] tpm: Return tpm2_sessions_init() when null key creation fails
Stefan Berger
- [PATCH v8 3/3] tpm: Lazily flush the auth session
Stefan Berger
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Eric Biggers
- [RESEND PATCH] apparmor: Remove unnecessary NULL check before kvfree()
Thorsten Blum
- [PATCH] pidfd: add ioctl to retrieve pid info
Luca Boccassi
- [PATCH] pidfd: add ioctl to retrieve pid info
Luca Boccassi
- [PATCH] pidfd: add ioctl to retrieve pid info
Luca Boccassi
- [RFC PATCH v3 05/13] clavis: Introduce a new key type called clavis_key_acl
Ben Boeckel
- [RFC PATCH v3 05/13] clavis: Introduce a new key type called clavis_key_acl
Ben Boeckel
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
James Bottomley
- [PATCH v2] rust: add PidNamespace
Christian Brauner
- [PATCH v2] rust: add PidNamespace
Christian Brauner
- [PATCH v3] rust: add PidNamespace
Christian Brauner
- [PATCH v2] rust: add PidNamespace
Christian Brauner
- [PATCH v4] rust: add PidNamespace
Christian Brauner
- [PATCH v2] rust: add PidNamespace
Christian Brauner
- [PATCH v4] rust: add PidNamespace
Christian Brauner
- [PATCH v5] rust: add PidNamespace
Christian Brauner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christian Brauner
- [PATCH v5] rust: add PidNamespace
Christian Brauner
- [PATCH v5] rust: add PidNamespace
Christian Brauner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christian Brauner
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christian Brauner
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christian Brauner
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christian Brauner
- [PATCH v3 -next 10/15] fs: drop_caches: move sysctl to fs/drop_caches.c
Christian Brauner
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christian Brauner
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christian Brauner
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christian Brauner
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christian Brauner
- [PATCH v2 0/3] samples/landlock: Fix port parsing behaviour
Matthieu Buffet
- [PATCH v2 1/3] samples/landlock: Fix port parsing in sandboxer
Matthieu Buffet
- [PATCH v2 2/3] samples/landlock: Refactor --help message in function
Matthieu Buffet
- [PATCH v2 3/3] samples/landlock: Clarify option parsing behaviour
Matthieu Buffet
- [RFC PATCH v1 4/7] landlock: Add UDP send+recv access control
Matthieu Buffet
- [PATCH v3 0/3] samples/landlock: Fix port parsing in sandboxer
Matthieu Buffet
- [PATCH v3 1/3] samples/landlock: Fix port parsing in sandboxer
Matthieu Buffet
- [PATCH v3 2/3] samples/landlock: Refactor help message
Matthieu Buffet
- [PATCH v3 3/3] samples/landlock: Clarify option parsing behaviour
Matthieu Buffet
- [PATCH] Landlock: fix grammar issues in docs
Daniel Burgener
- [PATCH] Landlock: fix grammar issues in docs
Daniel Burgener
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Dave Chinner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Dave Chinner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Dave Chinner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Dave Chinner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Dave Chinner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Dave Chinner
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Dave Chinner
- TOMOYO's pull request for v6.12
Kees Cook
- TOMOYO's pull request for v6.12
Kees Cook
- [PATCH] apparmor: Remove deadcode
Dr. David Alan Gilbert
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Amir Goldstein
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Amir Goldstein
- [PATCH] fsnotify, lsm: Separate fsnotify_open_perm() and security_file_open()
Amir Goldstein
- [PATCH v20 1/6] exec: Add a new AT_CHECK flag to execveat(2)
Amir Goldstein
- [PATCH v2] fsnotify, lsm: Decouple fsnotify from lsm
Amir Goldstein
- [PATCH v2] fsnotify, lsm: Decouple fsnotify from lsm
Amir Goldstein
- [PATCH v20 1/6] exec: Add a new AT_CHECK flag to execveat(2)
Amir Goldstein
- [PATCH] ima: Fix OOB read when violation occurs with ima template.
David Fernandez Gonzalez
- [PATCH v3 -next 00/15] sysctl: move sysctls from vm_table into its own files
Joel Granados
- [PATCH v3 -next 00/15] sysctl: move sysctls from vm_table into its own files
Joel Granados
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- TOMOYO's pull request for v6.12
Dr. Greg
- TOMOYO's pull request for v6.12
Dr. Greg
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- [GIT PULL] tomoyo update for v6.12
Dr. Greg
- [PATCH] KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation
David Gstir
- [PATCH v2] rust: add PidNamespace
Gary Guo
- [PATCH 1/1] add comment for doi_remove in struct netlbl_lsm_secattr
George Guo
- [PATCH 1/1] add comment for doi_remove in struct netlbl_lsm_secattr
George Guo
- [PATCH 1/1] netlabel: Add missing comment to struct field
George Guo
- [PATCH net-next v2] netlabel: document doi_remove field of struct netlbl_calipso_ops
George Guo
- [RFC PATCH] capabilities: remove cap_mmap_file()
Serge E. Hallyn
- TOMOYO's pull request for v6.12
Serge E. Hallyn
- TOMOYO's pull request for v6.12
Serge E. Hallyn
- TOMOYO's pull request for v6.12
Serge E. Hallyn
- TOMOYO's pull request for v6.12
Serge E. Hallyn
- TOMOYO's pull request for v6.12
Serge E. Hallyn
- [PATCH v20 2/6] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits
Serge E. Hallyn
- [PATCH v20 1/6] exec: Add a new AT_CHECK flag to execveat(2)
