1. 52c2083 IMA: support for duplicate measurement records by Tushar Sugandhi · 3 years, 8 months ago
  2. c679134 ima: Fix warning: no previous prototype for function 'ima_add_kexec_buffer' by Lakshmi Ramasubramanian · 3 years, 7 months ago
  3. 55748ac6 ima: differentiate between EVM failures in the audit log by Mimi Zohar · 3 years, 7 months ago
  4. 7d2201d ima: Fix fall-through warning for Clang by Gustavo A. R. Silva · 3 years, 7 months ago
  5. 531bf6a ima: Pass NULL instead of 0 to ima_get_action() in ima_file_mprotect() by Roberto Sassu · 3 years, 7 months ago
  6. 8c55941 ima: Include header defining ima_post_key_create_or_update() by Roberto Sassu · 3 years, 7 months ago
  7. 6b26285 ima/evm: Fix type mismatch by Roberto Sassu · 3 years, 7 months ago
  8. 24c9ae2 ima: Set correct casting types by Roberto Sassu · 3 years, 7 months ago
  9. 88016de ima: Define new template evm-sig by Roberto Sassu · 3 years, 7 months ago
  10. 8314b67 ima: Define new template fields xattrnames, xattrlengths and xattrvalues by Roberto Sassu · 3 years, 7 months ago
  11. f8216f6 ima: Define new template field imode by Roberto Sassu · 3 years, 7 months ago
  12. 7dcfeac ima: Define new template fields iuid and igid by Roberto Sassu · 3 years, 7 months ago
  13. cde1391 ima: Add ima_show_template_uint() template library function by Roberto Sassu · 3 years, 7 months ago
  14. ed1b472 ima: Don't remove security.ima if file must not be appraised by Roberto Sassu · 3 years, 8 months ago
  15. 026d7fc ima: Introduce template field evmsig and write to field sig as fallback by Roberto Sassu · 3 years, 8 months ago
  16. 7aa5783 ima: Allow imasig requirement to be satisfied by EVM portable signatures by Roberto Sassu · 3 years, 8 months ago
  17. cdef685 evm: Allow xattr/attr operations for portable signatures by Roberto Sassu · 3 years, 8 months ago
  18. e3ccfe1 evm: Introduce evm_revalidate_status() by Roberto Sassu · 3 years, 8 months ago
  19. aa2ead7 evm: Load EVM key in ima_load_x509() to avoid appraisal by Roberto Sassu · 3 years, 8 months ago
  20. e6f0bf0 Merge tag 'integrity-v5.13' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 3 years, 8 months ago
  21. 0080665 Merge tag 'devicetree-for-5.13' of git://git.kernel.org/pub/scm/linux/kernel/git/robh/linux by Linus Torvalds · 3 years, 8 months ago
  22. 28073eb ima: Fix fall-through warnings for Clang by Gustavo A. R. Silva · 4 years, 1 month ago
  23. 41d75dd ima: Fix function name error in comment. by Jiele Zhao · 3 years, 9 months ago
  24. 7990cca ima: Fix the error code for restoring the PCR value by Li Huafei · 3 years, 10 months ago
  25. 4ebd765 lsm: separate security_task_getsecid() into subjective and objective variants by Paul Moore · 3 years, 10 months ago
  26. f873b28 ima: without an IMA policy loaded, return quickly by Mimi Zohar · 3 years, 10 months ago
  27. fee3ff9 powerpc: Move arch independent ima kexec functions to drivers/of/kexec.c by Lakshmi Ramasubramanian · 3 years, 10 months ago
  28. 0c60515 powerpc: Move ima buffer fields to struct kimage by Lakshmi Ramasubramanian · 3 years, 10 months ago
  29. c03c21b Merge tag 'keys-misc-20210126' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs by Linus Torvalds · 3 years, 10 months ago
  30. 7d6beb7 Merge tag 'idmapped-mounts-v5.12' of git://git.kernel.org/pub/scm/linux/kernel/git/brauner/linux by Linus Torvalds · 3 years, 10 months ago
  31. cccb0ef Merge branch 'ima-kexec-fixes' into next-integrity by Mimi Zohar · 3 years, 11 months ago
  32. f31e338 ima: Free IMA measurement buffer after kexec syscall by Lakshmi Ramasubramanian · 3 years, 11 months ago
