projects
/
platform
/
kernel
/
linux-starfive.git
/ search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
ima: define a set of appraisal rules requiring file signatures
2017-06-21
Mimi Zohar
ima: define a set of appraisal rules requiring file...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2017-06-21
Mimi Zohar
ima: extend the "ima_policy" boot command line to support...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2017-01-27
Mimi Zohar
ima: fix ima_d_path() possible race with rename
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: define a canonical binary_runtime_measurements...
...1480554346-29071-10-git-send-email-
zohar@linux.vnet.ibm.com
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: support restoring multiple template formats
...1480554346-29071-9-git-send-email-
zohar@linux.vnet.ibm.com
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: store the builtin/custom template definitions...
...1480554346-29071-8-git-send-email-
zohar@linux.vnet.ibm.com
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: on soft reboot, save the measurement list
...1480554346-29071-7-git-send-email-
zohar@linux.vnet.ibm.com
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: maintain memory size needed for serializing the...
...1480554346-29071-5-git-send-email-
zohar@linux.vnet.ibm.com
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: permit duplicate measurement list entries
...1480554346-29071-4-git-send-email-
zohar@linux.vnet.ibm.com
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-12-20
Mimi Zohar
ima: on soft reboot, restore the measurement list
...1480554346-29071-3-git-send-email-
zohar@linux.vnet.ibm.com
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-11-14
Mimi Zohar
ima: include the reason for TPM-bypass mode
commit
|
commitdiff
|
tree
2016-11-14
Mimi Zohar
Revert "ima: limit file hash setting by user to fix...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-05-04
Mimi Zohar
ima: fix the string representation of the LSM/IMA hook...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-05-01
Mimi Zohar
ima: add support for creating files using the mknodat...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-05-01
Mimi Zohar
ima: fix ima_inode_post_setattr
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-04-21
Mimi Zohar
fs: define a string representation of the kernel_read_file_i...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
ima: require signed IMA policy
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
ima: measure and appraise the IMA policy itself
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
ima: support for kexec image and initramfs
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
kexec: replace call to copy_file_from_fd() with kernel...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
ima: remove firmware and module specific cached status...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
module: replace copy_module_from_fd with kernel version
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
vfs: define kernel_copy_file_from_fd()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
security: define kernel_read_file hook
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
firmware: replace call to fw_read_file_contents() with...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
vfs: define kernel_read_file_from_path
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
ima: define a new hook to measure and appraise a file...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
ima: calculate the hash of a buffer using aynchronous...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
vfs: define kernel_read_file_id enumeration
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
vfs: define a generic function to read a file from...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
ima: use "ima_hooks" enum as function argument
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
ima: refactor ima_policy_show() to display "ima_hooks...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-01-07
Mimi Zohar
KEYS: refcount bug fix
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Mimi Zohar
ima: update appraise flags after policy update completes
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Mimi Zohar
IMA: prevent keys on the .ima_blacklist from being...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Mimi Zohar
KEYS: prevent keys from being removed from specified...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: update builtin policies
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: extend "mask" policy matching support
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: add support for new "euid" policy condition
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: fix ima_show_template_data_ascii()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Mimi Zohar
KEYS: fix "ca_keys=" partial key matching
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Mimi Zohar
evm: labeling pseudo filesystems exception
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Mimi Zohar
ima: do not measure or appraise the NSFS filesystem
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-02
Mimi Zohar
ima: fix ima_alloc_atfm()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-28
Mimi Zohar
KEYS: revert encrypted key change
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-25
Mimi Zohar
ima: add support for measuring and appraising firmware
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Mimi Zohar
ima: define '.ima' as a builtin 'trusted' keyring
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Mimi Zohar
KEYS: verify a certificate is signed by a 'trusted...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Mimi Zohar
KEYS: special dot prefixed keyring name bug fix
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-06-12
Mimi Zohar
evm: prohibit userspace writing 'security.evm' HMAC...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-06-12
Mimi Zohar
ima: prevent new digsig xattr from being replaced
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-06-03
Mimi Zohar
ima: audit log files opened with O_DIRECT flag
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-03-07
Mimi Zohar
MAINTAINERS: email updates and other misc. changes
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-03-07
Mimi Zohar
fs: move i_readcount
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-03-07
Mimi Zohar
ima: use static const char array definitions
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-01-03
Mimi Zohar
ima: update IMA-templates.txt documentation
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-11-01
Mimi Zohar
ima: define '_ima' as a builtin 'trusted' keyring
commit
|
commitdiff
|
tree
2013-11-01
Mimi Zohar
ima: extend the measurement list to include the file...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-10-27
Mimi Zohar
ima: enable support for larger default filedata hash...
