linux-security-module.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
 messages from 2021-03-24 15:04:08 to 2021-04-07 20:15:43 UTC [more...]

[PATCH 0/2] Add support for ECDSA-signed kernel modules
 2021-04-07 20:15 UTC  (7+ messages)
` [PATCH 1/2] certs: Trigger recreation of module signing key if it's not an RSA key
` [PATCH 2/2] certs: Add support for using elliptic curve keys for signing modules

[PATCH v5 00/12] evm: Improve usability of portable signatures
 2021-04-07 19:28 UTC  (20+ messages)
` [PATCH v5 01/12] evm: Execute evm_inode_init_security() only when an HMAC key is loaded
` [PATCH v5 02/12] evm: Load EVM key in ima_load_x509() to avoid appraisal
` [PATCH v5 03/12] evm: Refuse EVM_ALLOW_METADATA_WRITES only if an HMAC key is loaded
` [PATCH v5 04/12] ima: Move ima_reset_appraise_flags() call to post hooks
` [PATCH v5 05/12] evm: Introduce evm_status_revalidate()
` [PATCH v5 06/12] evm: Ignore INTEGRITY_NOLABEL/INTEGRITY_NOXATTRS if conditions are safe
` [PATCH v5 07/12] evm: Allow xattr/attr operations for portable signatures
` [PATCH v5 08/12] evm: Pass user namespace to set/remove xattr hooks
` [PATCH v5 09/12] evm: Allow setxattr() and setattr() for unmodified metadata
    ` [RESEND][PATCH "
` [PATCH v5 10/12] ima: Allow imasig requirement to be satisfied by EVM portable signatures
` [PATCH v5 11/12] ima: Introduce template field evmsig and write to field sig as fallback
` [PATCH v5 12/12] ima: Don't remove security.ima if file must not be appraised

cert update procedure with insert-sys-cert
 2021-04-07 18:08 UTC 

[PATCH v7 0/5] Enable root to update the blacklist keyring
 2021-04-07 17:21 UTC  (3+ messages)

[PATCH v33 00/12] Landlock LSM
 2021-04-07 16:07 UTC  (12+ messages)
` [PATCH v33 01/12] landlock: Add object management
` [PATCH v33 02/12] landlock: Add ruleset and domain management
` [PATCH v33 03/12] landlock: Set up the security framework and manage credentials
` [PATCH v33 04/12] landlock: Add ptrace restrictions
` [PATCH v33 05/12] LSM: Infrastructure management of the superblock
` [PATCH v33 06/12] fs,security: Add sb_delete hook
` [PATCH v33 07/12] landlock: Support filesystem access-control
` [PATCH v33 08/12] landlock: Add syscall implementations
` [PATCH v33 09/12] arch: Wire up Landlock syscalls
` [PATCH v33 11/12] samples/landlock: Add a sandbox manager example
` [PATCH v33 12/12] landlock: Add user and kernel documentation

[PATCH v2] integrity: Add declarations to init_once void arguments
 2021-04-07  1:44 UTC 

LSM and setxattr helpers
 2021-04-06 15:43 UTC  (5+ messages)

[PATCH] integrity/ima: Add declarations to init_once void arguments
 2021-04-06 12:46 UTC  (6+ messages)

[PATCH 00/11] treewide: address gcc-11 -Wstringop-overread warnings
 2021-04-06  4:53 UTC  (16+ messages)
` [PATCH 03/11] security: commoncap: fix -Wstringop-overread warning
` [PATCH 06/11] cgroup: fix -Wzero-length-bounds warnings
` [PATCH 10/11] drm/i915: avoid stringop-overread warning on pri_latency
` [PATCH 11/11] [RFC] drm/i915/dp: fix array overflow warning

[PATCH v2] ima: Fix function name error in comment
 2021-04-06  2:12 UTC 

[PATCH -next] KEYS: trusted: Switch to kmemdup_nul()
 2021-04-04 16:01 UTC  (2+ messages)

[PATCH] apparmor: avoid -Wempty-body warning
 2021-04-03 18:26 UTC  (2+ messages)

[PATCH v3 0/3] ima: kernel build support for loading the kernel module signing key
 2021-04-02 11:29 UTC  (7+ messages)
` [PATCH v3 1/3] keys: cleanup build time module signing keys
` [PATCH v3 2/3] ima: enable signing of modules with build time generated key
` [PATCH v3 3/3] ima: enable loading of build time generated key on .ima keyring

[PATCH v1 0/3] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
 2021-04-02  1:49 UTC  (59+ messages)
` [PATCH v1 3/3] "