Serge E. Hallyn
- [PATCH v2 0/6] LSM: Replace secctx/len pairs with lsm_context
Serge E. Hallyn
- [PATCH v2 0/6] LSM: Replace secctx/len pairs with lsm_context
Serge E. Hallyn
- [v2] security: add trace event for cap_capable
Serge E. Hallyn
- [v2] security: add trace event for cap_capable
Serge E. Hallyn
- [v2] security: add trace event for cap_capable
Serge E. Hallyn
- [v3] security: add trace event for cap_capable
Serge E. Hallyn
- [v4] security: add trace event for cap_capable
Serge E. Hallyn
- [v4] security: add trace event for cap_capable
Serge E. Hallyn
- [v4] security: add trace event for cap_capable
Serge E. Hallyn
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Shu Han
- [PATCH 1/3] ima: Remove inode lock
Shu Han
- [GIT PULL] tomoyo update for v6.12
Tetsuo Handa
- [GIT PULL] tomoyo update for v6.12
Tetsuo Handa
- [GIT PULL] tomoyo update for v6.12
Tetsuo Handa
- [GIT PULL] tomoyo update for v6.12
Tetsuo Handa
- [GIT PULL] tomoyo update for v6.12
Tetsuo Handa
- [GIT PULL] tomoyo update for v6.12
Tetsuo Handa
- TOMOYO's pull request for v6.12
Tetsuo Handa
- TOMOYO's pull request for v6.12
Tetsuo Handa
- TOMOYO's pull request for v6.12
Tetsuo Handa
- TOMOYO's pull request for v6.12
Tetsuo Handa
- TOMOYO's pull request for v6.12
Tetsuo Handa
- TOMOYO's pull request for v6.12
Tetsuo Handa
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Tetsuo Handa
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Tetsuo Handa
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Tetsuo Handa
- [PATCH] tomoyo: use u64 for handling numeric values
Tetsuo Handa
- [RFC PATCH v2 3/8] landlock: Fix inconsistency of errors for TCP actions
Tetsuo Handa
- TOMOYO's pull request for v6.12
Tetsuo Handa
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christoph Hellwig
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christoph Hellwig
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christoph Hellwig
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christoph Hellwig
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christoph Hellwig
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Christoph Hellwig
- [PATCH 1/1] add comment for doi_remove in struct netlbl_lsm_secattr
Simon Horman
- [PATCH 1/1] add comment for doi_remove in struct netlbl_lsm_secattr
Simon Horman
- [PATCH 1/1] netlabel: Add missing comment to struct field
Simon Horman
- [PATCH 1/3] ima: Remove inode lock
Jann Horn
- [RFC][PATCH] mm: Split locks in remap_file_pages()
Jann Horn
- [PATCH v3 -next 00/15] sysctl: move sysctls from vm_table into its own files
Liam R. Howlett
- [PATCH v2] mm: Split critical region in remap_file_pages() and invoke LSMs in between
Liam R. Howlett
- [RFC PATCH v3 15/19] selftests/landlock: Test SCTP peeloff restriction
Mikhail Ivanov
- [RFC PATCH v3 16/19] selftests/landlock: Test that accept(2) is not restricted
Mikhail Ivanov
- [RFC PATCH v3 17/19] samples/landlock: Replace atoi() with strtoull() in populate_ruleset_net()
Mikhail Ivanov
- [RFC PATCH v3 18/19] samples/landlock: Support socket protocol restrictions
Mikhail Ivanov
- [RFC PATCH v3 19/19] landlock: Document socket rule type support
Mikhail Ivanov
- [RFC PATCH v1 0/2] Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v1 2/2] selftests/landlock: Test non-TCP INET connection-based protocols
Mikhail Ivanov
- [RFC PATCH v3 14/19] selftests/landlock: Test socketpair(2) restriction
Mikhail Ivanov
- [RFC PATCH v1 2/2] selftests/landlock: Test non-TCP INET connection-based protocols
Mikhail Ivanov
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v2 8/9] selftests/landlock: Test changing socket backlog with listen(2)
Mikhail Ivanov
- [RFC PATCH v2 9/9] samples/landlock: Support LANDLOCK_ACCESS_NET_LISTEN
Mikhail Ivanov
- [RFC PATCH v2 2/9] landlock: Support TCP listen access-control
Mikhail Ivanov
- [RFC PATCH v2 2/9] landlock: Support TCP listen access-control
Mikhail Ivanov
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v2 0/8] Fix non-TCP restriction and inconsistency of TCP errors
Mikhail Ivanov
- [RFC PATCH v2 1/8] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [RFC PATCH v2 2/8] landlock: Make network stack layer checks explicit for each TCP action
Mikhail Ivanov
- [RFC PATCH v2 3/8] landlock: Fix inconsistency of errors for TCP actions
Mikhail Ivanov
- [RFC PATCH v2 4/8] selftests/landlock: Test TCP accesses with protocol=IPPROTO_TCP
Mikhail Ivanov
- [RFC PATCH v2 5/8] selftests/landlock: Test that MPTCP actions are not restricted
Mikhail Ivanov
- [RFC PATCH v2 6/8] selftests/landlock: Test consistency of errors for TCP actions
Mikhail Ivanov
- [RFC PATCH v2 7/8] landlock: Add note about errors consistency in documentation
Mikhail Ivanov
- [RFC PATCH v2 8/8] selftests/landlock: Test that SCTP actions are not restricted
Mikhail Ivanov
- [RFC PATCH v2 3/8] landlock: Fix inconsistency of errors for TCP actions
Mikhail Ivanov
- [RFC PATCH v2 1/8] landlock: Fix non-TCP sockets restriction
Mikhail Ivanov
- [GIT PULL] tomoyo update for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- TOMOYO's pull request for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- TOMOYO's pull request for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- [GIT PULL] tomoyo update for v6.12
John Johansen
- TOMOYO's pull request for v6.12
John Johansen
- TOMOYO's pull request for v6.12
John Johansen
- [PATCH v4 01/13] LSM: Add the lsm_prop data structure.