commit
|
commitdiff
|
tree
2013-10-27
Mimi Zohar
ima: add Kconfig default measurement list template
commit
|
commitdiff
|
tree
2013-10-27
Mimi Zohar
ima: add audit log support for larger hashes
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-10-25
Mimi Zohar
ima: differentiate between template hash and file data...
commit
|
commitdiff
|
tree
2013-10-25
Mimi Zohar
Revert "ima: policy for RAMFS"
commit
|
commitdiff
|
tree
2013-09-25
Mimi Zohar
KEYS: initialize root uid and session keyrings early
commit
|
commitdiff
|
tree
2013-09-25
Mimi Zohar
KEYS: verify a certificate is signed by a 'trusted...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-09-25
Mimi Zohar
KEYS: Make the system 'trusted' keyring viewable by...
commit
|
commitdiff
|
tree
2013-06-20
Mimi Zohar
evm: audit integrity metadata failures
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-06-20
Mimi Zohar
integrity: move integrity_audit_msg()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-06-20
Mimi Zohar
evm: calculate HMAC after initializing posix acl on...
commit
|
commitdiff
|
tree
2013-06-20
Mimi Zohar
maintainers: add Dmitry Kasatkin
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-05-21
Mimi Zohar
tpm: move TPM_DIGEST_SIZE defintion
commit
|
commitdiff
|
tree
2013-04-18
Mimi Zohar
ima: eliminate passing d_name.name to process_measurement()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-02-25
Mimi Zohar
block: fix part_pack_uuid() build error
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-02-25
Mimi Zohar
ima: "remove enforce checking duplication" merge fix
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-01-22
Mimi Zohar
ima: differentiate appraise status only for hook specific...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-01-22
Mimi Zohar
ima: per hook cache integrity appraisal status
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-01-22
Mimi Zohar
ima: increase iint flag size
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2013-01-16
Mimi Zohar
ima: rename FILE_MMAP to MMAP_CHECK
commit
|
commitdiff
|
tree
2013-01-16
Mimi Zohar
ima: re-initialize IMA policy LSM info
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2012-12-24
Mimi Zohar
ima: fallback to MODULE_SIG_ENFORCE for existing kernel...
commit
|
commitdiff
|
tree
2012-12-14
Mimi Zohar
ima: support new kernel module syscall
commit
|
commitdiff
|
tree
2012-09-07
Mimi Zohar
ima: add support for different security.ima data types
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2012-09-07
Mimi Zohar
ima: add ima_inode_setxattr/removexattr function and...
commit
|
commitdiff
|
tree
2012-09-07
Mimi Zohar
ima: add inode_post_setattr call
commit
|
commitdiff
|
tree
2012-09-07
Mimi Zohar
ima: add appraise action keywords and default rules
commit
|
commitdiff
|
tree
2012-09-07
Mimi Zohar
ima: integrity appraisal extension
commit
|
commitdiff
|
tree
2012-09-07
Mimi Zohar
vfs: move ima_file_free before releasing the file
commit
|
commitdiff
|
tree
2012-09-07
Mimi Zohar
vfs: extend vfs_removexattr locking
commit
|
commitdiff
|
tree
2012-07-02
Mimi Zohar
ima: use full pathnames in measurement list
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2012-01-19
Mimi Zohar
keys: fix user_defined key sparse messages
commit
|
commitdiff
|
tree
2012-01-19
Mimi Zohar
ima: fix cred sparse warning
commit
|
commitdiff
|
tree
2012-01-17
Mimi Zohar
encrypted-keys: fix rcu and sparse messages
commit
|
commitdiff
|
tree
2012-01-17
Mimi Zohar
keys: fix trusted/encrypted keys sparse rcu_assign_pointer...
commit
|
commitdiff
|
tree
2011-11-16
Mimi Zohar
encrypted-keys: module build fixes
commit
|
commitdiff
|
tree
2011-11-16
Mimi Zohar
encrypted-keys: fix error return code
commit
|
commitdiff
|
tree
2011-09-21
Mimi Zohar
target: check hex2bin result
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2011-09-21
Mimi Zohar
encrypted-keys: check hex2bin result
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2011-09-21
Mimi Zohar
trusted-keys: check hex2bin result
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2011-09-21
Mimi Zohar
lib: add error checking to hex2bin
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2011-09-14
Mimi Zohar
evm: permit mode bits to be updated
commit
|
commitdiff
|
tree
next