linux-audit.redhat.com archive mirror
 help / color / mirror / Atom feed
 messages from 2019-11-08 20:40:06 to 2020-01-22 21:29:12 UTC [more...]

[PATCH ghak90 V8 00/16] audit: implement container identifier
 2020-01-22 21:29 UTC  (24+ messages)
` [PATCH ghak90 V8 01/16] audit: collect audit task parameters
` [PATCH ghak90 V8 02/16] audit: add container id
` [PATCH ghak90 V8 03/16] audit: read container ID of a process
` [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
` [PATCH ghak90 V8 05/16] audit: log drop of contid on exit of last task
` [PATCH ghak90 V8 06/16] audit: log container info of syscalls
` [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
` [PATCH ghak90 V8 08/16] audit: add support for non-syscall auxiliary records
` [PATCH ghak90 V8 09/16] audit: add containerid support for user records
` [PATCH ghak90 V8 10/16] audit: add containerid filtering
` [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
` [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
` [PATCH ghak90 V8 13/16] audit: track container nesting
` [PATCH ghak90 V8 14/16] audit: check contid depth and add limit config param
` [PATCH ghak90 V8 15/16] audit: check contid count per netns and add config param limit
` [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns

auditing removable media
 2020-01-22 15:18 UTC  (4+ messages)

Duplicate settings?
 2020-01-20 15:38 UTC  (9+ messages)

[PATCH ghak28 V4] audit: log audit netlink multicast bind and unbind events
 2020-01-17 20:21 UTC 

[PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
 2020-01-16 21:29 UTC  (19+ messages)
` [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
` [PATCH ghak25 v2 2/9] netfilter: normalize ebtables "
` [PATCH ghak25 v2 3/9] netfilter: normalize ebtables function declarations II
` [PATCH ghak25 v2 4/9] audit: record nfcfg params
` [PATCH ghak25 v2 5/9] netfilter: x_tables audit only on syscall rule
` [PATCH ghak25 v2 6/9] netfilter: ebtables "
` [PATCH ghak25 v2 7/9] netfilter: ebtables audit table registration
` [PATCH ghak25 v2 8/9] netfilter: add audit operation field
` [PATCH ghak25 v2 9/9] netfilter: audit table unregister actions

PCI System level object
 2020-01-13 22:05 UTC  (3+ messages)

[PATCH v13 26/25] Audit: Multiple LSM support in audit rules
 2020-01-12 15:37 UTC  (4+ messages)

[PATCH] audit: fix external header definitions for gcc10
 2020-01-11  2:18 UTC  (2+ messages)

[PATCH 1/1] audit: CONFIG_CHANGE don't log internal bookkeeping as an event
 2020-01-09  4:42 UTC  (2+ messages)

[PATCH 1/1] audit: CONFIG_CHANGE don't log internal bookkeeping as an event
 2020-01-07 23:29 UTC  (4+ messages)

USER_MGMT event
 2020-01-06 13:52 UTC  (4+ messages)

Config_change events
 2020-01-04 21:07 UTC  (2+ messages)

[PATCH ghau51/ghau40 v8 00/14] add support for audit container identifier
 2019-12-31 19:58 UTC  (15+ messages)
` [PATCH ghau51/ghau40 v8 01/14] AUDIT_CONTAINER_OP message type basic support
` [PATCH ghau51/ghau40 v8 02/14] AUDIT_CONTAINER_ID "
` [PATCH ghau51/ghau40 v8 03/14] auditctl: add support for AUDIT_CONTID filter
` [PATCH ghau51/ghau40 v8 04/14] add ausearch containerid support
` [PATCH ghau51/ghau40 v8 05/14] start normalization "
` [PATCH ghau51/ghau40 v8 06/14] libaudit: add support to get the task audit container identifier
` [PATCH ghau51/ghau40 v8 07/14] signal_info: only print context if it is available
` [PATCH ghau51/ghau40 v8 08/14] add support for audit_signal_info2
` [PATCH ghau51/ghau40 v8 09/14] contid: interpret correctly CONTAINER_ID contid field csv
` [PATCH ghau51/ghau40 v8 10/14] ausearch: convert contid to comma/carrat-sep list
` [PATCH ghau51/ghau40 v8 11/14] ausearch: convert contid to comma/carrat-sep cnode/clist
` [PATCH ghau51/ghau40 v8 12/14] auditctl: add a config parameter to limit the contid nesting depth
` [PATCH ghau51/ghau40 v8 13/14] auditctl: add a config parameter to limit the contid netns count
` [PATCH ghau51/ghau40 v8 14/14] libaudit: add support to get and set capcontid on a task

