linux-security-module.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
 messages from 2020-07-24 21:43:30 to 2020-07-31 20:08:12 UTC [more...]

[PATCH v1 0/4] [RFC] Implement Trampoline File Descriptor
 2020-07-31 20:08 UTC  (31+ messages)
  ` [PATCH v1 1/4] [RFC] fs/trampfd: Implement the trampoline file descriptor API
  ` [PATCH v1 2/4] [RFC] x86/trampfd: Provide support for the trampoline file descriptor
  ` [PATCH v1 3/4] [RFC] arm64/trampfd: "
  ` [PATCH v1 4/4] [RFC] arm/trampfd: "

[PATCH bpf-next v7 0/7] Generalizing bpf_local_storage
 2020-07-31 19:02 UTC  (11+ messages)
` [PATCH bpf-next v7 1/7] A purely mechanical change to split the renaming from the actual generalization
` [PATCH bpf-next v7 2/7] bpf: Generalize caching for sk_storage
` [PATCH bpf-next v7 3/7] bpf: Generalize bpf_sk_storage
` [PATCH bpf-next v7 4/7] bpf: Split bpf_local_storage to bpf_sk_storage
` [PATCH bpf-next v7 5/7] bpf: Implement bpf_local_storage for inodes
` [PATCH bpf-next v7 6/7] bpf: Allow local storage to be used from LSM programs
` [PATCH bpf-next v7 7/7] bpf: Add selftests for local_storage

[PATCH v19 00/23] LSM: Module stacking for AppArmor
 2020-07-30 22:22 UTC  (36+ messages)
` [PATCH v19 02/23] LSM: Create and manage the lsmblob data structure
` [PATCH v19 04/23] LSM: Use lsmblob in security_kernel_act_as
` [PATCH v19 05/23] net: Prepare UDS for security module stacking
` [PATCH v19 06/23] LSM: Use lsmblob in security_secctx_to_secid
` [PATCH v19 13/23] LSM: Specify which LSM to display
` [PATCH v19 15/23] LSM: Use lsmcontext in security_secid_to_secctx
` [PATCH v19 16/23] LSM: Use lsmcontext in security_inode_getsecctx
` [PATCH v19 17/23] LSM: security_secid_to_secctx in netlink netfilter
` [PATCH v19 19/23] LSM: Verify LSM display sanity in binder
` [PATCH v19 20/23] Audit: Add new record for multiple process LSM attributes
` [PATCH v19 21/23] Audit: Add a new record for multiple object "
` [PATCH v19 22/23] LSM: Add /proc attr entry for full LSM context
` [PATCH v19 23/23] AppArmor: Remove the exclusive flag

[PATCH v5 0/4] LSM: Measure security module data
 2020-07-30 20:04 UTC  (13+ messages)
` [PATCH v5 1/4] IMA: Add func to measure LSM state and policy
` [PATCH v5 2/4] IMA: Define IMA hooks "
` [PATCH v5 3/4] LSM: Define SELinux function to measure "
` [PATCH v5 4/4] IMA: Handle early boot data measurement

[PATCH] watch_queue: Limit the number of watches a user can hold
 2020-07-30 17:19 UTC  (4+ messages)

[PATCH v4 00/17] Introduce partial kernel_read_file() support
 2020-07-30  2:26 UTC  (22+ messages)
` [PATCH v4 01/17] test_firmware: Test platform fw loading on non-EFI systems
` [PATCH v4 02/17] fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum
` [PATCH v4 03/17] fs/kernel_read_file: Remove FIRMWARE_EFI_EMBEDDED enum
` [PATCH v4 04/17] fs/kernel_read_file: Split into separate include file
` [PATCH v4 05/17] fs/kernel_read_file: Split into separate source file
` [PATCH v4 06/17] fs/kernel_read_file: Remove redundant size argument
` [PATCH v4 07/17] fs/kernel_read_file: Switch buffer size arg to size_t
` [PATCH v4 08/17] fs/kernel_read_file: Add file_size output argument
` [PATCH v4 09/17] LSM: Introduce kernel_post_load_data() hook
` [PATCH v4 10/17] firmware_loader: Use security_post_load_data()
` [PATCH v4 11/17] module: Call security_kernel_post_load_data()
` [PATCH v4 12/17] LSM: Add "contents" flag to kernel_read_file hook
` [PATCH v4 13/17] IMA: Add support for file reads without contents
` [PATCH v4 14/17] fs/kernel_file_read: Add "offset" arg for partial reads
` [PATCH v4 15/17] firmware: Store opt_flags in fw_priv
` [PATCH v4 16/17] firmware: Add request_partial_firmware_into_buf()
` [PATCH v4 17/17] test_firmware: Test partial read support

