projects
/
platform
/
kernel
/
linux-rpi.git
/ search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
smb3: fix caching of ctime on setxattr
2023-11-28
Mimi Zohar
ima: detect changes to the backing overlay file
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-08-23
Mimi Zohar
ima: fix blocking of security.ima xattrs of unsupported...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-07-26
Mimi Zohar
Merge remote-tracking branch 'linux-integrity/kexec...
commit
|
commitdiff
|
tree
2022-07-07
Mimi Zohar
ima: fix violation measurement list record
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-12
Mimi Zohar
Merge branch 'next-integrity.fsverity-v9' into next...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-12
Mimi Zohar
fsverity: update the documentation
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-05
Mimi Zohar
ima: support fs-verity file digest based version 3...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-05
Mimi Zohar
ima: permit fsverity's file digests in the IMA measurement...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-05
Mimi Zohar
ima: define a new template field named 'd-ngv2' and...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-01
Mimi Zohar
fs-verity: define a function to return the integrity...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-01
Mimi Zohar
ima: use IMA default hash algorithm for integrity violations
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-05-01
Mimi Zohar
ima: fix 'd-ng' comments and documentation
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-03-01
Mimi Zohar
MAINTAINERS: add missing security/integrity/platform_certs
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-02-15
Mimi Zohar
ima: define ima_max_digest_data struct without a flexible...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-02-15
Mimi Zohar
ima: rename IMA_ACTION_FLAGS to IMA_NONACTION_FLAGS
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2022-02-15
Mimi Zohar
MAINTAINERS: add missing "security/integrity" directory
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-12-31
Mimi Zohar
selftests/kexec: update searching for the Kconfig
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-12-31
Mimi Zohar
selftest/kexec: fix "ignored null byte in input" warning
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-09-08
Mimi Zohar
checkpatch: make email address check case insensitive
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-08-18
Mimi Zohar
Merge branch 'restrict-digest-alg-v8' into next-integrity
commit
|
commitdiff
|
tree
2021-07-23
Mimi Zohar
Merge branch 'ima-buffer-measurement-changes-v4' into...
commit
|
commitdiff
|
tree
2021-06-22
Mimi Zohar
module: limit enabling module.sig_enforce
Tested-by:
Mimi Zohar
<zohar@linux.ibm.com>
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-06-20
Mimi Zohar
evm: output EVM digest calculation info
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-06-10
Mimi Zohar
ima: differentiate between EVM failures in the audit log
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-06-03
Mimi Zohar
Merge branch 'verify-evm-portable-sig-v2' into next...
commit
|
commitdiff
|
tree
2021-06-01
Mimi Zohar
Merge branch 'misc-evm-v7' into next-integrity
commit
|
commitdiff
|
tree
2021-05-20
Mimi Zohar
evm: fix writing <securityfs>/evm overflow
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-04-09
Mimi Zohar
Merge branch 'ima-module-signing-v4' into next-integrity
commit
|
commitdiff
|
tree
2021-03-22
Mimi Zohar
ima: without an IMA policy loaded, return quickly
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-03-22
Mimi Zohar
integrity: double check iint_cache was initialized
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2021-02-10
Mimi Zohar
Merge branch 'ima-kexec-fixes' into next-integrity
commit
|
commitdiff
|
tree
2021-01-15
Mimi Zohar
Merge branch 'measure-critical-data' into next-integrity
commit
|
commitdiff
|
tree
2020-07-20
Mimi Zohar
Merge branch 'validate-policy-rules' into next-integrity
commit
|
commitdiff
|
tree
2020-06-12
Mimi Zohar
ima: fix mprotect checking
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2020-05-22
Mimi Zohar
ima: verify mprotect change is consistent with mmap...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2020-02-28
Mimi Zohar
Merge branch 'next-integrity.logging-cleanup' into...
commit
|
commitdiff
|
tree
2020-01-23
Mimi Zohar
Merge branch 'next-integrity.defer-measuring-keys'...
commit
|
commitdiff
|
tree
2019-12-12
Mimi Zohar
Merge branch 'next-integrity.measure-keys' into next...
