- 6326948 lsm: security_task_getsecid_subj() -> security_current_getsecid_subj() by Paul Moore · 3 years, 4 months ago
- bfc3cac smack: mark 'smack_enabled' global variable as __initdata by Austin Kim · 3 years, 7 months ago
- 17ae69a Merge tag 'landlock_v34' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 3 years, 9 months ago
- 1aea780 LSM: Infrastructure management of the superblock by Casey Schaufler · 3 years, 9 months ago
- 1fb057d smack: differentiate between subjective and objective task credentials by Paul Moore · 3 years, 11 months ago
- 322dd63 Smack: Use the netlabel cache by Casey Schaufler · 4 years, 5 months ago
- a2af031 Smack: Set socket labels only once by Casey Schaufler · 4 years, 5 months ago
- ef26650 Smack: Remove unused inline function smk_ad_setfield_u_fs_path_mnt by YueHaibing · 4 years, 8 months ago
- 921bb1c Smack:- Remove mutex lock "smk_lock" from inode_smack by Casey Schaufler · 4 years, 9 months ago
- 092c94a smack: remove redundant structure variable from header. by Maninder Singh · 4 years, 9 months ago
- 00720f0 smack: avoid unused 'sip' variable warning by Arnd Bergmann · 4 years, 9 months ago
- a10e763 treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 372 by Thomas Gleixner · 6 years ago
- 4e328b0 Smack: Create smack_rule cache to optimize memory usage by Casey Schaufler · 6 years ago
- 7b47a9e Merge branch 'work.mount' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 6 years ago
- 2febd25 smack: Implement filesystem context security hooks by David Howells · 6 years ago
- ecd5f82 LSM: Infrastructure management of the ipc security blob by Casey Schaufler · 6 years ago
- 019bcca Smack: Abstract use of ipc security blobs by Casey Schaufler · 6 years ago
- afb1cbe3 LSM: Infrastructure management of the inode security by Casey Schaufler · 6 years ago
- fb4021b Smack: Abstract use of inode security blob by Casey Schaufler · 6 years ago
- 33bf60c LSM: Infrastructure management of the file security by Casey Schaufler · 6 years ago
- f28952a Smack: Abstract use of file security blob by Casey Schaufler · 6 years ago
- bbd3662 Infrastructure management of the cred security blob by Casey Schaufler · 6 years ago
- b17103a Smack: Abstract use of cred security blob by Casey Schaufler · 6 years ago
- d19dfe5 Smack: Privilege check on key operations by Casey Schaufler · 7 years ago
- f28e783 Smack: Use cap_capable in privilege check by Casey Schaufler · 8 years ago
- 3d4f673 SMACK: Free the i_security blob in inode using RCU by Himanshu Shukla · 8 years ago
- 0c96d1f Smack: Fix the issue of wrong SMACK label update in socket bind fail case by Vishal Goel · 8 years ago
- 9d44c97 Smack: Fix the issue of permission denied error in ipv6 hook by Vishal Goel · 8 years ago
- 152f91d Smack: Remove unnecessary smack_known_invalid by Casey Schaufler · 8 years ago
- c60b906 Smack: Signal delivery as an append operation by Casey Schaufler · 8 years ago
- 9f50eda Smack: Add support for unprivileged mounts from user namespaces by Seth Forshee · 9 years ago
- 38416e5 Smack: limited capability for changing process label by Zbigniew Jasinski · 9 years ago
- 21abb1e Smack: IPv6 host labeling by Casey Schaufler · 9 years ago
- 3bf2789 smack: allow mount opts setting over filesystems with binary mount data by Vivek Trivedi · 10 years ago
- c0d77c8 Smack: allow multiple labels in onlycap by Rafal Krypa · 10 years ago
- b1d9e6b LSM: Switch to lists of hooks by Casey Schaufler · 10 years ago
- 3c4ed7b LSM: Split security.h by Casey Schaufler · 10 years ago
- bf4b2fe Smack: Allow an unconfined label in bringup mode by Casey Schaufler · 10 years ago
- 6d1cff2 smack: fix possible use after frees in task_security() callers by Andrey Ryabinin · 10 years ago
- 69f287a Smack: secmark support for netfilter by Casey Schaufler · 10 years ago
