summaryrefslogtreecommitdiffstats
path: root/security (follow)
Commit message (Expand)AuthorAgeFilesLines
* Smack: check for 'struct socket' with NULL skAhmed S. Darwish2008-02-141-4/+5
* selinux: support 64-bit capabilitiesStephen Smalley2008-02-115-2/+27
* Convert ERR_PTR(PTR_ERR(p)) instances to ERR_CAST(p)David Howells2008-02-074-4/+4
* SELinux: Remove security_get_policycaps()Paul Moore2008-02-062-34/+0
* security: allow Kconfig to set default mmap_min_addr protectionEric Paris2008-02-062-1/+21
* Smack: Simplified Mandatory Access Control KernelCasey Schaufler2008-02-058-0/+4095
* capabilities: introduce per-process capability bounding setSerge E. Hallyn2008-02-051-17/+27
* Add 64-bit capability support to the kernelAndrew Morgan2008-02-052-36/+68
* revert "capabilities: clean up file capability reading"Andrew Morton2008-02-051-15/+8
* VFS/Security: Rework inode_getsecurity and callers to return resulting bufferDavid P. Quigley2008-02-053-31/+18
* [AUDIT] add session id to audit messagesEric Paris2008-02-012-9/+13
* [PATCH] switch audit_get_loginuid() to task_struct *Al Viro2008-02-012-4/+4
* [SELinux]: Fix double free in selinux_netlbl_sock_setsid()Paul Moore2008-02-011-1/+0
* security: compile capabilities by defaultsergeh@us.ibm.com2008-01-291-0/+1
* selinux: make selinux_set_mnt_opts() staticAdrian Bunk2008-01-291-2/+2
* SELinux: Add warning messages on network denial due to errorPaul Moore2008-01-293-8/+40
* SELinux: Add network ingress and egress control permission checksPaul Moore2008-01-291-122/+280
* SELinux: Allow NetLabel to directly cache SIDsPaul Moore2008-01-295-134/+55
* SELinux: Enable dynamic enable/disable of the network access checksPaul Moore2008-01-294-13/+83
* SELinux: Better integration between peer labeling subsystemsPaul Moore2008-01-296-100/+208
* SELinux: Add a new peer class and permissions to the Flask definitionsPaul Moore2008-01-294-0/+26
* SELinux: Add a capabilities bitmap to SELinux policy version 22Paul Moore2008-01-296-8/+185
* SELinux: Add a network node caching mechanism similar to the sel_netif_*() fu...Paul Moore2008-01-295-17/+416
* SELinux: Only store the network interface's ifindexPaul Moore2008-01-293-6/+15
* SELinux: Convert the netif code to use ifindex valuesPaul Moore2008-01-296-125/+155
* NetLabel: Add IP address family information to the netlbl_skbuff_getattr() fu...Paul Moore2008-01-293-15/+38
* NetLabel: Add secid token support to the NetLabel secattr structPaul Moore2008-01-292-6/+9
* [NETFILTER]: Introduce NF_INET_ hook valuesPatrick McHardy2008-01-281-2/+2
* selinux: fix labeling of /proc/net inodesStephen Smalley2008-01-261-0/+3
* Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...Linus Torvalds2008-01-258-277/+564
|\
| * selinux: make mls_compute_sid always polyinstantiateEamon Walsh2008-01-251-9/+2
| * security/selinux: constify function pointer tables and fieldsJan Engelhardt2008-01-252-3/+3
| * security: add a secctx_to_secid() hookDavid Howells2008-01-253-0/+18
| * security: remove security_sb_post_mountroot hookH. Peter Anvin2008-01-252-11/+0
| * Security: add get, set, and cloning of superblock security informationEric Paris2008-01-254-254/+541
| * security/selinux: Add missing "space"Joe Perches2008-01-251-1/+1
* | Kobject: convert remaining kobject_unregister() to kobject_put()Greg Kroah-Hartman2008-01-251-1/+1
* | kobject: convert kernel_kset to be a kobjectGreg Kroah-Hartman2008-01-251-1/+1
* | kset: convert kernel_subsys to use kset_createGreg Kroah-Hartman2008-01-251-1/+1
* | kobject: convert securityfs to use kobject_createGreg Kroah-Hartman2008-01-251-6/+5
* | kobject: remove struct kobj_type from struct ksetGreg Kroah-Hartman2008-01-251-2/+2
|/
* Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...Linus Torvalds2008-01-222-4/+5
|\
| * selinux: fix memory leak in netlabel codePaul Moore2008-01-212-4/+5
* | Fix filesystem capability supportAndrew G. Morgan2008-01-221-3/+10
|/
* Security: allow capable check to permit mmap or low vm spaceEric Paris2007-12-051-1/+1
* SELinux: detect dead booleansStephen Smalley2007-12-051-13/+30
* SELinux: do not clear f_op when removing entriesStephen Smalley2007-12-051-27/+1
* file capabilities: don't prevent signaling setuid root programsSerge E. Hallyn2007-11-291-0/+9
* file capabilities: allow sigcont within sessionSerge E. Hallyn2007-11-151-0/+4
* SELinux: add more validity checks on policy loadStephen Smalley2007-11-077-38/+118