summaryrefslogtreecommitdiffstats
path: root/security/integrity/evm (follow)
Commit message (Expand)AuthorAgeFilesLines
* evm: stop avoidably reading i_writecount in evm_file_releaseMateusz Guzik2024-10-101-1/+2
* lsm: Refactor return value of LSM hook inode_copy_up_xattrXu Kuohai2024-07-311-1/+1
* evm: Rename is_unsupported_fs to is_unsupported_hmac_fsStefan Berger2024-04-091-9/+10
* fs: Rename SB_I_EVM_UNSUPPORTED to SB_I_EVM_HMAC_UNSUPPORTEDStefan Berger2024-04-091-1/+1
* evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509Stefan Berger2024-04-091-5/+7
* evm: Store and detect metadata inode attributes changesStefan Berger2024-04-093-10/+49
* evm: Use the metadata inode to calculate metadata hashStefan Berger2024-04-091-1/+1
* evm: Implement per signature type decision in security_inode_copy_up_xattrStefan Berger2024-04-091-3/+28
* security: allow finer granularity in permitting copy-up of security xattrsStefan Berger2024-04-091-1/+1
* integrity: Avoid -Wflex-array-member-not-at-end warningsGustavo A. R. Silva2024-04-081-1/+1
* evm: Make it independent from 'integrity' LSMRoberto Sassu2024-02-164-22/+78
* evm: Move to LSM infrastructureRoberto Sassu2024-02-161-16/+102
* evm: Align evm_inode_post_setxattr() definition with LSM infrastructureRoberto Sassu2024-02-161-1/+3
* evm: Align evm_inode_setxattr() definition with LSM infrastructureRoberto Sassu2024-02-161-1/+2
* evm: Align evm_inode_post_setattr() definition with LSM infrastructureRoberto Sassu2024-02-161-1/+3
* evm: add support to disable EVM on unsupported filesystemsMimi Zohar2023-12-201-1/+34
* evm: don't copy up 'security.evm' xattrMimi Zohar2023-12-201-0/+7
* evm: Do not include crypto/algapi.hHerbert Xu2023-09-151-2/+1
* Merge tag 'lsm-pr-20230829' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2023-08-303-10/+44
|\
| * evm: Support multiple LSMs providing an xattrRoberto Sassu2023-07-103-7/+37
| * evm: Align evm_inode_init_security() definition with LSM infrastructureRoberto Sassu2023-07-101-6/+10
* | integrity: Enforce digitalSignature usage in the ima and evm keyringsEric Snowberg2023-08-171-1/+2
|/
* evm: Fix build warningsRoberto Sassu2023-06-062-2/+2
* evm: Complete description of evm_inode_setattr()Roberto Sassu2023-06-051-0/+2
* Merge tag 'integrity-v6.3' of git://git.kernel.org/pub/scm/linux/kernel/git/z...Linus Torvalds2023-02-221-17/+16
|\
| * evm: call dump_security_xattr() in all cases to remove code duplicationXiu Jianfeng2023-01-311-17/+16
* | fs: port i_{g,u}id_{needs_}update() to mnt_idmapChristian Brauner2023-01-191-3/+2
* | fs: port acl to mnt_idmapChristian Brauner2023-01-191-6/+6
* | fs: port xattr to mnt_idmapChristian Brauner2023-01-192-12/+12
* | fs: port ->permission() to pass mnt_idmapChristian Brauner2023-01-192-5/+5
* | fs: port ->setattr() to pass mnt_idmapChristian Brauner2023-01-192-4/+5
|/
* Merge tag 'lsm-pr-20221212' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2022-12-132-4/+8
|\
| * lsm,fs: fix vfs_getxattr_alloc() return type and caller error pathsPaul Moore2022-11-182-4/+8
* | evm: remove dead code in evm_inode_set_acl()Christian Brauner2022-10-281-3/+2
* | evm: remove evm_xattr_acl_change()Christian Brauner2022-10-201-64/+0
* | integrity: implement get and set acl hookChristian Brauner2022-10-201-1/+82
|/
* acl: move idmapping handling into posix_acl_xattr_set()Christian Brauner2022-08-311-3/+14
* Merge tag 'integrity-v6.0' of git://git.kernel.org/pub/scm/linux/kernel/git/z...Linus Torvalds2022-08-031-29/+23
|\
| * evm: Use IS_ENABLED to initialize .enabledXiu Jianfeng2022-07-131-29/+23
* | Merge tag 'fs.idmapped.vfsuid.v5.20' of git://git.kernel.org/pub/scm/linux/ke...Linus Torvalds2022-08-011-5/+7
|\ \ | |/ |/|
| * attr: port attribute changes to new typesChristian Brauner2022-06-261-2/+2
| * security: pass down mount idmapping to setattr hookChristian Brauner2022-06-261-3/+5
| * fs: port to iattr ownership update helpersChristian Brauner2022-06-261-2/+2
* | Revert "evm: Fix memleak in init_desc"Xiu Jianfeng2022-06-151-5/+2
|/
* evm: Clean up some variablesStefan Berger2022-05-162-4/+1
* evm: Return INTEGRITY_PASS for enum integrity_status value '0'Stefan Berger2022-05-161-1/+1
* EVM: fix the evm= __setup handler return valueRandy Dunlap2022-02-231-1/+1
* evm: mark evm_fixmode as __ro_after_initAustin Kim2021-10-291-1/+1
* evm: Check xattr size discrepancy between kernel and userRoberto Sassu2021-06-211-1/+7
* evm: output EVM digest calculation infoMimi Zohar2021-06-202-0/+47