- 21c7eae Make Smack operate on smack_known struct where it still used char* by Lukasz Pawelczyk · 10 years ago
- d166c80 Smack: Bring-up access mode by Casey Schaufler · 10 years ago
- 54e70ec Smack: bidirectional UDS connect check by Casey Schaufler · 11 years ago
- 6686781 Smack: adds smackfs/ptrace interface by Lukasz Pawelczyk · 11 years ago
- 959e6c7 Smack: fix the subject/object order in smack_ptrace_traceme() by Lukasz Pawelczyk · 11 years ago
- 00f84f3 Smack: Make the syslog control configurable by Casey Schaufler · 11 years ago
- c0ab6e5 Smack: Implement lock security mode by Casey Schaufler · 11 years ago
- 677264e Smack: network label match fix by Casey Schaufler · 12 years ago
- 4d7cf4a security: smack: add a hash table to quicken smk_find_entry() by Tomasz Stanislawski · 12 years ago
- e830b39 Smack: Add smkfstransmute mount option by Casey Schaufler · 12 years ago
- 2f823ff Smack: Improve access check performance by Casey Schaufler · 12 years ago
- c673944 Smack: Local IPv6 port based controls by Casey Schaufler · 12 years ago
- cee7e44 smack: SMACK_MAGIC to include/uapi/linux/magic.h by Jarkko Sakkinen · 12 years ago
- 1880eff Smack: onlycap limits on CAP_MAC_ADMIN by Casey Schaufler · 13 years ago
- eb982cb Smack: fix smack_new_inode bogosities by Casey Schaufler · 13 years ago
- ff2bb04 Merge branch 'master' of git://git.infradead.org/users/eparis/selinux into next by James Morris · 13 years ago
- f7112e6 Smack: allow for significantly longer Smack labels v4 by Casey Schaufler · 13 years ago
- 2267b13 Smack: recursive tramsmute by Casey Schaufler · 13 years ago
- 50c205f LSM: do not initialize common_audit_data to 0 by Eric Paris · 13 years ago
- 48c62af LSM: shrink the common_audit_data data union by Eric Paris · 13 years ago
- 3b3b0e4 LSM: shrink sizeof LSM specific portion of common_audit_data by Eric Paris · 13 years ago
- 0e94ae1 Smack: allow to access /smack/access as normal user by Jarkko Sakkinen · 13 years ago
- ce8a432 Smack: Clean up comments by Casey Schaufler · 13 years ago
- 272cd7a Smack: Rule list lookup performance by Casey Schaufler · 13 years ago
- a269434 LSM: separate LSM_AUDIT_DATA_DENTRY from LSM_AUDIT_DATA_PATH by Eric Paris · 14 years ago
- f48b739 LSM: split LSM_AUDIT_DATA_FS into _PATH and _INODE by Eric Paris · 14 years ago
- db904aa security:smack: kill unused SMACK_LIST_MAX, MAY_ANY and MAY_ANYWRITE by Shan Wei · 14 years ago
- 7898e1f Subject: [PATCH] Smack: mmap controls for library containment by Casey Schaufler · 14 years ago
- 5c6d112 Smack: Transmute labels on specified directories by Jarkko Sakkinen · 14 years ago
- 676dac4 This patch adds a new security attribute to Smack called by Casey Schaufler · 14 years ago
- af4f136 security: move LSM xattrnames to xattr.h by Mimi Zohar · 15 years ago
- d4131de security: Make lsm_priv union in lsm_audit.h anonymous by Thomas Liu · 16 years ago
- ed5215a Move variable function in lsm_audit.h into SMACK private space by Thomas Liu · 16 years ago
- ecfcc53 smack: implement logging V3 by Etienne Basset · 16 years ago
- 4303154 smack: Add a new '-CIPSO' option to the network address label configuration by Etienne Basset · 16 years ago
- 07feee8 netlabel: Cleanup the Smack/NetLabel code to fix incoming TCP connections by Paul Moore · 16 years ago
- 7198e2e smack: convert smack to standard linux lists by Etienne Basset · 16 years ago
- 6d3dc07 smack: Add support for unlabeled network hosts and networks by Casey Schaufler · 16 years ago
- 1544623 smack: limit privilege by label by Casey Schaufler · 16 years ago
- 076c54c Security: Introduce security= boot parameter by Ahmed S. Darwish · 17 years ago
- b500ce8 smackfs: do not trust `count' in inodes write()s by Ahmed S. Darwish · 17 years ago
- e114e47 Smack: Simplified Mandatory Access Control Kernel by Casey Schaufler · 17 years ago