John Johansen
- axm55xx_defconfig: ld.lld: error: undefined symbol: lockdown_reasons
Naresh Kamboju
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Jan Kara
- [PATCH v3 -next 09/15] fs: fs-writeback: move sysctl to fs/fs-writeback.c
Jan Kara
- [PATCH v3 -next 10/15] fs: drop_caches: move sysctl to fs/drop_caches.c
Jan Kara
- [PATCH] fsnotify, lsm: Separate fsnotify_open_perm() and security_file_open()
Jan Kara
- [PATCH v2] fsnotify, lsm: Decouple fsnotify from lsm
Jan Kara
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Jan Kara
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Jan Kara
- [PATCH][next] scripts: ipe: polgen: remove redundant close and error exit path
Colin Ian King
- [RFC PATCH v2 04/14] landlock: Add unique ID generator
Francis Laniel
- [RFC PATCH v2 05/14] landlock: Move access types
Francis Laniel
- [RFC PATCH v2 10/14] landlock: Log file-related denials
Francis Laniel
- [RFC PATCH v2 12/14] landlock: Log TCP bind and connect denials
Francis Laniel
- [PATCH v3 -next 11/15] sunrpc: use vfs_pressure_ratio() helper
Jeff Layton
- [PATCH v3 -next 11/15] sunrpc: use vfs_pressure_ratio() helper
Jeff Layton
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Jeff Layton
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Jeff Layton
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Jeff Layton
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Jeff Layton
- [PATCH] fsnotify, lsm: Separate fsnotify_open_perm() and security_file_open()
Song Liu
- [PATCH] fsnotify, lsm: Separate fsnotify_open_perm() and security_file_open()
Song Liu
- [PATCH v2] fsnotify, lsm: Decouple fsnotify from lsm
Song Liu
- [PATCH v2] fsnotify, lsm: Decouple fsnotify from lsm
Song Liu
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
Paul Menzel
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
Paul Menzel
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Klara Modin
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Klara Modin
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Klara Modin
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Klara Modin
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Klara Modin
- [GIT PULL] tomoyo update for v6.12
Paul Moore
- [RFC PATCH] capabilities: remove cap_mmap_file()
Paul Moore
- [GIT PULL] tomoyo update for v6.12
Paul Moore
- [GIT PULL] tomoyo update for v6.12
Paul Moore
- [GIT PULL] tomoyo update for v6.12
Paul Moore
- [PATCH] pidfd: add ioctl to retrieve pid info
Paul Moore
- [RFC PATCH] capabilities: remove cap_mmap_file()
Paul Moore
- TOMOYO's pull request for v6.12
Paul Moore
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Paul Moore
- TOMOYO's pull request for v6.12
Paul Moore
- TOMOYO's pull request for v6.12
Paul Moore
- [PATCH] tomoyo: revert CONFIG_SECURITY_TOMOYO_LKM support
Paul Moore
- [PATCH] tomoyo: revert CONFIG_SECURITY_TOMOYO_LKM support
Paul Moore
- [PATCH] tomoyo: revert CONFIG_SECURITY_TOMOYO_LKM support
Paul Moore
- [GIT PULL] lsm/lsm-pr-20241004
Paul Moore
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Paul Moore
- [GIT PULL] tomoyo update for v6.12
Paul Moore
- TOMOYO's pull request for v6.12
Paul Moore
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Paul Moore
- [PATCH] pidfd: add ioctl to retrieve pid info
Paul Moore
- [GIT PULL] tomoyo update for v6.12
Paul Moore
- TOMOYO's pull request for v6.12
Paul Moore
- TOMOYO's pull request for v6.12
Paul Moore
- TOMOYO's pull request for v6.12
Paul Moore
- [GIT PULL] tomoyo update for v6.12
Paul Moore
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Paul Moore
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Paul Moore
- [PATCH 1/3] ima: Remove inode lock
Paul Moore
- [PATCH 1/3] ima: Remove inode lock
Paul Moore
- [PATCH 2/3] ima: Ensure lock is held when setting iint pointer in inode security blob
Paul Moore
- [PATCH] netfilter: Record uid and gid in xt_AUDIT
Paul Moore
- [PATCH] netfilter: Record uid and gid in xt_AUDIT
Paul Moore
- [PATCH RFC v1 2/7] audit: Fix inode numbers
Paul Moore
- [PATCH RFC v1 3/7] selinux: Fix inode numbers in error messages
Paul Moore
- [PATCH RFC v1 4/7] integrity: Fix inode numbers in audit records
Paul Moore
- [PATCH RFC v1 2/7] audit: Fix inode numbers
Paul Moore
- [PATCH v4 1/13] LSM: Add the lsm_prop data structure.
Paul Moore
- [PATCH v4 4/13] Audit: maintain an lsm_prop in audit_context
Paul Moore
- [PATCH v4 5/13] LSM: Use lsm_prop in security_ipc_getsecid
Paul Moore
- [PATCH v4 4/13] Audit: maintain an lsm_prop in audit_context
Paul Moore
- [PATCH v4 4/13] Audit: maintain an lsm_prop in audit_context
Paul Moore
- [RFC PATCH v1 2/7] audit: Fix inode numbers
Paul Moore
- [PATCH] fsnotify, lsm: Separate fsnotify_open_perm() and security_file_open()
Paul Moore
- [RFC PATCH v1 2/7] audit: Fix inode numbers
Paul Moore
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Paul Moore
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Paul Moore
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Paul Moore
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Paul Moore
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Paul Moore
- [PATCH v2] mm: Split critical region in remap_file_pages() and invoke LSMs in between
Paul Moore
- [PATCH v2 1/6] LSM: Ensure the correct LSM context releaser
Paul Moore
- [PATCH v2 4/6] LSM: lsm_context in security_dentry_init_security
Paul Moore
- [PATCH v2 5/6] LSM: secctx provider check on release
Paul Moore
