Gitiles
Code Review
Sign In
review.shift-gmbh.com
/
SHIFTPHONES
/
kernel
/
shift
/
mainline
/
9668097599aa5fb87351bc2263e06a1c24718d40
/
security
/
integrity
c593642
treewide: Use sizeof_field() macro
by Pankaj Bharadiya
· 5 years ago
6f09019
x86/efi: remove unused variables
by YueHaibing
· 5 years ago
8220e22
powerpc: Load firmware trusted keys/hashes into kernel keyring
by Nayna Jain
· 5 years ago
ad72367
x86/efi: move common keyring handler functions to new file
by Nayna Jain
· 5 years ago
273df86
ima: Check against blacklisted hashes for files with modsig
by Nayna Jain
· 5 years ago
e14555e
ima: Make process_buffer_measurement() generic
by Nayna Jain
· 5 years ago
7a8beb7
integrity: remove pointless subdir-$(CONFIG_...)
by Masahiro Yamada
· 5 years ago
6b190d3
integrity: remove unneeded, broken attempt to add -fshort-wchar
by Masahiro Yamada
· 5 years ago
aefcf2f
Merge branch 'next-lockdown' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 5 years ago
2a7f0e5
ima: ima_api: Use struct_size() in kzalloc()
by Gustavo A. R. Silva
· 5 years ago
fa5b571
ima: use struct_size() in kzalloc()
by Gustavo A. R. Silva
· 6 years ago
556d971
ima: Fix use after free in ima_read_modsig()
by Thiago Jung Bauermann
· 5 years ago
29d3c1c
kexec: Allow kexec_file() with appropriate IMA policy when locked down
by Matthew Garrett
· 5 years ago
99d5cadf
kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE
by Jiri Bohac
· 5 years ago
4ece312
ima: fix freeing ongoing ahash_request
by Sascha Hauer
· 5 years ago
f5e1040
ima: always return negative code for error
by Sascha Hauer
· 5 years ago
e509225
ima: Store the measurement again when appraising a modsig
by Thiago Jung Bauermann
· 6 years ago
3878d50
ima: Define ima-modsig template
by Thiago Jung Bauermann
· 6 years ago
1558822
ima: Collect modsig
by Thiago Jung Bauermann
· 6 years ago
39b0709
ima: Implement support for module-style appended signatures
by Thiago Jung Bauermann
· 6 years ago
a5fbeb6
ima: Factor xattr_verify() out of ima_appraise_measurement()
by Thiago Jung Bauermann
· 6 years ago
9044d62
ima: Add modsig appraise_type option for module-style appended signatures
by Thiago Jung Bauermann
· 6 years ago
cf38fed
integrity: Select CONFIG_KEYS instead of depending on it
by Thiago Jung Bauermann
· 6 years ago
b36f281
ima: initialize the "template" field with the default template
by Mimi Zohar
· 5 years ago
028db3e
Revert "Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs"
by Linus Torvalds
· 5 years ago
8b68150
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity
by Linus Torvalds
· 5 years ago
0f75ef6
Merge tag 'keys-acl-20190703' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs
by Linus Torvalds
· 5 years ago
c84ca91
Merge tag 'keys-namespace-20190627' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs
by Linus Torvalds
· 5 years ago
650b29d
integrity: Introduce struct evm_xattr
by Thiago Jung Bauermann
· 6 years ago
337619e
ima: Update MAX_TEMPLATE_NAME_LEN to fit largest reasonable definition
by Thiago Jung Bauermann
· 6 years ago
86b4da8
IMA: Define a new template field buf
by Prakhar Srivastava
· 6 years ago
2e12256
keys: Replace uid/gid/perm permissions checking with an ACL
by David Howells
· 6 years ago
dcf49db
keys: Add a 'recurse' flag for keyring searches
by David Howells
· 6 years ago
b093512
IMA: Define a new hook to measure the kexec boot command line arguments
by Prakhar Srivastava
· 6 years ago
19453ce0
IMA: support for per policy rule template formats
by Matthew Garrett
· 6 years ago
8c65578
integrity: Fix __integrity_init_keyring() section mismatch
by Geert Uytterhoeven
· 6 years ago
e038f5f
ima: Use designated initializers for struct ima_event_data
by Thiago Jung Bauermann
· 6 years ago
b169424
ima: use the lsm policy update notifier
by Janne Karhunen
· 6 years ago
9e1e5d4
x86/ima: fix the Kconfig dependency for IMA_ARCH_POLICY
by Nayna Jain
· 6 years ago
68f2529
ima: Make arch_policy_entry static
by YueHaibing
· 6 years ago
b886d83c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 441
by Thomas Gleixner
· 6 years ago
2cd4737
ima: prevent a file already mmap'ed write to be mmap'ed execute
by Mimi Zohar
· 6 years ago
d266b3f
Merge branch 'next-fixes-for-5.2-rc' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity
by Linus Torvalds
· 6 years ago
2874c5f
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 152
by Thomas Gleixner
· 6 years ago
8cdc23a
ima: show rules with IMA_INMASK correctly
by Roberto Sassu
· 6 years ago
221be10
evm: check hash algorithm passed to init_desc()
by Roberto Sassu
· 6 years ago
ec8f24b
treewide: Add SPDX license identifier - Makefile/Kconfig
by Thomas Gleixner
· 6 years ago
f400194
ima: fix wrong signed policy requirement when not appraising
by Petr Vorel
· 6 years ago
02aff8d
Merge tag 'audit-pr-20190507' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit
