- 6326948 lsm: security_task_getsecid_subj() -> security_current_getsecid_subj() by Paul Moore · 3 years, 3 months ago
- 5593a73 Merge tag 'apparmor-pr-2021-11-10' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 3 years, 2 months ago
- 7b72112 apparmor: remove unneeded one-line hook wrappers by Florian Westphal · 3 years, 3 months ago
- 4ebd765 lsm: separate security_task_getsecid() into subjective and objective variants by Paul Moore · 3 years, 10 months ago
- 92de220 apparmor: update policy capable checks to use a label by John Johansen · 4 years, 6 months ago
- 3cee607 apparmor: handle idmapped mounts by Christian Brauner · 4 years ago
- 41dd959 security: add const qualifier to struct sock in various places by Florian Westphal · 4 years, 1 month ago
- a2b4470 Merge tag 'apparmor-pr-2020-06-07' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 4 years, 7 months ago
- 3b646ab apparmor: check/put label on apparmor_sk_clone_security() by Mauricio Faria de Oliveira · 4 years, 7 months ago
- 2cf002d apparmor: check/put label on apparmor_sk_clone_security() by Mauricio Faria de Oliveira · 4 years, 7 months ago
- 15a2bc4 Merge branch 'exec-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace by Linus Torvalds · 4 years, 7 months ago
- b8bff59 exec: Factor security_bprm_creds_for_exec out of security_bprm_set_creds by Eric W. Biederman · 4 years, 9 months ago
- 3292739 sysctl: pass kernel pointers to ->proc_handler by Christoph Hellwig · 4 years, 8 months ago
- 79e178a Merge tag 'apparmor-pr-2019-12-03' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 5 years ago
- 341c1fd apparmor: make it so work buffers can be allocated from atomic context by John Johansen · 5 years ago
- df32333 apparmor: Use a memory pool instead per-CPU caches by Sebastian Andrzej Siewior · 6 years ago
- bf1d2ee apparmor: Force type-casting of current->real_cred by Bharath Vedartham · 6 years ago
- b886d83c treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 441 by Thomas Gleixner · 6 years ago
- 63c16c3 apparmor: Initial implementation of raw policy blob compression by Chris Coulson · 6 years ago
- e33c1b9 apparmor: Restore Y/N in /sys for apparmor's "enabled" by Kees Cook · 6 years ago
- ae5906c Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 6 years ago
- a1a0206 apparmor: Fix warning about unused function apparmor_ipv6_postroute by Petr Vorel · 6 years ago
- 1cfb2a5 LSM: Make lsm_early_cred() and lsm_early_task() local functions. by Tetsuo Handa · 6 years ago
- c1a85a0 LSM: generalize flag passing to security_capable by Micah Morton · 6 years ago
- f4ad8f2 LSM: Infrastructure management of the task security by Casey Schaufler · 6 years ago
- 33bf60c LSM: Infrastructure management of the file security by Casey Schaufler · 6 years ago
- bbd3662 Infrastructure management of the cred security blob by Casey Schaufler · 6 years ago
- 69b5a44 AppArmor: Abstract use of cred security blob by Casey Schaufler · 6 years ago
- 0102fb8 apparmor: Remove SECURITY_APPARMOR_BOOTPARAM_VALUE by Kees Cook · 6 years ago
- 14bd99c LSM: Separate idea of "major" LSM from "exclusive" LSM by Kees Cook · 6 years ago
- f4941d7 LSM: Lift LSM selection out of individual LSMs by Kees Cook · 6 years ago
- c5459b8 LSM: Plumb visibility into optional "enabled" state by Kees Cook · 6 years ago
- 47008e5 LSM: Introduce LSM_FLAG_LEGACY_MAJOR by Kees Cook · 6 years ago
- e262e32d vfs: Suppress MS_* flag defs within the kernel unless explicitly enabled by David Howells · 6 years ago
- d81f50b Merge tag 'apparmor-pr-2018-11-01' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 6 years ago
- 638820d Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 6 years ago
- e1af477 apparmor: add #ifdef checks for secmark filtering by Arnd Bergmann · 6 years ago
- 07aed2f LSM: Record LSM name in struct lsm_info by Kees Cook · 6 years ago
- 3d6e5f6 LSM: Convert security_initcall() into DEFINE_LSM() by Kees Cook · 6 years ago
- ae7795b signal: Distinguish between kernel_siginfo and siginfo by Eric W. Biederman · 6 years ago
- ca3fde5 apparmor: don't try to replace stale label in ptraceme check by Jann Horn · 6 years ago
- ab9f211 apparmor: Allow filtering based on secmark policy by Matthew Garrett · 7 years ago
- 1f8266f apparmor: don't try to replace stale label in ptrace access check by Jann Horn · 6 years ago
- 9481769 ->file_open(): lose cred argument by Al Viro · 6 years ago
- 338d0be apparmor: fix ptrace read check by John Johansen · 7 years ago
- a4c3f89 apparmor: fixup secid map conversion to using IDR by John Johansen · 7 years ago
- e79c26d apparmor: Add support for audit rule filtering by Matthew Garrett · 7 years ago
- 5d8779a apparmor: Convert to use match_string() helper by Andy Shevchenko · 7 years ago
- a7ae364 apparmor: add the ability to get a task's secid by John Johansen · 7 years ago
- c092921 apparmor: add support for mapping secids and using secctxes by John Johansen · 7 years ago