- [PATCH v2 1/6] LSM: Ensure the correct LSM context releaser
Paul Moore
- [PATCH v2] mm: Split critical region in remap_file_pages() and invoke LSMs in between
Paul Moore
- [PATCH v2 5/6] LSM: secctx provider check on release
Paul Moore
- [PATCH v2 4/6] LSM: lsm_context in security_dentry_init_security
Paul Moore
- [RFC PATCH v2 01/14] lsm: Only build lsm_audit.c if CONFIG_AUDIT is set
Paul Moore
- [RFC PATCH v2 02/14] lsm: Add audit_log_lsm_data() helper
Paul Moore
- [RFC PATCH v2 01/14] lsm: Only build lsm_audit.c if CONFIG_AUDIT is set
Paul Moore
- [RFC PATCH v2 02/14] lsm: Add audit_log_lsm_data() helper
Paul Moore
- [PATCH v1] security: add trace event for cap_capable
Paul Moore
- [PATCH] pidfd: add ioctl to retrieve pid info
Paul Moore
- [PATCH net-next v2] netlabel: document doi_remove field of struct netlbl_calipso_ops
Paul Moore
- [PATCH v3 1/5] LSM: Ensure the correct LSM context releaser
Paul Moore
- [PATCH v3 2/5] LSM: Replace context+len with lsm_context
Paul Moore
- [PATCH v3 3/5] LSM: Use lsm_context in security_inode_getsecctx
Paul Moore
- [PATCH v3 4/5] LSM: lsm_context in security_dentry_init_security
Paul Moore
- [PATCH v3 5/5] LSM: secctx provider check on release
Paul Moore
- [PATCH v2] mm: Split critical region in remap_file_pages() and invoke LSMs in between
Andrew Morton
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Trond Myklebust
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Trond Myklebust
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Trond Myklebust
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Trond Myklebust
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Trond Myklebust
- [v1] security: add trace event for cap_capable
Andrii Nakryiko
- [v1] security: add trace event for cap_capable
Andrii Nakryiko
- [v2] security: add trace event for cap_capable
Andrii Nakryiko
- [v3] security: add trace event for cap_capable
Andrii Nakryiko
- [PATCH v3 -next 11/15] sunrpc: use vfs_pressure_ratio() helper
NeilBrown
- [RFC PATCH v3 19/19] landlock: Document socket rule type support
Günther Noack
- [RFC PATCH v3 18/19] samples/landlock: Support socket protocol restrictions
Günther Noack
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Günther Noack
- [RFC PATCH v1 2/2] selftests/landlock: Test non-TCP INET connection-based protocols
Günther Noack
- [RFC PATCH v3 19/19] landlock: Document socket rule type support
Günther Noack
- [PATCH v1] landlock: Improve documentation of previous limitations
Günther Noack
- [RFC PATCH v2 2/9] landlock: Support TCP listen access-control
Günther Noack
- [RFC PATCH v2 8/9] selftests/landlock: Test changing socket backlog with listen(2)
Günther Noack
- [RFC PATCH v2 9/9] samples/landlock: Support LANDLOCK_ACCESS_NET_LISTEN
Günther Noack
- [PATCH v1 1/3] landlock: Refactor filesystem access mask management
Günther Noack
- [RFC PATCH v2 2/9] landlock: Support TCP listen access-control
Günther Noack
- [PATCH v3 1/3] landlock: Refactor filesystem access mask management
Günther Noack
- [PATCH v2] rust: add PidNamespace
Miguel Ojeda
- [PATCH v2] rust: add PidNamespace
Miguel Ojeda
- [PATCH v4] rust: add PidNamespace
Miguel Ojeda
- [PATCH v2] security/keys: fix slab-out-of-bounds in key_task_permission
Chen Ridong
- [PATCH] security/keys: fix slab-out-of-bounds in key_task_permission
Chen Ridong
- [PATCH v2] security/keys: fix slab-out-of-bounds in key_task_permission
Chen Ridong
- [PATCH v2] security/keys: fix slab-out-of-bounds in key_task_permission
Chen Ridong
- [PATCH v6] tpm: Add new device/vendor ID 0x50666666
Jett Rink
- [RFC PATCH v2 01/14] lsm: Only build lsm_audit.c if CONFIG_AUDIT is set
Guenter Roeck
- [v1] security: add trace event for cap_capable
Jordan Rome
- [v1] security: add trace event for cap_capable
Jordan Rome
- [v1] security: add trace event for cap_capable
Jordan Rome
- [v1] security: add trace event for cap_capable
Jordan Rome
- [v2] security: add trace event for cap_capable
Jordan Rome
- [v2] security: add trace event for cap_capable
Jordan Rome
- [v2] security: add trace event for cap_capable
Jordan Rome
- [v2] security: add trace event for cap_capable
Jordan Rome
- [v3] security: add trace event for cap_capable
Jordan Rome
- [v4] security: add trace event for cap_capable
Jordan Rome
- [v4] security: add trace event for cap_capable
Jordan Rome
- [v1] security: add trace event for cap_capable
Steven Rostedt
- [v1] security: add trace event for cap_capable
Steven Rostedt
- [PATCH] apparmor: test: Fix memory leak for aa_unpack_strdup()
Jinjie Ruan
- [PATCH v2] rust: add PidNamespace
Alice Ryhl
- [PATCH v5] rust: add PidNamespace
Alice Ryhl
- [PATCH] security/keys: fix slab-out-of-bounds in key_task_permission
Jarkko Sakkinen
- [PATCH v5 0/5] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH v5 1/5] tpm: Return on tpm2_create_null_primary() failure
Jarkko Sakkinen
- [PATCH v5 0/5] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH] security/keys: fix slab-out-of-bounds in key_task_permission
Jarkko Sakkinen
- [PATCH v5 0/5] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH v5 0/5] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH v5 0/5] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH v5 0/5] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH v5 0/5] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH v2] security/keys: fix slab-out-of-bounds in key_task_permission
Jarkko Sakkinen
- [PATCH v2] security/keys: fix slab-out-of-bounds in key_task_permission