by Linus Torvalds
· 6 years ago
81ff5d2
Merge branch 'linus' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/crypto-2.6
by Linus Torvalds
· 6 years ago
9641b8c
s390/ipl: read IPL report at early boot
by Martin Schwidefsky
· 6 years ago
877b569
crypto: shash - remove shash_desc::flags
by Eric Biggers
· 6 years ago
be08f0c
integrity: support EC-RDSA signatures for asymmetric_verify
by Vitaly Chikunov
· 6 years ago
a1aa08a
audit: link integrity evm_write_xattrs record to syscall event
by Richard Guy Briggs
· 6 years ago
5af7f11
Merge branch 'next-tpm' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
c3665a6
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
be37f21
Merge tag 'audit-pr-20190305' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit
by Linus Torvalds
· 6 years ago
ae5906c
Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
736706b
get rid of legacy 'get_ds()' function
by Linus Torvalds
· 6 years ago
09186e5
security: mark expected switch fall-throughs and add a missing break
by Gustavo A. R. Silva
· 6 years ago
0b6cf6b
tpm: pass an array of tpm_extend_digest structures to tpm_pcr_extend()
by Roberto Sassu
· 6 years ago
879b589
tpm: retrieve digest size of unknown algorithms with PCR read
by Roberto Sassu
· 6 years ago
e7fde07
evm: Use defined constant for UUID representation
by Andy Shevchenko
· 6 years ago
fdb2410
ima: define ima_post_create_tmpfile() hook and add missing call
by Mimi Zohar
· 6 years ago
c8b3752
evm: remove set but not used variable 'xattr'
by YueHaibing
· 6 years ago
219a3e8
integrity, KEYS: add a reference to platform keyring
by Kairui Song
· 6 years ago
90462a5
audit: remove unused actx param from audit_rule_match
by Richard Guy Briggs
· 6 years ago
74673fc
Merge branch 'next-tpm' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
f218a29
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
769e470
Merge tag 'kconfig-v4.21' of git://git.kernel.org/pub/scm/linux/kernel/git/masahiroy/linux-kbuild
by Linus Torvalds
· 6 years ago
ca79b0c
mm: convert totalram_pages and totalhigh_pages variables to atomic
by Arun KS
· 6 years ago
b71acb0
Merge branch 'linus' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/crypto-2.6
by Linus Torvalds
· 6 years ago
3f03bf9
Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
047ce6d
Merge tag 'audit-pr-20181224' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit
by Linus Torvalds
· 6 years ago
8636a1f
treewide: surround Kconfig file paths with double quotes
by Masahiro Yamada
· 6 years ago
b49d564
security: integrity: partial revert of make ima_main explicitly non-modular
by Paul Gortmaker
· 6 years ago
1a9430d
ima: cleanup the match_token policy code
by Mimi Zohar
· 6 years ago
c7f7e58
integrity: Remove references to module keyring
by Thiago Jung Bauermann
· 6 years ago
0db51ef2
Merge tag 'tpmdd-next-20181217' of git://git.infradead.org/users/jjs/linux-tpmdd into next-tpm
by James Morris
· 6 years ago
5580b4a
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity into next-integrity
by James Morris
· 6 years ago
8bd8ea1
Merge tag 'v4.20-rc7' into next-general
by James Morris
· 6 years ago
eed9de3
ima: Use inode_is_open_for_write
by Nikolay Borisov
· 6 years ago
d7cecb6
ima: Support platform keyring for kernel appraisal
by Nayna Jain
· 6 years ago
386b49f
efi: Allow the "db" UEFI variable to be suppressed
by Josh Boyer
· 6 years ago
15ea0e1
efi: Import certificates from UEFI Secure Boot
by Josh Boyer
· 6 years ago
0bc9ae3
efi: Add an EFI signature blob parser
by Dave Howells
· 6 years ago
60740ac
integrity: Load certs to the platform keyring
by Nayna Jain
· 6 years ago
9dc92c4
integrity: Define a trusted platform keyring
by Nayna Jain
· 6 years ago
876979c
security: audit and remove any unnecessary uses of module.h
by Paul Gortmaker
· 6 years ago
3aafb1f
security: integrity: make evm_main explicitly non-modular
by Paul Gortmaker
· 6 years ago
4f83d5e
security: integrity: make ima_main explicitly non-modular
by Paul Gortmaker
· 6 years ago
060190f
ima: don't measure/appraise files on efivarfs
by Mimi Zohar
· 6 years ago
d958083
x86/ima: define arch_get_ima_policy() for x86
by Eric Richter
· 6 years ago
6191706
ima: add support for arch specific policies
by Nayna Jain
· 6 years ago
c52657d
ima: refactor ima_init_policy()
by Nayna Jain
· 6 years ago
b5ca117
ima: prevent kexec_load syscall based on runtime secureboot flag
by Nayna Jain
· 6 years ago
2a1fe21
audit: use current whenever possible
by Paul Moore
· 6 years ago
3d234b3
crypto: drop mask=CRYPTO_ALG_ASYNC from 'shash' tfm allocations
by Eric Biggers
· 6 years ago
fd35f19
integrity: support new struct public_key_signature encoding field
by Mimi Zohar
· 6 years ago
59637d5
integrity: support new struct public_key_signature encoding field
by Mimi Zohar
· 6 years ago
Next »