- 2039bda LSM: Add "contents" flag to kernel_read_file hook by Kees Cook · 4 years, 3 months ago
- b64fcae LSM: Introduce kernel_post_load_data() hook by Kees Cook · 4 years, 3 months ago
- b89999d0 fs/kernel_read_file: Split into separate include file by Scott Branden · 4 years, 3 months ago
- 23e390c security: Fix hook iteration and default value for inode_copy_up_xattr by KP Singh · 4 years, 6 months ago
- 4a87b19 Merge tag 'LSM-add-setgid-hook-5.8-author-fix' of git://github.com/micah-morton/linux by Linus Torvalds · 4 years, 7 months ago
- 39030e1 security: Add LSM hooks to set*gid syscalls by Thomas Cedeno · 4 years, 7 months ago
- 6c32978 Merge tag 'notifications-20200601' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs by Linus Torvalds · 4 years, 7 months ago
- 52435c8 Merge tag 'ovl-update-5.8' of git://git.kernel.org/pub/scm/linux/kernel/git/mszeredi/vfs by Linus Torvalds · 4 years, 7 months ago
- 3c0ad98 Merge tag 'integrity-v5.8' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 4 years, 7 months ago
- 15a2bc4 Merge branch 'exec-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace by Linus Torvalds · 4 years, 7 months ago
- 292f902 ovl: call secutiry hook in ovl_real_ioctl() by Miklos Szeredi · 4 years, 7 months ago
- 56305aa exec: Compute file based creds only once by Eric W. Biederman · 4 years, 7 months ago
- 8eb613c ima: verify mprotect change is consistent with mmap policy by Mimi Zohar · 4 years, 8 months ago
- 112b714 exec: Convert security_bprm_set_creds into security_bprm_repopulate_creds by Eric W. Biederman · 4 years, 8 months ago
- 0550cfe security: Fix hook iteration for secid_to_secctx by KP Singh · 4 years, 7 months ago
- b8bff59 exec: Factor security_bprm_creds_for_exec out of security_bprm_set_creds by Eric W. Biederman · 4 years, 9 months ago
- 8c0637e keys: Make the KEY_NEED_* perms an enum rather than a mask by David Howells · 4 years, 8 months ago
- 998f504 security: Add hooks to rule on setting a watch by David Howells · 4 years, 11 months ago
- 344fa64 security: Add a hook for the point of notification insertion by David Howells · 4 years, 11 months ago
- 98e828a security: Refactor declaration of LSM hooks by KP Singh · 4 years, 9 months ago
- b3a6082 Merge branch 'for-v5.6' of git://git.kernel.org:/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 5 years ago
- 10c2d11 security: remove EARLY_LSM_COUNT which never used by Alex Shi · 5 years ago
- 59438b46 security,lockdown,selinux: implement SELinux lockdown by Stephen Smalley · 5 years ago
- da97e18 perf_event: Add support for LSM and SELinux checks by Joel Fernandes (Google) · 5 years ago
- aefcf2f Merge branch 'next-lockdown' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 5 years ago
- 5825a95 Merge tag 'selinux-pr-20190917' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux by Linus Torvalds · 5 years ago
- 9e47d31 security: Add a "locked down" LSM hook by Matthew Garrett · 5 years ago
- e6b1db9 security: Support early LSMs by Matthew Garrett · 5 years ago
- ac5656d fanotify, inotify, dnotify, security: add security hook for fs notifications by Aaron Goidel · 5 years ago
- 8b68150 Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 5 years ago
- 42df744 LSM: switch to blocking policy update notifiers by Janne Karhunen · 6 years ago
- 2874c5f treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 152 by Thomas Gleixner · 6 years ago
- 4009132 Merge branch 'work.mount-syscalls' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 6 years ago
- b230d5a LSM: add new hook for kernfs node initialization by Ondrej Mosnacek · 6 years ago
- 2db154b vfs: syscall: Add move_mount(2) to move mounts around by David Howells · 6 years ago
- 7b47a9e Merge branch 'work.mount' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 6 years ago
- be37f21 Merge tag 'audit-pr-20190305' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit by Linus Torvalds · 6 years ago
- 0b52075 introduce cloning of fs_context by Al Viro · 6 years ago
- da2441f vfs: Add LSM hooks for the new mount API by David Howells · 6 years ago
- 89a9684 LSM: Ignore "security=" when "lsm=" is specified by Kees Cook · 6 years ago
- 90462a5 audit: remove unused actx param from audit_rule_match by Richard Guy Briggs · 6 years ago
- 9624d5c Merge tag 'v5.0-rc3' into next-general by James Morris · 6 years ago
- 3e8c736 LSM: Make some functions static by Wei Yongjun · 6 years ago
- 1cfb2a5 LSM: Make lsm_early_cred() and lsm_early_task() local functions. by Tetsuo Handa · 6 years ago
- a5795fd LSM: Check for NULL cred-security on free by James Morris · 6 years ago
- c1a85a0 LSM: generalize flag passing to security_capable by Micah Morton · 6 years ago