[PATCH v32 00/12] Landlock LSM
 2021-04-01 20:52 UTC  (12+ messages)
` [PATCH v32 01/12] landlock: Add object management
` [PATCH v32 02/12] landlock: Add ruleset and domain management
` [PATCH v32 03/12] landlock: Set up the security framework and manage credentials
` [PATCH v32 04/12] landlock: Add ptrace restrictions
` [PATCH v32 05/12] LSM: Infrastructure management of the superblock
` [PATCH v32 06/12] fs,security: Add sb_delete hook
` [PATCH v32 07/12] landlock: Support filesystem access-control
` [PATCH v32 08/12] landlock: Add syscall implementations
` [PATCH v32 09/12] arch: Wire up Landlock syscalls
` [PATCH v32 11/12] samples/landlock: Add a sandbox manager example
` [PATCH v32 12/12] landlock: Add user and kernel documentation

[syzbot] WARNING in unsafe_follow_pfn
 2021-04-01 12:19 UTC  (4+ messages)

[PATCH v31 00/12] Landlock LSM
 2021-04-01 17:12 UTC  (19+ messages)
` [PATCH v31 01/12] landlock: Add object management
` [PATCH v31 02/12] landlock: Add ruleset and domain management
` [PATCH v31 03/12] landlock: Set up the security framework and manage credentials
` [PATCH v31 04/12] landlock: Add ptrace restrictions
` [PATCH v31 05/12] LSM: Infrastructure management of the superblock
` [PATCH v31 06/12] fs,security: Add sb_delete hook
` [PATCH v31 07/12] landlock: Support filesystem access-control
` [PATCH v31 08/12] landlock: Add syscall implementations
` [PATCH v31 09/12] arch: Wire up Landlock syscalls
` [PATCH v31 11/12] samples/landlock: Add a sandbox manager example
` [PATCH v31 12/12] landlock: Add user and kernel documentation
  ` [PATCH v31 10/12] selftests/landlock: Add user space tests

[PATCH v2] vfs: fix fsconfig(2) LSM mount option handling for btrfs
 2021-04-01  6:54 UTC  (6+ messages)

[PATCH 18/18] keyctl_pkey: Add pkey parameter slen to pass in PSS salt length
 2021-03-31 23:13 UTC  (2+ messages)

Commit f211ac154577ec9ccf07c15f18a6abf0d9bdb4ab breaks Smack TCP connections
 2021-03-31 15:40 UTC  (3+ messages)
  `  "

Bidding invitation
 2021-03-31  7:11 UTC 

[PATCH v5 0/1] Unprivileged chroot
 2021-03-31  6:33 UTC  (11+ messages)
` [PATCH v5 1/1] fs: Allow no_new_privs tasks to call chroot(2)

[PATCH] ima: Fix function name error in comment
 2021-03-31  1:25 UTC  (2+ messages)

add_key() syscall can lead to bypassing memcg limits
 2021-03-29  7:39 UTC 

[PATCH v5 1/1] fs: Allow no_new_privs tasks to call chroot(2)
 2021-03-27 18:56 UTC  (2+ messages)

[PATCH] Revert "Smack: Handle io_uring kernel thread privileges"
 2021-03-26 16:05 UTC  (3+ messages)

[PATCH] tomoyo: don't special case PF_IO_WORKER for PF_KTHREAD
 2021-03-26 16:05 UTC  (3+ messages)

[PATCH v6 0/8] Fork brute force attack mitigation
 2021-03-26 15:41 UTC  (4+ messages)
` [PATCH v6 7/8] Documentation: Add documentation for the Brute LSM

[PATCH v12 00/10] Add support for x509 certs with NIST P384/256/192 keys
 2021-03-26  9:30 UTC  (2+ messages)

[GIT PULL] integrity subsystem fix for v5.12
 2021-03-25 23:49 UTC  (2+ messages)

[PATCH] ima: Fix the error code for restoring the PCR value
 2021-03-25 15:09 UTC  (4+ messages)

[PATCH] ARM: Implement Clang's SLS mitigation
 2021-03-25 14:01 UTC  (4+ messages)
` [PATCH v2] "

[PATCH v4 00/11] evm: Improve usability of portable signatures
 2021-03-25 12:40 UTC  (7+ messages)
` [PATCH v4 08/11] evm: Allow setxattr() and setattr() for unmodified metadata

[PATCH v30 00/12] Landlock LSM
 2021-03-25  9:29 UTC  (14+ messages)
` [PATCH v30 02/12] landlock: Add ruleset and domain management
` [PATCH v30 08/12] landlock: Add syscall implementations
` [PATCH v30 12/12] landlock: Add user and kernel documentation

[RFC PATCH 1/2] ima: don't access a file's integrity status before an IMA policy is loaded
 2021-03-24 15:56 UTC  (17+ messages)
` [RFC PATCH 2/2] integrity: double check iint_cache was initialized


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).