Jarkko Sakkinen
- [PATCH v2] security/keys: fix slab-out-of-bounds in key_task_permission
Jarkko Sakkinen
- [RFC PATCH v3 01/13] certs: Remove CONFIG_INTEGRITY_PLATFORM_KEYRING check
Jarkko Sakkinen
- [RFC PATCH v3 02/13] certs: Introduce ability to link to a system key
Jarkko Sakkinen
- [RFC PATCH v3 03/13] clavis: Introduce a new system keyring called clavis
Jarkko Sakkinen
- [RFC PATCH v3 04/13] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
Jarkko Sakkinen
- [RFC PATCH v3 06/13] clavis: Populate clavis keyring acl with kernel module signature
Jarkko Sakkinen
- [RFC PATCH v3 03/13] clavis: Introduce a new system keyring called clavis
Jarkko Sakkinen
- [RFC PATCH v3 04/13] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
Jarkko Sakkinen
- [PATCH v2] mm: Split critical region in remap_file_pages() and invoke LSMs in between
Jarkko Sakkinen
- [PATCH v6] tpm: Add new device/vendor ID 0x50666666
Jarkko Sakkinen
- [PATCH v8 0/3] Lazy flush for the auth session
Jarkko Sakkinen
- [PATCH v8 1/3] tpm: Return tpm2_sessions_init() when null key creation fails
Jarkko Sakkinen
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
Jarkko Sakkinen
- [PATCH v8 3/3] tpm: Lazily flush the auth session
Jarkko Sakkinen
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
Jarkko Sakkinen
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
Jarkko Sakkinen
- [PATCH v8 1/3] tpm: Return tpm2_sessions_init() when null key creation fails
Jarkko Sakkinen
- [PATCH v8 3/3] tpm: Lazily flush the auth session
Jarkko Sakkinen
- [PATCH] KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation
Jarkko Sakkinen
- [PATCH] KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation
Jarkko Sakkinen
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
Jarkko Sakkinen
- [PATCH v6] tpm: Add new device/vendor ID 0x50666666
Jarkko Sakkinen
- [PATCH v8 2/3] tpm: Rollback tpm2_load_null()
Jarkko Sakkinen
- [PATCH v1 0/3] Refactor Landlock access mask management
Mickaël Salaün
- [PATCH v1 1/3] landlock: Refactor filesystem access mask management
Mickaël Salaün
- [PATCH v1 2/3] landlock: Refactor network access mask management
Mickaël Salaün
- [PATCH v1 3/3] landlock: Optimize scope enforcement
Mickaël Salaün
- [PATCH v2 2/3] samples/landlock: Refactor --help message in function
Mickaël Salaün
- [PATCH v2 3/3] samples/landlock: Clarify option parsing behaviour
Mickaël Salaün
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mickaël Salaün
- [RFC PATCH v1 2/2] selftests/landlock: Test non-TCP INET connection-based protocols
Mickaël Salaün
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mickaël Salaün
- [RFC PATCH v1 2/2] selftests/landlock: Test non-TCP INET connection-based protocols
Mickaël Salaün
- TOMOYO's pull request for v6.12
Mickaël Salaün
- [RFC PATCH v1 5/7] samples/landlock: Add sandboxer UDP access control
Mickaël Salaün
- [PATCH v1] landlock: Improve documentation of previous limitations
Mickaël Salaün
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Mickaël Salaün
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mickaël Salaün
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mickaël Salaün
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Mickaël Salaün
- [PATCH v1 1/3] landlock: Refactor filesystem access mask management
Mickaël Salaün
- [RFC PATCH v1 1/2] landlock: Fix non-TCP sockets restriction
Mickaël Salaün
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Mickaël Salaün
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Mickaël Salaün
- [PATCH v1 1/3] landlock: Refactor filesystem access mask management
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 2/7] audit: Fix inode numbers
Mickaël Salaün
- [RFC PATCH v1 3/7] selinux: Fix inode numbers in error messages
Mickaël Salaün
- [RFC PATCH v1 4/7] integrity: Fix inode numbers in audit records
Mickaël Salaün
- [RFC PATCH v1 5/7] ipe: Fix inode numbers in audit records
Mickaël Salaün
- [RFC PATCH v1 6/7] smack: Fix inode numbers in logs
Mickaël Salaün
- [RFC PATCH v1 7/7] tomoyo: Fix inode numbers in logs
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [PATCH RFC v1 4/7] integrity: Fix inode numbers in audit records
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [PATCH RFC v1 4/7] integrity: Fix inode numbers in audit records
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [PATCH v20 0/6] Script execution control (was O_MAYEXEC)
Mickaël Salaün
- [PATCH v20 1/6] exec: Add a new AT_CHECK flag to execveat(2)
Mickaël Salaün
- [PATCH v20 2/6] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits
Mickaël Salaün
- [PATCH v20 3/6] selftests/exec: Add 32 tests for AT_CHECK and exec securebits
Mickaël Salaün
- [PATCH v20 4/6] selftests/landlock: Add tests for execveat + AT_CHECK
Mickaël Salaün
- [PATCH v20 5/6] samples/check-exec: Add set-exec
Mickaël Salaün
- [PATCH v20 6/6] samples/check-exec: Add an enlighten "inc" interpreter and 28 tests
Mickaël Salaün
- [PATCH v20 1/6] exec: Add a new AT_CHECK flag to execveat(2)
Mickaël Salaün
- [PATCH v20 1/6] exec: Add a new AT_CHECK flag to execveat(2)
Mickaël Salaün
- [PATCH v20 2/6] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits
Mickaël Salaün
- [PATCH v2 0/3] Refactor Landlock access mask management
Mickaël Salaün
- [PATCH v2 1/3] landlock: Refactor filesystem access mask management
Mickaël Salaün
- [PATCH v2 2/3] landlock: Refactor network access mask management
Mickaël Salaün
- [PATCH v2 3/3] landlock: Optimize scope enforcement