[RFC PATCH v6 00/11] Integrity Policy Enforcement LSM (IPE)
 2020-07-30  0:31 UTC  (12+ messages)
` [RFC PATCH v6 01/11] scripts: add ipe tooling to generate boot policy
` [RFC PATCH v6 02/11] security: add ipe lsm evaluation loop and audit system
` [RFC PATCH v6 03/11] security: add ipe lsm policy parser and policy loading
` [RFC PATCH v6 04/11] ipe: add property for trust of boot volume
` [RFC PATCH v6 05/11] fs: add security blob and hooks for block_device
` [RFC PATCH v6 06/11] dm-verity: add bdev_setsecurity hook for dm-verity signature
` [RFC PATCH v6 07/11] ipe: add property for signed dmverity volumes
` [RFC PATCH v6 08/11] dm-verity: add bdev_setsecurity hook for root-hash
` [RFC PATCH v6 09/11] ipe: add property for dmverity roothash
` [RFC PATCH v6 10/11] documentation: add ipe documentation
` [RFC PATCH v6 11/11] cleanup: uapi/linux/audit.h

[PATCH v2] netfilter: Replace HTTP links with HTTPS ones
 2020-07-29 20:43 UTC  (2+ messages)

general protection fault in security_inode_getattr
 2020-07-29 20:23 UTC 

[PATCH v3 00/19] Introduce partial kernel_read_file() support
 2020-07-29 19:13 UTC  (45+ messages)
` [PATCH v3 03/19] firmware_loader: EFI firmware loader must handle pre-allocated buffer
` [PATCH v3 04/19] fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum
` [PATCH v3 06/19] fs/kernel_read_file: Split into separate include file
` [PATCH v3 07/19] fs/kernel_read_file: Split into separate source file
` [PATCH v3 08/19] fs/kernel_read_file: Remove redundant size argument
` [PATCH v3 09/19] fs/kernel_read_file: Switch buffer size arg to size_t
` [PATCH v3 10/19] fs/kernel_read_file: Add file_size output argument
` [PATCH v3 11/19] LSM: Introduce kernel_post_load_data() hook
` [PATCH v3 12/19] firmware_loader: Use security_post_load_data()
` [PATCH v3 15/19] IMA: Add support for file reads without contents
` [PATCH v3 16/19] fs/kernel_file_read: Add "offset" arg for partial reads
` [PATCH v3 17/19] firmware: Store opt_flags in fw_priv
` [PATCH v3 18/19] firmware: Add request_partial_firmware_into_buf()

[PATCH V3fix ghak120] audit: initialize context values in case of mandatory events
 2020-07-29 14:33 UTC  (6+ messages)

[PATCH 0/3] fs: reduce export usage of kerne_read*() calls
 2020-07-29  1:20 UTC  (7+ messages)

[RFC PATCH v5 00/11] Integrity Policy Enforcement LSM (IPE)
 2020-07-28 23:55 UTC  (20+ messages)
` [RFC PATCH v5 01/11] scripts: add ipe tooling to generate boot policy
` [RFC PATCH v5 02/11] security: add ipe lsm evaluation loop and audit system
` [RFC PATCH v5 03/11] security: add ipe lsm policy parser and policy loading
` [RFC PATCH v5 04/11] ipe: add property for trust of boot volume
` [RFC PATCH v5 05/11] fs: add security blob and hooks for block_device
` [RFC PATCH v5 06/11] dm-verity: move signature check after tree validation
` [RFC PATCH v5 07/11] dm-verity: add bdev_setsecurity hook for dm-verity signature
` [RFC PATCH v5 08/11] ipe: add property for signed dmverity volumes
` [RFC PATCH v5 09/11] dm-verity: add bdev_setsecurity hook for root-hash
` [RFC PATCH v5 10/11] documentation: add ipe documentation
` [RFC PATCH v5 10/12] ipe: add property for dmverity roothash
` [RFC PATCH v5 11/11] cleanup: uapi/linux/audit.h
` [RFC PATCH v5 11/12] documentation: add ipe documentation
` [RFC PATCH v5 12/12] cleanup: uapi/linux/audit.h

[PATCH 0/2] ima: Fix keyrings race condition and other key related bugs
 2020-07-28 14:25 UTC  (5+ messages)
` [PATCH 1/2] ima: Pre-parse the list of keyrings in a KEY_CHECK rule
` [PATCH 2/2] ima: Fail rule parsing when asymmetric key measurement isn't supportable

[PATCH bpf-next v6 0/7] Generalizing bpf_local_storage
 2020-07-27 21:43 UTC  (7+ messages)
` [PATCH bpf-next v6 3/7] bpf: Generalize bpf_sk_storage
  ` [RFC PATCH bpf-next] bpf: POC on local_storage charge and uncharge map_ops

[PATCH] integrity: remove redundant initialization of variable ret
 2020-07-27 20:57 UTC  (3+ messages)

[PATCH v7 0/7] Add support for O_MAYEXEC
 2020-07-27 19:46 UTC  (7+ messages)
` [PATCH v7 4/7] fs: Introduce O_MAYEXEC flag for openat2(2)

[PATCH 1/2] LSM: Signal to SafeSetID when in set*gid syscall
 2020-07-27 18:44 UTC  (2+ messages)

[PATCH] LSM: drop duplicated words in header file comments
 2020-07-27 18:39 UTC  (2+ messages)

[PATCH] smack: fix slab-out-of-bounds by checking for overflow
 2020-07-27 17:38 UTC  (2+ messages)

[PATCH 2/2] LSM: SafeSetID: Add GID security policy handling
 2020-07-27 15:20 UTC  (2+ messages)
` [PATCH v2 "


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).