summaryrefslogtreecommitdiffstats
path: root/security
AgeCommit message (Expand)AuthorLines
2013-10-25ima: support arbitrary hash algorithms in ima_calc_buffer_hashDmitry Kasatkin-6/+25
2013-10-25ima: provide dedicated hash algo allocation functionDmitry Kasatkin-14/+29
2013-10-25ima: differentiate between template hash and file data hash sizesMimi Zohar-12/+12
2013-10-25ima: use dynamically allocated hash storageDmitry Kasatkin-30/+49
2013-10-25ima: pass full xattr with the signatureDmitry Kasatkin-5/+7
2013-10-25ima: read and use signature hash algorithmDmitry Kasatkin-25/+94
2013-10-25ima: provide support for arbitrary hash algorithmsDmitry Kasatkin-32/+98
2013-10-25Revert "ima: policy for RAMFS"Mimi Zohar-1/+0
2013-10-25ima: fix script messagesDmitry Kasatkin-13/+13
2013-10-24device_cgroup: remove can_attachSerge Hallyn-11/+0
2013-10-23Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller-30/+17
2013-10-22Merge branch 'master' of git://git.infradead.org/users/pcmoore/selinux into r...James Morris-392/+432
2013-10-18Smack: Implement lock security modeCasey Schaufler-8/+33
2013-10-16apparmor: fix bad lock balance when introspecting policyJohn Johansen-3/+1
2013-10-16apparmor: fix memleak of the profile hashJohn Johansen-0/+1
2013-10-14netfilter: pass hook ops to hookfnPatrick McHardy-5/+5
2013-10-09net: fix build errors if ipv6 is disabledEric Dumazet-0/+2
2013-10-09ipv6: make lookups simpler and fasterEric Dumazet-3/+2
2013-10-04selinux: remove 'flags' parameter from avc_audit()Linus Torvalds-4/+4
2013-10-04selinux: avc_has_perm_flags has no more usersLinus Torvalds-17/+6
2013-10-04selinux: remove 'flags' parameter from inode_has_permLinus Torvalds-7/+6
2013-10-01Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller-20/+21
2013-09-30net ipv4: Convert ipv4.ip_local_port_range to be per netns v3Eric W. Biederman-1/+1
2013-09-30apparmor: fix suspicious RCU usage warning in policy.c/policy.hJohn Johansen-2/+5
2013-09-30apparmor: Use shash crypto API interface for profile hashesTyler Hicks-18/+16
2013-09-26selinux: correct locking in selinux_netlbl_socket_connect)Paul Moore-4/+2
2013-09-26selinux: Use kmemdup instead of kmalloc + memcpyDuan Jiong-2/+2
2013-09-25KEYS: initialize root uid and session keyrings earlyMimi Zohar-0/+10
2013-09-25KEYS: Add a 'trusted' flag and a 'trusted only' flagDavid Howells-0/+12
2013-09-24KEYS: Add per-user_namespace registers for persistent per-UID kerberos cachesDavid Howells-0/+213
2013-09-24KEYS: Implement a big key type that can save to tmpfsDavid Howells-0/+216
2013-09-24KEYS: Expand the capacity of a keyringDavid Howells-742/+792
2013-09-24KEYS: Drop the permissions argument from __keyring_search_one()David Howells-9/+5
2013-09-24KEYS: Define a __key_get() wrapper to use rather than atomic_inc()David Howells-12/+12
2013-09-24KEYS: Search for auth-key by name rather than target key IDDavid Howells-14/+7
2013-09-24KEYS: Introduce a search context structureDavid Howells-158/+174
2013-09-24KEYS: Consolidate the concept of an 'index key' for key accessDavid Howells-62/+67
2013-09-24KEYS: key_is_dead() should take a const key pointer argumentDavid Howells-1/+1
2013-09-24KEYS: Use bool in make_key_ref() and is_key_possessed()David Howells-2/+3
2013-09-24KEYS: Skip key state checks when checking for possessionDavid Howells-6/+11
2013-09-24security: remove erroneous comment about capabilities.o link orderingEric Paris-1/+0
2013-09-18Merge git://git.infradead.org/users/eparis/selinuxPaul Moore-388/+430
2013-09-07Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebi...Linus Torvalds-5/+5
2013-09-07Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds-547/+1666
2013-09-05Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-nextLinus Torvalds-1/+6
2013-09-04Merge tag 'modules-next-for-linus' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds-0/+2
2013-09-03Merge branch 'for-3.12' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/c...Linus Torvalds-39/+26
2013-08-30capabilities: allow nice if we are privilegedSerge Hallyn-4/+4
2013-08-30userns: Allow PR_CAPBSET_DROP in a user namespace.Eric W. Biederman-1/+1
2013-08-28Revert "SELinux: do not handle seclabel as a special flag"Eric Paris-1/+4