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 2/7] audit: Fix inode numbers
Mickaël Salaün
- [PATCH] tomoyo: use u64 for handling numeric values
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Mickaël Salaün
- [RFC PATCH v2 1/8] landlock: Fix non-TCP sockets restriction
Mickaël Salaün
- [PATCH] Landlock: fix grammar issues in docs
Mickaël Salaün
- [RFC PATCH v1 4/7] landlock: Add UDP send+recv access control
Mickaël Salaün
- [PATCH] Landlock: fix grammar issues in docs
Mickaël Salaün
- [PATCH v3 0/3] Refactor Landlock access mask management
Mickaël Salaün
- [PATCH v3 1/3] landlock: Refactor filesystem access mask management
Mickaël Salaün
- [PATCH v3 2/3] landlock: Refactor network access mask management
Mickaël Salaün
- [PATCH v3 3/3] landlock: Optimize scope enforcement
Mickaël Salaün
- [RFC PATCH v2 00/14] Landlock audit support
Mickaël Salaün
- [RFC PATCH v2 01/14] lsm: Only build lsm_audit.c if CONFIG_AUDIT is set
Mickaël Salaün
- [RFC PATCH v2 02/14] lsm: Add audit_log_lsm_data() helper
Mickaël Salaün
- [RFC PATCH v2 03/14] landlock: Factor out check_access_path()
Mickaël Salaün
- [RFC PATCH v2 04/14] landlock: Add unique ID generator
Mickaël Salaün
- [RFC PATCH v2 05/14] landlock: Move access types
Mickaël Salaün
- [RFC PATCH v2 06/14] landlock: Move domain hierarchy management
Mickaël Salaün
- [RFC PATCH v2 07/14] landlock: Log ptrace denials
Mickaël Salaün
- [RFC PATCH v2 08/14] landlock: Log domain properties and release
Mickaël Salaün
- [RFC PATCH v2 09/14] landlock: Log mount-related denials
Mickaël Salaün
- [RFC PATCH v2 10/14] landlock: Log file-related denials
Mickaël Salaün
- [RFC PATCH v2 11/14] landlock: Log truncate and ioctl denials
Mickaël Salaün
- [RFC PATCH v2 12/14] landlock: Log TCP bind and connect denials
Mickaël Salaün
- [RFC PATCH v2 13/14] landlock: Log scoped denials
Mickaël Salaün
- [RFC PATCH v2 14/14] landlock: Control log events with LANDLOCK_RESTRICT_SELF_LOGLESS
Mickaël Salaün
- [RFC PATCH v2 00/14] Landlock audit support
Mickaël Salaün
- [PATCH v3 3/3] samples/landlock: Clarify option parsing behaviour
Mickaël Salaün
- [PATCH v3 1/3] samples/landlock: Fix port parsing in sandboxer
Mickaël Salaün
- [syzbot] [integrity?] [lsm?] KMSAN: uninit-value in ima_add_template_entry (2)
Roberto Sassu
- [PATCH v3 00/14] KEYS: Add support for PGP keys and signatures
Roberto Sassu
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Roberto Sassu
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 2/3] ima: Ensure lock is held when setting iint pointer in inode security blob
Roberto Sassu
- [PATCH 3/3] ima: Mark concurrent accesses to the iint pointer in the inode security blob
Roberto Sassu
- [PATCH] ima: Fix OOB read when violation occurs with ima template.
Roberto Sassu
- [PATCH 2/3] ima: Ensure lock is held when setting iint pointer in inode security blob
Roberto Sassu
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH RFC v1 4/7] integrity: Fix inode numbers in audit records
Roberto Sassu
- [PATCH RFC v1 4/7] integrity: Fix inode numbers in audit records
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH v5 0/5] Lazy flush for the auth session
Roberto Sassu
- [PATCH 2/3] ima: Ensure lock is held when setting iint pointer in inode security blob
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 2/3] ima: Ensure lock is held when setting iint pointer in inode security blob
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [PATCH 1/3] ima: Remove inode lock
Roberto Sassu
- [RFC][PATCH] mm: Split locks in remap_file_pages()
Roberto Sassu
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
Roberto Sassu
- [RFC][PATCH] mm: Split locks in remap_file_pages()
Roberto Sassu
- [RFC][PATCH] mm: Split locks in remap_file_pages()
Roberto Sassu
- [PATCH v2] mm: Split critical region in remap_file_pages() and invoke LSMs in between
Roberto Sassu
- [PATCH v2] mm: Split critical region in remap_file_pages() and invoke LSMs in between
Roberto Sassu
- TOMOYO's pull request for v6.12
Casey Schaufler
- TOMOYO's pull request for v6.12
Casey Schaufler
- TOMOYO's pull request for v6.12
Casey Schaufler
- TOMOYO's pull request for v6.12
Casey Schaufler
- TOMOYO's pull request for v6.12
Casey Schaufler
- [GIT PULL] tomoyo update for v6.12
Casey Schaufler
- [PATCH v4 00/13] LSM: Move away from secids
Casey Schaufler
- [PATCH v4 01/13] LSM: Add the lsm_prop data structure.
Casey Schaufler
- [PATCH v4 02/13] LSM: Use lsm_prop in security_audit_rule_match
Casey Schaufler
- [PATCH v4 03/13] LSM: Add lsmprop_to_secctx hook
Casey Schaufler
- [PATCH v4 04/13] Audit: maintain an lsm_prop in audit_context
Casey Schaufler
- [PATCH v4 05/13] LSM: Use lsm_prop in security_ipc_getsecid
Casey Schaufler
- [PATCH v4 06/13] Audit: Update shutdown LSM data
Casey Schaufler
- [PATCH v4 07/13] LSM: Use lsm_prop in security_current_getsecid
Casey Schaufler
- [PATCH v4 08/13] LSM: Use lsm_prop in security_inode_getsecid
Casey Schaufler
- [PATCH v4 09/13] Audit: use an lsm_prop in audit_names
Casey Schaufler
- [PATCH v4 10/13] LSM: Create new security_cred_getlsmprop LSM hook
Casey Schaufler
- [PATCH v4 11/13] Audit: Change context data from secid to lsm_prop
Casey Schaufler
- [PATCH v4 12/13] Use lsm_prop for audit data
Casey Schaufler
- [PATCH v4 13/13] LSM: Remove lsm_prop scaffolding
Casey Schaufler
- [RFC PATCH v1 6/7] smack: Fix inode numbers in logs
Casey Schaufler
- [PATCH v4 1/13] LSM: Add the lsm_prop data structure.