- 80a17a5 Merge tag 'apparmor-pr-2018-04-10' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 7 years ago
- 3612605 Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 7 years ago
- 514c603 headers: untangle kmemleak.h from mm.h by Randy Dunlap · 7 years ago
- 56974a6 apparmor: add base infastructure for socket mediation by John Johansen · 7 years ago
- 6b4f3d0 usb, signal, security: only pass the cred, not the secid, to kill_pid_info_as_cred and security_task_kill by Stephen Smalley · 7 years ago
- d8889d4 apparmor: move context.h to cred.h by John Johansen · 7 years ago
- de62de5 apparmor: move task related defines and fns to task.X files by John Johansen · 7 years ago
- f175221 apparmor: rename tctx to ctx by John Johansen · 8 years ago
- d9087c4 apparmor: drop cred_ctx and reference the label directly by John Johansen · 8 years ago
- 3b529a7 apparmor: move task domain change info to task security by John Johansen · 8 years ago
- 4d2f8ba apparmor: rename task_ctx to the more accurate cred_ctx by John Johansen · 8 years ago
- 26064de Merge tag 'apparmor-pr-2017-11-21' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 7 years ago
- 954317f apparmor: Fix bool initialization/comparison by Thomas Meyer · 7 years ago
- 1be2172 Merge tag 'modules-for-v4.15' of git://git.kernel.org/pub/scm/linux/kernel/git/jeyu/linux by Linus Torvalds · 7 years ago
- e4dca7b treewide: Fix function prototypes for module_param_call() by Kees Cook · 7 years ago
- 80c094a Revert "apparmor: add base infastructure for socket mediation" by Linus Torvalds · 7 years ago
- 79444df Merge tag 'apparmor-pr-2017-09-22' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 7 years ago
- 651e28c apparmor: add base infastructure for socket mediation by John Johansen · 7 years ago
- 2ea3ffb apparmor: add mount mediation by John Johansen · 7 years ago
- cd1dbf7 apparmor: add the ability to mediate signals by John Johansen · 7 years ago
- 993b3ab apparmor: Refactor to remove bprm_secureexec hook by Kees Cook · 7 years ago
- 6c5fc8f apparmor: add stacked domain labels interface by John Johansen · 8 years ago
- 064dc94 apparmor: mediate files when they are received by John Johansen · 8 years ago
- 8014370 apparmor: move path_link mediation to using labels by John Johansen · 8 years ago
- aebd873 apparmor: refactor path name lookup and permission checks around labels by John Johansen · 8 years ago
- 190a951 apparmor: move aa_file_perm() to use labels by John Johansen · 8 years ago
- b2d09ae apparmor: move ptrace checks to using labels by John Johansen · 8 years ago
- 86b92cb apparmor: move resource checks to using labels by John Johansen · 8 years ago
- c70c86c apparmor: move capability checks to using labels by John Johansen · 8 years ago
- 76a1d26 apparmor: switch getprocattr to using label_print fns() by John Johansen · 8 years ago
- 637f688 apparmor: switch from profiles to using labels on contexts by John Johansen · 8 years ago
- 192ca6b apparmor: revalidate files during exec by John Johansen · 8 years ago
- 2835a13 apparmor: cleanup rename XXX_file_context() to XXX_file_ctx() by John Johansen · 8 years ago
- df8073c apparmor: convert aa_change_XXX bool parameters to flags by John Johansen · 8 years ago
- cf797c0 apparmor: convert to profile block critical sections by John Johansen · 8 years ago
- fe86482 apparmor: move bprm_committing_creds/committed_creds to lsm.c by John Johansen · 8 years ago
- 39d8482 apparmor: provide information about path buffer size at boot by John Johansen · 8 years ago
- e53cfe6 apparmor: rework perm mapping to a slightly broader set by John Johansen · 8 years ago
- 622f6e3 apparmor: Make path_max parameter readonly by John Johansen · 8 years ago
- 545de8f apparmor: fix parameters so that the permission test is bypassed at boot by John Johansen · 8 years ago
- eea7a05 security/apparmor/lsm.c: set debug messages by Valentin Rothberg · 8 years ago
- ca97d93 security: mark LSM hooks as __ro_after_init by James Morris · 8 years ago
- a2a1547 Merge branch 'stable-4.11' of git://git.infradead.org/users/pcmoore/selinux into next by James Morris · 8 years ago
- d69dece5 LSM: Add /sys/kernel/security/lsm by Casey Schaufler · 8 years ago
- 3ccb76c apparmor: fix undefined reference to `aa_g_hash_policy' by John Johansen · 8 years ago
- e6bfa25 apparmor: replace remaining BUG_ON() asserts with AA_BUG() by John Johansen · 8 years ago
- ca4bd5a apparmor: add check for apparmor enabled in module parameters missing it by John Johansen · 8 years ago
- d4669f0 apparmor: add per cpu work buffers to avoid allocating buffers at every hook by John Johansen · 8 years ago
- e3ea1ca apparmor: sysctl to enable unprivileged user ns AppArmor policy loading by Tyler Hicks · 9 years ago
- e025be0 apparmor: support querying extended trusted helper extra data by William Hua · 8 years ago