summaryrefslogtreecommitdiffstats
path: root/security/integrity
Commit message (Expand)AuthorAgeFilesLines
* EVM: Use crypto_memneq() for digest comparisonsRyan Ware2016-02-121-1/+2
* wrappers for ->i_mutex accessAl Viro2016-01-221-4/+4
* Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...Linus Torvalds2016-01-1717-76/+575
|\
| * ima: ima_write_policy() limit lockingPetko Manolov2016-01-031-9/+9
| * IMA: policy can be updated zero timesSasha Levin2015-12-243-0/+14
| * security/integrity: make ima/ima_mok.c explicitly non-modularPaul Gortmaker2015-12-151-3/+2
| * ima: update appraise flags after policy update completesMimi Zohar2015-12-151-2/+5
| * IMA: prevent keys on the .ima_blacklist from being removedMimi Zohar2015-12-151-0/+2
| * IMA: allow reading back the current IMA policyPetko Manolov2015-12-154-8/+253
| * IMA: create machine owner and blacklist keyringsPetko Manolov2015-12-154-0/+87
| * IMA: policy can now be updated multiple timesPetko Manolov2015-12-153-28/+75
| * evm: EVM_LOAD_X509 depends on EVMArnd Bergmann2015-12-151-1/+1
| * evm: reset EVM status when file attributes changeDmitry Kasatkin2015-12-151-0/+13
| * evm: provide a function to set the EVM key from the kernelDmitry Kasatkin2015-12-152-14/+46
| * evm: enable EVM when X509 certificate is loadedDmitry Kasatkin2015-12-154-3/+14
| * evm: load an x509 certificate from the kernelDmitry Kasatkin2015-12-154-0/+33
| * integrity: define '.evm' as a builtin 'trusted' keyringDmitry Kasatkin2015-11-237-22/+35
* | fix the leak in integrity_read_file()Al Viro2016-01-041-5/+6
|/
* mm, page_alloc: rename __GFP_WAIT to __GFP_RECLAIMMel Gorman2015-11-061-1/+1
* KEYS: Merge the type-specific data with the payload dataDavid Howells2015-10-211-1/+1
* integrity: prevent loading untrusted certificates on the IMA trusted keyringDmitry Kasatkin2015-10-091-1/+1
* Merge tag 'modules-next-for-linus' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds2015-07-011-1/+1
|\
| * kernel/params: constify struct kernel_param_ops usesLuis R. Rodriguez2015-05-281-1/+1
* | ima: update builtin policiesMimi Zohar2015-06-161-9/+56
* | ima: extend "mask" policy matching supportMimi Zohar2015-06-161-5/+15
* | ima: add support for new "euid" policy conditionMimi Zohar2015-06-161-4/+23
* | ima: fix ima_show_template_data_ascii()Mimi Zohar2015-06-163-4/+5
* | ima: pass iint to ima_add_violation()Roberto Sassu2015-05-215-9/+13
* | ima: wrap event related data to the new ima_event_data structureRoberto Sassu2015-05-215-79/+61
* | integrity: add validity checks for 'path' parameterDmitry Kasatkin2015-05-213-2/+5
* | evm: fix potential race when removing xattrsDmitry Kasatkin2015-05-211-4/+3
* | evm: labeling pseudo filesystems exceptionMimi Zohar2015-05-211-0/+11
* | ima: remove definition of IMA_X509_PATHDmitry Kasatkin2015-05-211-7/+1
* | ima: limit file hash setting by user to fix and log modesDmitry Kasatkin2015-05-211-2/+6
* | ima: do not measure or appraise the NSFS filesystemMimi Zohar2015-05-211-0/+2
* | ima: skip measurement of cgroupfs files and update documentationRoberto Sassu2015-05-211-0/+2
* | ima: cleanup ima_init_policy() a littleDan Carpenter2015-05-131-10/+6
|/
* VFS: security/: d_backing_inode() annotationsDavid Howells2015-04-153-16/+16
* Merge branch 'kconfig' of git://git.kernel.org/pub/scm/linux/kernel/git/mmare...Linus Torvalds2015-02-192-3/+3
|\
| * kconfig: use bool instead of boolean for type definition attributesChristoph Jaeger2015-01-072-3/+3
* | ima: /proc/keys is now mandatoryDavid Howells2015-02-021-1/+0
|/
* Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/li...James Morris2014-12-161-1/+1
|\
| * ima: Fix build failure on powerpc when TCG_IBMVTPM dependencies are not metMichael Ellerman2014-12-061-1/+1
* | Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds2014-12-1412-119/+308
|\|
| * VFS: refactor vfs_read()Dmitry Kasatkin2014-11-171-7/+3
| * ima: require signature based appraisalDmitry Kasatkin2014-11-172-0/+13
| * integrity: provide a hook to load keys when rootfs is readyDmitry Kasatkin2014-11-171-0/+11
| * ima: load x509 certificate from the kernelDmitry Kasatkin2014-11-174-2/+44
| * integrity: provide a function to load x509 certificate from the kernelDmitry Kasatkin2014-11-172-1/+37
| * integrity: define a new function integrity_read_file()Dmitry Kasatkin2014-11-173-32/+85