Casey Schaufler
- [PATCH v4 4/13] Audit: maintain an lsm_prop in audit_context
Casey Schaufler
- [PATCH v4 4/13] Audit: maintain an lsm_prop in audit_context
Casey Schaufler
- [GIT PULL] tomoyo update for v6.12
Casey Schaufler
- [PATCH v2 0/6] LSM: Replace secctx/len pairs with lsm_context
Casey Schaufler
- [PATCH v2 1/6] LSM: Ensure the correct LSM context releaser
Casey Schaufler
- [PATCH v2 2/6] LSM: Replace context+len with lsm_context
Casey Schaufler
- [PATCH v2 3/6] LSM: Use lsm_context in security_inode_getsecctx
Casey Schaufler
- [PATCH v2 4/6] LSM: lsm_context in security_dentry_init_security
Casey Schaufler
- [PATCH v2 5/6] LSM: secctx provider check on release
Casey Schaufler
- [PATCH v2 6/6] LSM: Use lsm_context in security_inode_notifysecctx
Casey Schaufler
- [PATCH v2 0/6] LSM: Replace secctx/len pairs with lsm_context
Casey Schaufler
- [PATCH v2 0/6] LSM: Replace secctx/len pairs with lsm_context
Casey Schaufler
- [PATCH v2 1/6] LSM: Ensure the correct LSM context releaser
Casey Schaufler
- [PATCH v2 4/6] LSM: lsm_context in security_dentry_init_security
Casey Schaufler
- [PATCH v2 5/6] LSM: secctx provider check on release
Casey Schaufler
- [PATCH v2 4/6] LSM: lsm_context in security_dentry_init_security
Casey Schaufler
- [PATCH v3 0/5] LSM: Replace secctx/len pairs with lsm_context
Casey Schaufler
- [PATCH v3 1/5] LSM: Ensure the correct LSM context releaser
Casey Schaufler
- [PATCH v3 2/5] LSM: Replace context+len with lsm_context
Casey Schaufler
- [PATCH v3 3/5] LSM: Use lsm_context in security_inode_getsecctx
Casey Schaufler
- [PATCH v3 4/5] LSM: lsm_context in security_dentry_init_security
Casey Schaufler
- [PATCH v3 5/5] LSM: secctx provider check on release
Casey Schaufler
- [PATCH v3 2/5] LSM: Replace context+len with lsm_context
Casey Schaufler
- [PATCH v3 2/5] LSM: Replace context+len with lsm_context
Casey Schaufler
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
Anna Schumaker
- [PATCH v9 0/7] Improve the copy of task comm
Yafang Shao
- [PATCH v9 1/7] Get rid of __get_task_comm()
Yafang Shao
- [PATCH v9 2/7] auditsc: Replace memcpy() with strscpy()
Yafang Shao
- [PATCH v9 3/7] security: Replace memcpy() with get_task_comm()
Yafang Shao
- [PATCH v9 4/7] bpftool: Ensure task comm is always NUL-terminated
Yafang Shao
- [PATCH v9 5/7] mm/util: Fix possible race condition in kstrdup()
Yafang Shao
- [PATCH v9 6/7] mm/util: Deduplicate code in {kstrdup, kstrndup, kmemdup_nul}
Yafang Shao
- [PATCH v9 7/7] drm: Replace strcpy() with strscpy()
Yafang Shao
- [PATCH v6] tpm: Add new device/vendor ID 0x50666666
Tzung-Bi Shih
- [PATCH 1/3] ima: Remove inode lock
Kirill A. Shutemov
- [PATCH 1/3] ima: Remove inode lock
Kirill A. Shutemov
- [PATCH 1/3] ima: Remove inode lock
Kirill A. Shutemov
- [PATCH 1/3] ima: Remove inode lock
Kirill A. Shutemov
- [PATCH 1/3] ima: Remove inode lock
Kirill A. Shutemov
- [RFC PATCH v3 00/13] Clavis LSM
Eric Snowberg
- [RFC PATCH v3 01/13] certs: Remove CONFIG_INTEGRITY_PLATFORM_KEYRING check
Eric Snowberg
- [RFC PATCH v3 02/13] certs: Introduce ability to link to a system key
Eric Snowberg
- [RFC PATCH v3 03/13] clavis: Introduce a new system keyring called clavis
Eric Snowberg
- [RFC PATCH v3 04/13] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
Eric Snowberg
- [RFC PATCH v3 05/13] clavis: Introduce a new key type called clavis_key_acl
Eric Snowberg
- [RFC PATCH v3 06/13] clavis: Populate clavis keyring acl with kernel module signature
Eric Snowberg
- [RFC PATCH v3 07/13] keys: Add ability to track intended usage of the public key
Eric Snowberg
- [RFC PATCH v3 08/13] clavis: Introduce new LSM called clavis
Eric Snowberg
- [RFC PATCH v3 09/13] clavis: Allow user to define acl at build time
Eric Snowberg
- [RFC PATCH v3 10/13] efi: Make clavis boot param persist across kexec
Eric Snowberg
- [RFC PATCH v3 11/13] clavis: Prevent boot param change during kexec
Eric Snowberg
- [RFC PATCH v3 12/13] clavis: Add function redirection for Kunit support
Eric Snowberg
- [RFC PATCH v3 13/13] clavis: Kunit support
Eric Snowberg
- [RFC PATCH v3 01/13] certs: Remove CONFIG_INTEGRITY_PLATFORM_KEYRING check
Eric Snowberg
- [RFC PATCH v3 02/13] certs: Introduce ability to link to a system key
Eric Snowberg
- [RFC PATCH v3 03/13] clavis: Introduce a new system keyring called clavis
Eric Snowberg
- [RFC PATCH v3 04/13] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
Eric Snowberg
- [RFC PATCH v3 05/13] clavis: Introduce a new key type called clavis_key_acl
Eric Snowberg
- [RFC PATCH v3 05/13] clavis: Introduce a new key type called clavis_key_acl
Eric Snowberg
- [RFC PATCH v3 08/13] clavis: Introduce new LSM called clavis
Eric Snowberg
- [PATCH 1/3] ima: Remove inode lock
Lorenzo Stoakes
- [PATCH 1/3] ima: Remove inode lock
Lorenzo Stoakes
- [RFC][PATCH] mm: Split locks in remap_file_pages()
Lorenzo Stoakes
- TOMOYO's pull request for v6.12
Simon Thoby