commit
|
commitdiff
|
tree
2019-11-12
Mimi Zohar
powerpc/ima: Indicate kernel modules appended signatures...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-08-29
Mimi Zohar
sefltest/ima: support appended signatures (modsig)
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-08-01
Mimi Zohar
ima: initialize the "template" field with the default...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-06-04
Mimi Zohar
ima: prevent a file already mmap'ed write to be mmap...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-05-30
Mimi Zohar
x86/ima: check EFI SetupMode too
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: update get_secureboot_mode
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: make kexec_load test independent of...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: check kexec_load and kexec_file_load...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: kexec_file_load syscall test
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: define "require_root_privileges"
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: define common logging functions
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: define a set of common functions
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: cleanup the kexec selftest
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-17
Mimi Zohar
selftests/kexec: move the IMA kexec_load selftest to...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-04-10
Mimi Zohar
x86/ima: add missing include
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-03-27
Mimi Zohar
x86/ima: require signed kernel modules
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-02-04
Mimi Zohar
ima: define ima_post_create_tmpfile() hook and add...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2019-02-04
Mimi Zohar
encrypted-keys: fix Opt_err/Opt_error = -1
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-12-18
Mimi Zohar
ima: cleanup the match_token policy code
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-12-11
Mimi Zohar
selftests/ima: kexec_load syscall test
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-12-11
Mimi Zohar
ima: don't measure/appraise files on efivarfs
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-12-11
Mimi Zohar
x86/ima: retry detecting secure boot mode
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-11-13
Mimi Zohar
integrity: support new struct public_key_signature...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-11-13
Mimi Zohar
integrity: support new struct public_key_signature...
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-10-11
Mimi Zohar
MAINTAINERS: add Jarkko as maintainer for trusted keys
Signed-off-by:
Mimi Zohar
<zohar@linux.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
ima: based on policy warn about loading firmware (pre...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
module: replace the existing LSM hook in init_module
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
ima: add build time policy
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
ima: based on policy require signed firmware (sysfs...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
firmware: add call to LSM hook before firmware sysfs...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
ima: based on policy require signed kexec kernel images
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
kexec: add call to LSM hook in original kexec_load...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-07-16
Mimi Zohar
security: define new LSM hook named security_kernel_load_data
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-05-22
Mimi Zohar
ima: fix updating the ima_appraise flag
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-05-22
Mimi Zohar
ima: based on policy verify firmware signatures (pre...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-05-22
Mimi Zohar
ima: define a new policy condition based on the filesystem...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-03-23
Mimi Zohar
fuse: define the filesystem as untrusted
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-03-23
Mimi Zohar
ima: fail signature verification based on policy
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-03-23
Mimi Zohar
ima: clear IMA_HASH
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-03-23
Mimi Zohar
ima: re-evaluate files on privileged mounted filesystems
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-03-23
Mimi Zohar
ima: fail file signature verification on non-init mounted...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-02-02
Mimi Zohar
ima: re-initialize iint->atomic_flags
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2018-02-02
Mimi Zohar
maintainers: update trusted keys
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-12-18
Mimi Zohar
ima: support new "hash" and "dont_hash" policy actions
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-12-11
Mimi Zohar
ima: relax requiring a file signature for new files...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-11-08
Mimi Zohar
ima: call ima_file_free() prior to calling fasync
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-11-08
Mimi Zohar
ima: always measure and audit files in policy
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-11-08
Mimi Zohar
ima: don't remove the securityfs policy file
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-11-08
Mimi Zohar
vfs: fix mounting a filesystem with i_version
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-11-05
Mimi Zohar
MAINTAINERS: update the IMA, EVM, trusted-keys, encrypted...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-10-17
Mimi Zohar
vfs: fix mounting a filesystem with i_version
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-09-15
Mimi Zohar
vfs: constify path argument to kernel_read_file_from_path
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-06-21
Mimi Zohar
ima: define is_ima_appraise_enabled()
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-06-21
Mimi Zohar
ima: define Kconfig IMA_APPRAISE_BOOTPARAM option
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-06-21
Mimi Zohar
ima: define a set of appraisal rules requiring file...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-06-21
Mimi Zohar
ima: extend the "ima_policy" boot command line to support...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2017-01-27
Mimi Zohar
ima: fix ima_d_path() possible race with rename
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: define a canonical binary_runtime_measurements...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: support restoring multiple template formats
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: store the builtin/custom template definitions...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: on soft reboot, save the measurement list
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: maintain memory size needed for serializing the...
Signed-off-by:
Mimi Zohar
<zohar@linux.vnet.ibm.com>
commit
|
commitdiff
|
tree
next