- ecd5f82 LSM: Infrastructure management of the ipc security blob by Casey Schaufler · 6 years ago
- f4ad8f2 LSM: Infrastructure management of the task security by Casey Schaufler · 6 years ago
- afb1cbe3 LSM: Infrastructure management of the inode security by Casey Schaufler · 6 years ago
- 33bf60c LSM: Infrastructure management of the file security by Casey Schaufler · 6 years ago
- bbd3662 Infrastructure management of the cred security blob by Casey Schaufler · 6 years ago
- 6d9c939 procfs: add smack subdir to attrs by Casey Schaufler · 6 years ago
- d117a15 capability: Initialize as LSM_ORDER_FIRST by Kees Cook · 6 years ago
- e2bc445 LSM: Introduce enum lsm_order by Kees Cook · 6 years ago
- d6aed64 Yama: Initialize as ordered LSM by Kees Cook · 6 years ago
- 70b62c2 LoadPin: Initialize as ordered LSM by Kees Cook · 6 years ago
- d8e9bbd4 LSM: Split LSM preparation from initialization by Kees Cook · 6 years ago
- c91d810 LSM: Add all exclusive LSMs to ordered initialization by Casey Schaufler · 6 years ago
- 14bd99c LSM: Separate idea of "major" LSM from "exclusive" LSM by Kees Cook · 6 years ago
- 7e61148 LSM: Refactor "security=" in terms of enable/disable by Kees Cook · 6 years ago
- 5ef4e41 LSM: Prepare for reorganizing "security=" logic by Kees Cook · 6 years ago
- a8027fb LSM: Tie enabling logic to presence in ordered list by Kees Cook · 6 years ago
- 79f7865 LSM: Introduce "lsm=" for boottime LSM selection by Kees Cook · 6 years ago
- 13e735c LSM: Introduce CONFIG_LSM by Kees Cook · 6 years ago
- 2d4d511 LSM: Build ordered list of LSMs to initialize by Kees Cook · 6 years ago
- f4941d7 LSM: Lift LSM selection out of individual LSMs by Kees Cook · 6 years ago
- 657d910 LSM: Provide separate ordered initialization by Kees Cook · 6 years ago
- 505b050 Merge branch 'mount.part1' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 6 years ago
- 757cbe5 LSM: new method: ->sb_add_mnt_opt() by Al Viro · 6 years ago
- 204cc0c LSM: hide struct security_mnt_opts from any generic code by Al Viro · 6 years ago
- 5b40023 LSM: turn sb_eat_lsm_opts() into a method by Al Viro · 6 years ago
- a65001e btrfs: sanitize security_mnt_opts use by Al Viro · 6 years ago
- a10d7c2 LSM: split ->sb_set_mnt_opts() out of ->sb_kern_mount() by Al Viro · 6 years ago
- f5c0c26 new helper: security_sb_eat_lsm_opts() by Al Viro · 6 years ago
- c039bc3 LSM: lift extracting and parsing LSM options into the caller of ->sb_remount() by Al Viro · 6 years ago
- 6be8750 LSM: lift parsing LSM options into the caller of ->sb_kern_mount() by Al Viro · 6 years ago
- 876979c security: audit and remove any unnecessary uses of module.h by Paul Gortmaker · 6 years ago
- 638820d Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 6 years ago
- 3f6caaf LSM: Don't ignore initialization failures by Kees Cook · 6 years ago
- 9b8c7c1 LSM: Provide init debugging infrastructure by Kees Cook · 6 years ago
- 5b89c1b LSM: Convert from initcall to struct lsm_info by Kees Cook · 6 years ago
- 6907e37 LSM: Remove initcall tracing by Kees Cook · 6 years ago
- b048ae6 LSM: Rename .security_initcall section to .lsm_info by Kees Cook · 6 years ago
- 98d2917 LSM: Correctly announce start of LSM initialization by Kees Cook · 6 years ago
- ae7795b signal: Distinguish between kernel_siginfo and siginfo by Eric W. Biederman · 6 years ago
- 1b1eeca init: allow initcall tables to be emitted using relative references by Ard Biesheuvel · 6 years ago
- f91e654 Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 6 years ago
- 92d4a03 Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 6 years ago
- 6eb864c integrity: prevent deadlock during digsig verification. by Mikhail Kurinnoi · 7 years ago
- 87ea584 security: check for kstrdup() failure in lsm_append() by Eric Biggers · 6 years ago
- 83a68a0 security: export security_kernel_load_data function by Arnd Bergmann · 6 years ago
- 16c267a ima: based on policy require signed kexec kernel images by Mimi Zohar · 6 years ago
- 377179c security: define new LSM hook named security_kernel_load_data by Mimi Zohar · 6 years ago
- 9481769 ->file_open(): lose cred argument by Al Viro · 6 years ago
- e3f20ae security_file_open(): lose cred argument by Al Viro · 6 years ago
- aae7cfc security: add hook for socketpair() by David Herrmann · 7 years ago
- 2a56bb5 Merge tag 'trace-v4.17' of git://git.kernel.org/pub/scm/linux/kernel/git/rostedt/linux-trace by Linus Torvalds · 7 years ago
- f8cf2f1 Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 7 years ago
- 3612605 Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 7 years ago
- 9eda2d2 Merge tag 'selinux-pr-20180403' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux by Linus Torvalds · 7 years ago