- TOMOYO's pull request for v6.12
Simon Thoby
- [GIT PULL] tomoyo update for v6.12
Linus Torvalds
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Linus Torvalds
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Linus Torvalds
- lsm sb_delete hook, was Re: [PATCH 4/7] vfs: Convert sb->s_inodes iteration to super_iter_inodes()
Linus Torvalds
- [PATCH] netfilter: Record uid and gid in xt_AUDIT
Richard Weinberger
- [PATCH] netfilter: Record uid and gid in xt_AUDIT
Richard Weinberger
- [PATCH v1] ipe: add 'anonymous_memory' property for policy decisions
Fan Wu
- [RFC PATCH v1 5/7] ipe: Fix inode numbers in audit records
Fan Wu
- [GIT PULL] IPE fixes for 6.12-rc4
Fan Wu
- [PATCH v1] ipe: add 'anonymous_memory' property for policy decisions
Fan Wu
- [PATCH v1] ipe: add 'anonymous_memory' property for policy decisions
Fan Wu
- [PATCH][next] scripts: ipe: polgen: remove redundant close and error exit path
Fan Wu
- [PATCH v2 00/19] Migrate to sig_alg and templatize ecdsa
Lukas Wunner
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Lukas Wunner
- [PATCH v2 06/19] crypto: rsassa-pkcs1 - Migrate to sig_alg backend
Lukas Wunner
- [PATCH v2 00/19] Migrate to sig_alg and templatize ecdsa
Herbert Xu
- [PATCH v3 -next 00/15] sysctl: move sysctls from vm_table into its own files
Kaixiong Yu
- [PATCH v3 -next 01/15] mm: vmstat: move sysctls to mm/vmstat.c
Kaixiong Yu
- [PATCH v3 -next 02/15] mm: filemap: move sysctl to mm/filemap.c
Kaixiong Yu
- [PATCH v3 -next 03/15] mm: swap: move sysctl to mm/swap.c
Kaixiong Yu
- [PATCH v3 -next 04/15] mm: vmscan: move vmscan sysctls to mm/vmscan.c
Kaixiong Yu
- [PATCH v3 -next 05/15] mm: util: move sysctls to mm/util.c
Kaixiong Yu
- [PATCH v3 -next 06/15] mm: mmap: move sysctl to mm/mmap.c
Kaixiong Yu
- [PATCH v3 -next 07/15] security: min_addr: move sysctl to security/min_addr.c
Kaixiong Yu
- [PATCH v3 -next 08/15] mm: nommu: move sysctl to mm/nommu.c
Kaixiong Yu
- [PATCH v3 -next 09/15] fs: fs-writeback: move sysctl to fs/fs-writeback.c
Kaixiong Yu
- [PATCH v3 -next 10/15] fs: drop_caches: move sysctl to fs/drop_caches.c
Kaixiong Yu
- [PATCH v3 -next 11/15] sunrpc: use vfs_pressure_ratio() helper
Kaixiong Yu
- [PATCH v3 -next 12/15] fs: dcache: move the sysctl to fs/dcache.c
Kaixiong Yu
- [PATCH v3 -next 13/15] x86: vdso: move the sysctl to arch/x86/entry/vdso/vdso32-setup.c
Kaixiong Yu
- [PATCH v3 -next 14/15] sh: vdso: move the sysctl to arch/sh/kernel/vsyscall/vsyscall.c
Kaixiong Yu
- [PATCH v3 -next 15/15] sysctl: remove unneeded include
Kaixiong Yu
- [PATCH v5 0/5] Lazy flush for the auth session
Mimi Zohar
- [PATCH] evm: stop avoidably reading i_writecount in evm_file_release
Mimi Zohar
- [PATCH][next] integrity: Use static_assert() to check struct sizes
Mimi Zohar
- [PATCH 2/3] ima: Ensure lock is held when setting iint pointer in inode security blob
Mimi Zohar
- [PATCH v5 0/5] Lazy flush for the auth session
Mimi Zohar
- [PATCH v5 0/5] Lazy flush for the auth session
Mimi Zohar
- [PATCH] security/keys: fix slab-out-of-bounds in key_task_permission
chenridong
- [PATCH] pidfd: add ioctl to retrieve pid info
luca.boccassi at gmail.com
- [RFC PATCH v1 1/7] fs: Add inode_get_ino() and implement get_ino() for NFS
hch at infradead.org
- [GIT PULL] lsm/lsm-pr-20241004
pr-tracker-bot at kernel.org
- [GIT PULL] IPE fixes for 6.12-rc4
pr-tracker-bot at kernel.org
- [PATCH v20 2/6] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits
sergeh at kernel.org
- [PATCH v20 1/6] exec: Add a new AT_CHECK flag to execveat(2)
sergeh at kernel.org
- [PATCH v20 2/6] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits
sergeh at kernel.org
- [PATCH v2 1/6] LSM: Ensure the correct LSM context releaser
sergeh at kernel.org
- [RFC PATCH v3 08/13] clavis: Introduce new LSM called clavis
sergeh at kernel.org
- [RFC PATCH v3 08/13] clavis: Introduce new LSM called clavis
sergeh at kernel.org
- [v1] security: add trace event for cap_capable
sergeh at kernel.org
- [v1] security: add trace event for cap_capable
sergeh at kernel.org
- [v2] security: add trace event for cap_capable
sergeh at kernel.org
- [syzbot] [integrity?] [lsm?] KMSAN: uninit-value in ima_add_template_entry (2)
syzbot
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
syzbot
- [syzbot] [apparmor?] [ext4?] INFO: rcu detected stall in sys_getdents64
syzbot
- [syzbot] [integrity?] [lsm?] KMSAN: uninit-value in ima_add_template_entry (2)
syzbot
- [syzbot] [apparmor?] KASAN: slab-use-after-free Read in apparmor_sk_free_security
syzbot
- [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (4)
syzbot
- [PATCH v3 -next 00/15] sysctl: move sysctls from vm_table into its own files
yukaixiong
- [PATCH v3 -next 00/15] sysctl: move sysctls from vm_table into its own files
yukaixiong
Last message date:
Thu Oct 31 23:58:13 UTC 2024
Archived on: Fri Nov 1 00:18:53 UTC 2024
This archive was generated by
Pipermail 0.09 (Mailman edition).