  33. 6d14c65 ima: Free IMA measurement buffer on error by Lakshmi Ramasubramanian · 3 years, 11 months ago
  34. b3f82af IMA: Measure kernel version in early boot by Raphael Gianotti · 4 years ago
  35. a2d2329 ima: handle idmapped mounts by Christian Brauner · 4 years ago
  36. c7c7a1a1 xattr: handle idmapped mounts by Tycho Andersen · 4 years ago
  37. 4993e1f certs: Fix blacklist flag type confusion by David Howells · 4 years, 1 month ago
  38. 03cee16 IMA: define a builtin critical data measurement policy by Lakshmi Ramasubramanian · 4 years ago
  39. 9f5d7d2 IMA: extend critical data hook to limit the measurement based on a label by Tushar Sugandhi · 4 years ago
  40. 47d76a4 IMA: limit critical data measurement based on a label by Tushar Sugandhi · 4 years ago
  41. c4e43aa IMA: add policy rule to measure critical data by Tushar Sugandhi · 4 years ago
  42. d6e6450 IMA: define a hook to measure kernel integrity critical data by Tushar Sugandhi · 4 years ago
  43. 291af65 IMA: add support to measure buffer data hash by Tushar Sugandhi · 4 years ago
  44. 2b4a247 IMA: generalize keyring specific measurement constructs by Tushar Sugandhi · 4 years ago
  45. 4a1106a Merge tag 'efi_updates_for_v5.11' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip by Linus Torvalds · 4 years ago
  46. e20a9b92 Merge tag 'integrity-v5.11' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 4 years ago
  47. 207cdd5 ima: Don't modify file descriptor mode on the fly by Roberto Sassu · 4 years, 1 month ago
  48. 403319b ima: Implement ima_inode_hash by KP Singh · 4 years, 1 month ago
  49. dea87d0 ima: select ima-buf template for buffer measurement by Lakshmi Ramasubramanian · 4 years, 2 months ago
  50. 25519d6 ima: generalize x86/EFI arch glue for other EFI architectures by Chester Lin · 4 years, 2 months ago
  51. b000d5c ima: defer arch_ima_get_secureboot() call to IMA init time by Ard Biesheuvel · 4 years, 3 months ago
  52. 4739eea ima: Replace zero-length array with flexible-array member by Gustavo A. R. Silva · 4 years, 4 months ago
  53. 840e5bb Merge tag 'integrity-v5.10' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 4 years, 3 months ago
  54. 0fa8e08 fs/kernel_file_read: Add "offset" arg for partial reads by Kees Cook · 4 years, 3 months ago
  55. 34736da IMA: Add support for file reads without contents by Scott Branden · 4 years, 3 months ago
  56. 2039bda LSM: Add "contents" flag to kernel_read_file hook by Kees Cook · 4 years, 3 months ago
  57. 4f2d99b firmware_loader: Use security_post_load_data() by Kees Cook · 4 years, 3 months ago
  58. b64fcae LSM: Introduce kernel_post_load_data() hook by Kees Cook · 4 years, 3 months ago
  59. 8853528 fs/kernel_read_file: Add file_size output argument by Kees Cook · 4 years, 3 months ago
  60. 113eeb5 fs/kernel_read_file: Switch buffer size arg to size_t by Kees Cook · 4 years, 3 months ago
  61. f7a4f68 fs/kernel_read_file: Remove redundant size argument by Kees Cook · 4 years, 3 months ago
  62. b89999d0 fs/kernel_read_file: Split into separate include file by Scott Branden · 4 years, 3 months ago
  63. c307459 fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum by Kees Cook · 4 years, 3 months ago
  64. aa662fc ima: Fix NULL pointer dereference in ima_file_hash by KP Singh · 4 years, 3 months ago
  65. 4be92db ima: Remove semicolon at the end of ima_get_binary_runtime_size() by Roberto Sassu · 4 years, 4 months ago
  66. 60386b8 ima: Don't ignore errors from crypto_shash_update() by Roberto Sassu · 4 years, 4 months ago
  67. f60c826 ima: Use kmemdup rather than kmalloc+memcpy by Alex Dewar · 4 years, 4 months ago
  68. e4d7e2d ima: limit secure boot feedback scope for appraise by Bruno Meneguele · 4 years, 4 months ago
