summaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
...
* | | | selinux: introduce permissive typesEric Paris2008-04-186-6/+48
* | | | selinux: remove ptrace_sidRoland McGrath2008-04-182-25/+47
* | | | SELinux: requesting no permissions in avc_has_perm_noaudit is a BUG()Eric Paris2008-04-181-1/+3
* | | | security: code cleanupAndrew Morton2008-04-181-1/+1
* | | | security: replace remaining __FUNCTION__ occurrencesHarvey Harrison2008-04-188-26/+26
* | | | SELinux: create new open permissionEric Paris2008-04-186-2/+47
* | | | selinux: selinux/netlabel.c should #include "netlabel.h"Adrian Bunk2008-04-181-0/+1
* | | | SELinux: unify printk messagesJames Morris2008-04-185-76/+76
* | | | SELinux: remove unused backpointers from security objectsJames Morris2008-04-182-14/+0
* | | | SELinux: Correct the NetLabel locking for the sk_security_structPaul Moore2008-04-184-87/+15
| |_|/ |/| |
* | | SELinux: don't BUG if fs reuses a superblockEric Paris2008-04-101-4/+4
* | | SELinux: more GFP_NOFS fixups to prevent selinux from re-entering the fs codeStephen Smalley2008-04-083-9/+13
* | | selinux: prevent rentry into the FSJosef Bacik2008-04-041-2/+2
| |/ |/|
* | selinux: handle files opened with flags 3 by checking ioctl permissionStephen Smalley2008-04-021-0/+6
* | smackfs: remove redundant lock, fix open(,O_RDWR)Ahmed S. Darwish2008-03-241-33/+2
* | file capabilities: remove cap_task_kill()Serge Hallyn2008-03-203-46/+0
* | smack: do not dereference NULL ipc objectAhmed S. Darwish2008-03-191-3/+6
* | make selinux_parse_opts_str() staticAdrian Bunk2008-03-181-1/+2
|/
* smackfs: do not trust `count' in inodes write()sAhmed S. Darwish2008-03-132-19/+20
* LSM/SELinux: Interfaces to allow FS to control mount optionsEric Paris2008-03-065-107/+128
* Smack: update for file capabilitiesCasey Schaufler2008-02-231-13/+74
* file capabilities: simplify signal checkSerge E. Hallyn2008-02-231-1/+1
* Smack: unlabeled outgoing ambient packetsCasey Schaufler2008-02-192-23/+74
* d_path: Use struct path in struct avc_audit_dataJan Blunck2008-02-143-25/+24
* Embed a struct path into struct nameidata instead of nd->{dentry,mnt}Jan Blunck2008-02-142-3/+3
* Smack: check for 'struct socket' with NULL skAhmed S. Darwish2008-02-131-4/+5
* selinux: support 64-bit capabilitiesStephen Smalley2008-02-115-2/+27
* Convert ERR_PTR(PTR_ERR(p)) instances to ERR_CAST(p)David Howells2008-02-074-4/+4
* SELinux: Remove security_get_policycaps()Paul Moore2008-02-062-34/+0
* security: allow Kconfig to set default mmap_min_addr protectionEric Paris2008-02-062-1/+21
* Smack: Simplified Mandatory Access Control KernelCasey Schaufler2008-02-058-0/+4095
* capabilities: introduce per-process capability bounding setSerge E. Hallyn2008-02-051-17/+27
* Add 64-bit capability support to the kernelAndrew Morgan2008-02-052-36/+68
* revert "capabilities: clean up file capability reading"Andrew Morton2008-02-051-15/+8
* VFS/Security: Rework inode_getsecurity and callers to return resulting bufferDavid P. Quigley2008-02-053-31/+18
* [AUDIT] add session id to audit messagesEric Paris2008-02-012-9/+13
* [PATCH] switch audit_get_loginuid() to task_struct *Al Viro2008-02-012-4/+4
* [SELinux]: Fix double free in selinux_netlbl_sock_setsid()Paul Moore2008-01-311-1/+0
* security: compile capabilities by defaultsergeh@us.ibm.com2008-01-301-0/+1
* selinux: make selinux_set_mnt_opts() staticAdrian Bunk2008-01-301-2/+2
* SELinux: Add warning messages on network denial due to errorPaul Moore2008-01-303-8/+40
* SELinux: Add network ingress and egress control permission checksPaul Moore2008-01-301-122/+280
* SELinux: Allow NetLabel to directly cache SIDsPaul Moore2008-01-305-134/+55
* SELinux: Enable dynamic enable/disable of the network access checksPaul Moore2008-01-304-13/+83
* SELinux: Better integration between peer labeling subsystemsPaul Moore2008-01-306-100/+208
* SELinux: Add a new peer class and permissions to the Flask definitionsPaul Moore2008-01-304-0/+26
* SELinux: Add a capabilities bitmap to SELinux policy version 22Paul Moore2008-01-306-8/+185
* SELinux: Add a network node caching mechanism similar to the sel_netif_*() fu...Paul Moore2008-01-305-17/+416
* SELinux: Only store the network interface's ifindexPaul Moore2008-01-303-6/+15
* SELinux: Convert the netif code to use ifindex valuesPaul Moore2008-01-306-125/+155