2023-01-24 |
Paul Moore | bpf: restore the ebpf program ID for BPF_AUDIT_UNLOAD... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-09-20 |
Paul Moore | selinux: remove runtime disable message in the install_polic... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-08-26 |
Paul Moore | /dev/null: add IORING_OP_URING_CMD support Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-08-26 |
Paul Moore | selinux: implement the security_uring_cmd() LSM hook Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-07-08 |
Paul Moore | MAINTAINERS: update the LSM maintainer info Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-04-14 |
Paul Moore | selinux: don't sleep when CONFIG_SECURITY_SELINUX_CHECKREQPR... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-04-04 |
Paul Moore | selinux: checkreqprot is deprecated, add some ssleep... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-04-04 |
Paul Moore | selinux: runtime disable is deprecated, add some ssleep... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-03-02 |
Paul Moore | selinux: shorten the policy capability enum names Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-02-09 |
Paul Moore | audit: don't deref the syscall args when checking the... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-02-02 |
Paul Moore | selinux: various sparse fixes Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-01-27 |
Paul Moore | selinux: fix a type cast problem in cred_init_security() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2022-01-25 |
Paul Moore | audit: improve audit queue handling when "audit=1"... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-12-21 |
Paul Moore | selinux: minor tweaks to selinux_add_opt() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-12-15 |
Paul Moore | audit: improve robustness of the audit queue handling Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-12-15 |
Paul Moore | audit: ensure userspace is penalized the same as the... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-11-22 |
Paul Moore | lsm: security_task_getsecid_subj() -> security_current_getse... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-11-14 |
Paul Moore | net,lsm,selinux: revert the security_sctp_assoc_established... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-11-12 |
Paul Moore | net,lsm,selinux: revert the security_sctp_assoc_established... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-10-19 |
Paul Moore | selinux: fix a sock regression in selinux_ip_postroute_compat() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-10-13 |
Paul Moore | selinux: fix all of the W=1 build warnings Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-10-13 |
Paul Moore | selinux: make better use of the nf_hook_state passed... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-30 |
Paul Moore | selinux: remove the SELinux lockdown implementation Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-23 |
Paul Moore | selinux,smack: fix subjective/objective credential... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-20 |
Paul Moore | selinux: add support for the io_uring access controls Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-20 |
Paul Moore | lsm,io_uring: add LSM hooks to io_uring Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-20 |
Paul Moore | io_uring: convert io_uring to the secure anon inode... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-20 |
Paul Moore | fs: add anon_inode_getfile_secure() similar to anon_inode_ge... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-20 |
Paul Moore | audit: add filtering for io_uring records Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-20 |
Paul Moore | audit,io_uring,io-wq: add some basic audit support... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-09-20 |
Paul Moore | audit: prepare audit_context for use in calling contexts... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-04-22 |
Paul Moore | selinux: add proper NULL termination to the secclass_map... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-03-22 |
Paul Moore | smack: differentiate between subjective and objective... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-03-22 |
Paul Moore | selinux: clarify task subjective and objective credentials Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-03-22 |
Paul Moore | lsm: separate security_task_getsecid() into subjective... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2021-03-04 |
Paul Moore | cipso,calipso: resolve a number of problems with the... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-11-23 |
Paul Moore | lsm,selinux: pass flowi_common instead of flowi to... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-11-14 |
Paul Moore | netlabel: fix an uninitialized warning in netlbl_unlabel_sta... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-11-10 |
Paul Moore | netlabel: fix our progress tracking in netlbl_unlabel_static... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-11-06 |
Paul Moore | selinux: fix inode_doinit_with_dentry() LABEL_INVALID... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-09-29 |
Paul Moore | selinux: provide a "no sooner than" date for the checkreqpro... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-08-24 |
Paul Moore | netlabel: fix problems with mapping removal Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-07-29 |
Paul Moore | revert: 1320a4052ea1 ("audit: trigger accompanying... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-07-08 |
Paul Moore | audit: use the proper gfp flags in the audit_log_nfcfg... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-04-30 |
Paul Moore | selinux: properly handle multiple messages in selinux_netlin... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-04-22 |
Paul Moore | audit: fix a net reference leak in audit_list_rules_send() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-04-20 |
Paul Moore | audit: fix a net reference leak in audit_send_reply() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-04-20 |
Paul Moore | audit: check the length of userspace generated audit... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-03-05 |
Paul Moore | selinux: avtab_init() and cond_policydb_init() return... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-02-24 |
Paul Moore | audit: always check the netlink payload length in audit_rece... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-02-23 |