  69. 7fe2bb7 integrity: invalid kernel parameters feedback by Bruno Meneguele · 4 years, 4 months ago
  70. 4afb28a ima: add check for enforced appraise option by Bruno Meneguele · 4 years, 4 months ago
  71. 48ce1dd ima: Fail rule parsing when asymmetric key measurement isn't supportable by Tyler Hicks · 4 years, 5 months ago
  72. 176377d ima: Pre-parse the list of keyrings in a KEY_CHECK rule by Tyler Hicks · 4 years, 5 months ago
  73. df561f66 treewide: Use fallthrough pseudo-keyword by Gustavo A. R. Silva · 4 years, 4 months ago
  74. ce13266 Merge tag 'for-v5.9' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 4 years, 5 months ago
  75. c9fecf5 Replace HTTP links with HTTPS ones: security by Alexander A. Klimov · 4 years, 6 months ago
  76. 311aa6a ima: move APPRAISE_BOOTPARAM dependency on ARCH_POLICY to runtime by Bruno Meneguele · 4 years, 6 months ago
  77. 1768215 ima: AppArmor satisfies the audit rule requirements by Tyler Hicks · 4 years, 6 months ago
  78. b8867ee ima: Rename internal filter rule functions by Tyler Hicks · 4 years, 6 months ago
  79. 4834177 ima: Support additional conditionals in the KEXEC_CMDLINE hook function by Tyler Hicks · 4 years, 6 months ago
  80. 592b24c ima: Use the common function to detect LSM conditionals in a rule by Tyler Hicks · 4 years, 6 months ago
  81. 30031b0 ima: Move comprehensive rule validation checks out of the token parser by Tyler Hicks · 4 years, 6 months ago
  82. aa0c022 ima: Use correct type for the args_p member of ima_rule_entry.lsm elements by Tyler Hicks · 4 years, 6 months ago
  83. 39e5993 ima: Shallow copy the args_p member of ima_rule_entry.lsm elements by Tyler Hicks · 4 years, 6 months ago
  84. 5f3e926 ima: Fail rule parsing when appraise_flag=blacklist is unsupportable by Tyler Hicks · 4 years, 6 months ago
  85. eb624fe ima: Fail rule parsing when the KEY_CHECK hook is combined with an invalid cond by Tyler Hicks · 4 years, 6 months ago
  86. db2045f ima: Fail rule parsing when the KEXEC_CMDLINE hook is combined with an invalid cond by Tyler Hicks · 4 years, 6 months ago
  87. 71218343 ima: Fail rule parsing when buffer hook functions have an invalid action by Tyler Hicks · 4 years, 6 months ago
  88. 2bdd737 ima: Free the entire rule if it fails to parse by Tyler Hicks · 4 years, 6 months ago
  89. 465aee7 ima: Free the entire rule when deleting a list of rules by Tyler Hicks · 4 years, 6 months ago
  90. 9ff8a61 ima: Have the LSM free its audit rule by Tyler Hicks · 4 years, 6 months ago
  91. 34e980b IMA: Add audit log for failure conditions by Lakshmi Ramasubramanian · 4 years, 6 months ago
  92. 20c59ce ima: extend boot_aggregate with kernel measurements by Maurizio Drocco · 4 years, 6 months ago
  93. 923ea16 Merge tag 'integrity-v5.8-fix' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 4 years, 7 months ago
  94. 4235b1a ima: fix mprotect checking by Mimi Zohar · 4 years, 7 months ago
  95. 8b8c704 ima: Remove __init annotation from ima_pcrread() by Roberto Sassu · 4 years, 7 months ago
  96. 3c0ad98 Merge tag 'integrity-v5.8' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 4 years, 7 months ago
  97. 42413b4 ima: Directly free *entry in ima_alloc_init_template() if digests is NULL by Roberto Sassu · 4 years, 7 months ago
  98. 6cc7c26 ima: Call ima_calc_boot_aggregate() in ima_eventdigest_init() by Roberto Sassu · 4 years, 7 months ago
  99. 067a436 ima: Directly assign the ima_default_policy pointer to ima_rules by Roberto Sassu · 4 years, 7 months ago
  100. 8eb613c ima: verify mprotect change is consistent with mmap policy by Mimi Zohar · 4 years, 8 months ago