[PATCH v12 21/25] Audit: Add subj_LSM fields when necessary
 2019-12-24 23:13 UTC 

ausearch on the fly
 2019-12-24  1:15 UTC  (4+ messages)

Matching SSHD information in audit logs
 2019-12-17 22:24 UTC  (4+ messages)

[PATCH ghak90 V7 00/21] audit: implement container identifier
 2019-12-17 19:56 UTC  (9+ messages)
` [PATCH ghak90 V7 06/21] audit: contid limit of 32k imposed to avoid DoS

[PATCHv3] bpf: Emit audit messages upon successful prog load and unload
 2019-12-11 16:56 UTC  (11+ messages)

[RFC PATCH v2] security,lockdown,selinux: implement SELinux lockdown
 2019-12-09 23:12 UTC  (3+ messages)
` [RFC PATCH v2] security, lockdown, selinux: "

[PATCH v3] kernel: audit.c: Add __rcu annotation to RCU pointer
 2019-12-09 20:31 UTC  (7+ messages)

[PATCHv2] bpf: Emit audit messages upon successful prog load and unload
 2019-12-06 21:30 UTC  (4+ messages)

[RFC] bpf: Emit audit messages upon successful prog load and unload
 2019-12-04 15:26 UTC  (11+ messages)

Typo in /audit-userspace/src/ausearch-options.c on line 228. 'starting data' instead of 'starting date'
 2019-12-02 22:05 UTC  (3+ messages)

[GIT PULL] Audit patches for v5.5
 2019-12-01  1:40 UTC  (2+ messages)

[PATCH v2] kernel: audit.c: Add __rcu notation to RCU pointer
 2019-11-30  2:07 UTC  (2+ messages)

[PATCH] kernel: audit.c: Add __rcu notation to RCU pointer
 2019-11-29 20:08 UTC  (6+ messages)

Security audit rules
 2019-11-26  5:23 UTC  (7+ messages)

[PATCH] bpf: emit audit messages upon successful prog load and unload
 2019-11-25 18:38 UTC  (13+ messages)

[PATCH AUTOSEL 4.9 04/13] audit_get_nd(): don't unlock parent too early
 2019-11-22 19:49 UTC 

[PATCH AUTOSEL 4.14 06/21] audit_get_nd(): don't unlock parent too early
 2019-11-22 19:49 UTC 

[PATCH AUTOSEL 4.19 06/25] audit_get_nd(): don't unlock parent too early
 2019-11-22 19:48 UTC 

Auditd SYSCALL argument decoding
 2019-11-20 12:24 UTC  (4+ messages)

[PATCH v11 00/25] LSM: Module stacking for AppArmor
 2019-11-19 18:03 UTC  (12+ messages)
  ` [PATCH v11 03/25] LSM: Use lsmblob in security_audit_rule_match
  ` [PATCH v11 07/25] LSM: Use lsmblob in security_secid_to_secctx
  ` [PATCH v11 08/25] LSM: Use lsmblob in security_ipc_getsecid
  ` [PATCH v11 09/25] LSM: Use lsmblob in security_task_getsecid
  ` [PATCH v11 10/25] LSM: Use lsmblob in security_inode_getsecid
  ` [PATCH v11 11/25] LSM: Use lsmblob in security_cred_getsecid
  ` [PATCH v11 14/25] LSM: Ensure the correct LSM context releaser
  ` [PATCH v11 15/25] LSM: Use lsmcontext in security_secid_to_secctx
  ` [PATCH v11 21/25] Audit: Add subj_LSM fields when necessary
  ` [PATCH v11 22/25] Audit: Include object data for all security modules
  ` [PATCH v11 23/25] NET: Add SO_PEERCONTEXT for multiple LSMs

[PATCH 07/25] LSM: Use lsmblob in security_secid_to_secctx
 2019-11-13  0:09 UTC  (3+ messages)
` [PATCH 14/25] LSM: Ensure the correct LSM context releaser
` [PATCH 15/25] LSM: Use lsmcontext in security_secid_to_secctx

Not seeing access denied audit messages in restricted subdirectories
 2019-11-10 15:48 UTC  (5+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).