summaryrefslogtreecommitdiffstats
path: root/security/selinux/include
Commit message (Expand)AuthorAgeFilesLines
* selinux: distinguish non-init user namespace capability checksStephen Smalley2016-04-261-10/+18
* selinux: Change bool variable name to index.Prarit Bhargava2016-04-141-1/+1
* selinux: restrict kernel module loadingJeff Vander Stoep2016-04-051-1/+1
* selinux: simply inode label states to INVALID and INITIALIZEDPaul Moore2016-04-051-3/+2
* selinux: export validatetrans decisionsAndrew Perepechko2015-12-242-1/+4
* security: Add hook to invalidate inode security labelsAndreas Gruenbacher2015-12-241-0/+6
* selinux: introduce security_context_str_to_sidRasmus Villemoes2015-10-211-0/+2
* Merge branch 'next' of git://git.infradead.org/users/pcmoore/selinux into nextJames Morris2015-08-152-2/+36
|\
| * selinux: extended permissions for ioctlsJeff Vander Stoep2015-07-132-2/+36
* | Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds2015-06-272-20/+25
|\|
| * selinux: Remove unused permission definitionsStephen Smalley2015-06-041-14/+8
| * selinux: enable per-file labeling for debugfs files.Stephen Smalley2015-06-041-0/+1
| * selinux: update netlink socket classesStephen Smalley2015-06-041-6/+16
* | security/selinux: pass 'flags' arg to avc_audit() and avc_has_perm_flags()NeilBrown2015-05-111-2/+7
|/
* Add security hooks to binder and implement the hooks for SELinux.Stephen Smalley2015-01-251-0/+2
* selinux: make the netif cache namespace awarePaul Moore2014-09-102-1/+5
* Merge tag 'v3.16' into nextPaul Moore2014-08-051-1/+1
|\
| * Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-nextLinus Torvalds2014-06-121-1/+1
| |\
| | * audit: add netlink audit protocol bind to check capabilities on multicast joinRichard Guy Briggs2014-04-221-1/+1
| * | Merge branch 'serge-next-1' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2014-06-101-2/+2
| |\ \ | | |/ | |/|
| | * selinux: Report permissive mode in avc: denied messages.Stephen Smalley2014-06-031-2/+2
* | | selinux: reduce the number of calls to synchronize_net() when flushing cachesPaul Moore2014-06-263-0/+6
* | | security: Used macros from compiler.h instead of __attribute__((...))Gideon Israel Dsouza2014-06-181-1/+2
* | | Merge tag 'v3.15' into nextPaul Moore2014-06-171-2/+3
|\| |
| * | Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2014-03-252-2/+3
| |\|
| * | flowcache: Make flow cache name space awareFan Du2014-02-121-2/+3
* | | selinux: Report permissive mode in avc: denied messages.Stephen Smalley2014-05-011-2/+2
| |/ |/|
* | selinux: add gfp argument to security_xfrm_policy_alloc and fix callersNikolay Aleksandrov2014-03-102-2/+3
|/
* Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...Linus Torvalds2014-01-211-1/+2
|\
| * selinux: look for IPsec labels on both inbound and outbound packetsPaul Moore2013-12-091-3/+5
| * SELinux: Update policy version to support constraints infoRichard Haines2013-11-191-1/+2
| * Merge tag 'v3.12'Paul Moore2013-11-082-14/+11
| |\
* | | SELinux: Fix possible NULL pointer dereference in selinux_inode_permission()Steven Rostedt2014-01-121-1/+4
* | | selinux: look for IPsec labels on both inbound and outbound packetsPaul Moore2013-12-121-3/+5
* | | Merge tag 'v3.12'Paul Moore2013-11-262-14/+11
|\ \ \ | |/ / |/| / | |/
| * selinux: remove 'flags' parameter from avc_audit()Linus Torvalds2013-10-041-2/+2
| * selinux: avc_has_perm_flags has no more usersLinus Torvalds2013-10-041-11/+3
| * net: split rt_genid for ipv4 and ipv6fan.du2013-07-311-1/+6
* | Merge git://git.infradead.org/users/eparis/selinuxPaul Moore2013-09-183-33/+29
|\ \ | |/ |/|
| * Revert "SELinux: do not handle seclabel as a special flag"Eric Paris2013-08-281-1/+1
| * Add SELinux policy capability for always checking packet and peer classes.Chris PeBenito2013-07-251-0/+3
| * SELinux: pass a superblock to security_fs_useEric Paris2013-07-251-2/+1
| * SELinux: do not handle seclabel as a special flagEric Paris2013-07-251-1/+1
| * SELinux: change sbsec->behavior to shortEric Paris2013-07-252-2/+2
| * SELinux: renumber the superblock optionsEric Paris2013-07-252-4/+5
| * SELinux: rename SE_SBLABELSUPP to SBLABEL_MNTEric Paris2013-07-251-1/+1
| * selinux: remove the BUG_ON() from selinux_skb_xfrm_sid()Paul Moore2013-07-251-3/+2
| * selinux: cleanup the XFRM headerPaul Moore2013-07-251-14/+5
| * selinux: cleanup selinux_xfrm_sock_rcv_skb() and selinux_xfrm_postroute_last()Paul Moore2013-07-251-8/+9
| * lsm: split the xfrm_state_alloc_security() hook implementationPaul Moore2013-07-251-1/+3