Paul Moore | audit: fix error handling in audit_data_to_entry() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-01-16 |
Paul Moore | selinux: remove redundant allocation and helper functions Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2020-01-07 |
Paul Moore | selinux: deprecate disabling SELinux and runtime Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-12-23 |
Paul Moore | selinux: ensure the policy has been loaded before reading... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-12-10 |
Paul Moore | selinux: ensure we cleanup the internal AVC counters... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-09-04 |
Paul Moore | lsm: remove current_security() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-08-05 |
Paul Moore | selinux: always return a secid from the network caches... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-08-05 |
Paul Moore | selinux: shuffle around policydb.c to get rid of forward... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-05-30 |
Paul Moore | audit: remove the BUG() calls in the audit rule comparison... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-04-29 |
Paul Moore | proc: prevent changes to overridden credentials Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-03-30 |
Paul Moore | MAINTAINERS: update SELinux file patterns Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2019-02-28 |
Paul Moore | netlabel: fix out-of-bounds memory accesses Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-11-29 |
Paul Moore | selinux: add support for RTM_NEWCHAIN, RTM_DELCHAIN... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-11-26 |
Paul Moore | audit: use current whenever possible Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-11-26 |
Paul Moore | audit: minimize our use of audit_log_format() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-11-14 |
Paul Moore | selinux: fix non-MLS handling in mls_context_to_sid() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-10-10 |
Paul Moore | MAINTAINERS: update the SELinux mailing list location Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-07-17 |
Paul Moore | audit: use ktime_get_coarse_real_ts64() for timestamps Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-07-05 |
Paul Moore | ipv6: make ipv6_renew_options() interrupt/kernel safe Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-06-18 |
Paul Moore | MAINTAINERS: update the LSM and SELinux subsystems Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-06-18 |
Paul Moore | MAINTAINERS: remove the outdated "LINUX SECURITY MODULE... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-03-07 |
Paul Moore | net: don't unnecessarily load kernel modules in dev_ioctl() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-03-02 |
Paul Moore | selinux: rename the {is,set}_enforcing() functions Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2018-02-23 |
Paul Moore | audit: track the owner of the command mutex ourselves Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-12-05 |
Paul Moore | selinux: skip bounded transition processing if the... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-11-28 |
Paul Moore | selinux: ensure the context is NUL terminated in security_co... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-11-10 |
Paul Moore | audit: use audit_set_enabled() in audit_enable() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-11-10 |
Paul Moore | audit: convert audit_ever_enabled to a boolean Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-11-10 |
Paul Moore | audit: don't use simple_strtol() anymore Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-11-10 |
Paul Moore | audit: initialize the audit subsystem as early as possible Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-11-10 |
Paul Moore | audit: ensure that 'audit=1' actually enables audit... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-09-05 |
Paul Moore | audit: update the audit info in MAINTAINERS Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-08-10 |
Paul Moore | MAINTAINERS: update the NetLabel and Labeled Networking... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-07-28 |
Paul Moore | selinux: update the selinux info in MAINTAINERS Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-07-25 |
Paul Moore | credits: update Paul Moore's info credits: update Paul Moore's info Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-06-16 |
Paul Moore | audit: make sure we never skip the multicast broadcast Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-06-13 |
Paul Moore | audit: fix a race condition with the auditd tracking... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-06-13 |
Paul Moore | selinux: fix double free in selinux_parse_opts_str() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-05-02 |
Paul Moore | audit: fix the RCU locking for the auditd_connection... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-05-02 |
Paul Moore | audit: use kmem_cache to manage the audit_buffer cache Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-05-02 |
Paul Moore | audit: store the auditd PID as a pid struct instead... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-05-02 |
Paul Moore | audit: kernel generated netlink traffic should have... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-05-02 |
Paul Moore | audit: combine audit_receive() and audit_receive_skb() Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-04-10 |
Paul Moore | audit: make sure we don't let the retry queue grow... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-03-27 |
Paul Moore | audit: move audit_signal_info() into kernel/auditsc.c Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-03-21 |
Paul Moore | audit: fix auditd/kernel connection state tracking Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-02-14 |
Paul Moore | audit: remove unnecessary curly braces from switch... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2017-01-07 |
Paul Moore | netlabel: add CALIPSO to the list of built-in protocols Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2016-12-21 |
Paul Moore | selinux: use the kernel headers when building scripts... Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
2016-12-14 |
Paul Moore | netns: avoid disabling irq for netns id Signed-off-by: Paul Moore <paul@paul-moore.com>
|
commit | commitdiff | tree |
next |