| Commit message (Expand) | Author | Age |
* | SELinux: don't BUG if fs reuses a superblock | Eric Paris | 2008-04-09 |
* | SELinux: more GFP_NOFS fixups to prevent selinux from re-entering the fs code | Stephen Smalley | 2008-04-07 |
* | selinux: prevent rentry into the FS | Josef Bacik | 2008-04-03 |
* | selinux: handle files opened with flags 3 by checking ioctl permission | Stephen Smalley | 2008-04-02 |
* | smackfs: remove redundant lock, fix open(,O_RDWR) | Ahmed S. Darwish | 2008-03-24 |
* | file capabilities: remove cap_task_kill() | Serge Hallyn | 2008-03-20 |
* | smack: do not dereference NULL ipc object | Ahmed S. Darwish | 2008-03-19 |
* | make selinux_parse_opts_str() static | Adrian Bunk | 2008-03-17 |
* | smackfs: do not trust `count' in inodes write()s | Ahmed S. Darwish | 2008-03-13 |
* | LSM/SELinux: Interfaces to allow FS to control mount options | Eric Paris | 2008-03-05 |
* | Smack: update for file capabilities | Casey Schaufler | 2008-02-23 |
* | file capabilities: simplify signal check | Serge E. Hallyn | 2008-02-23 |
* | Smack: unlabeled outgoing ambient packets | Casey Schaufler | 2008-02-19 |
* | d_path: Use struct path in struct avc_audit_data | Jan Blunck | 2008-02-15 |
* | Embed a struct path into struct nameidata instead of nd->{dentry,mnt} | Jan Blunck | 2008-02-15 |
* | Smack: check for 'struct socket' with NULL sk | Ahmed S. Darwish | 2008-02-13 |
* | selinux: support 64-bit capabilities | Stephen Smalley | 2008-02-11 |
* | Convert ERR_PTR(PTR_ERR(p)) instances to ERR_CAST(p) | David Howells | 2008-02-07 |
* | SELinux: Remove security_get_policycaps() | Paul Moore | 2008-02-06 |
* | security: allow Kconfig to set default mmap_min_addr protection | Eric Paris | 2008-02-06 |
* | Smack: Simplified Mandatory Access Control Kernel | Casey Schaufler | 2008-02-05 |
* | capabilities: introduce per-process capability bounding set | Serge E. Hallyn | 2008-02-05 |
* | Add 64-bit capability support to the kernel | Andrew Morgan | 2008-02-05 |
* | revert "capabilities: clean up file capability reading" | Andrew Morton | 2008-02-05 |
* | VFS/Security: Rework inode_getsecurity and callers to return resulting buffer | David P. Quigley | 2008-02-05 |
* | [AUDIT] add session id to audit messages | Eric Paris | 2008-02-01 |
* | [PATCH] switch audit_get_loginuid() to task_struct * | Al Viro | 2008-02-01 |
* | [SELinux]: Fix double free in selinux_netlbl_sock_setsid() | Paul Moore | 2008-01-31 |
* | security: compile capabilities by default | sergeh@us.ibm.com | 2008-01-29 |
* | selinux: make selinux_set_mnt_opts() static | Adrian Bunk | 2008-01-29 |
* | SELinux: Add warning messages on network denial due to error | Paul Moore | 2008-01-29 |
* | SELinux: Add network ingress and egress control permission checks | Paul Moore | 2008-01-29 |
* | SELinux: Allow NetLabel to directly cache SIDs | Paul Moore | 2008-01-29 |
* | SELinux: Enable dynamic enable/disable of the network access checks | Paul Moore | 2008-01-29 |
* | SELinux: Better integration between peer labeling subsystems | Paul Moore | 2008-01-29 |
* | SELinux: Add a new peer class and permissions to the Flask definitions | Paul Moore | 2008-01-29 |
* | SELinux: Add a capabilities bitmap to SELinux policy version 22 | Paul Moore | 2008-01-29 |
* | SELinux: Add a network node caching mechanism similar to the sel_netif_*() fu... | Paul Moore | 2008-01-29 |
* | SELinux: Only store the network interface's ifindex | Paul Moore | 2008-01-29 |
* | SELinux: Convert the netif code to use ifindex values | Paul Moore | 2008-01-29 |
* | NetLabel: Add IP address family information to the netlbl_skbuff_getattr() fu... | Paul Moore | 2008-01-29 |
* | NetLabel: Add secid token support to the NetLabel secattr struct | Paul Moore | 2008-01-29 |
* | [NETFILTER]: Introduce NF_INET_ hook values | Patrick McHardy | 2008-01-28 |
* | selinux: fix labeling of /proc/net inodes | Stephen Smalley | 2008-01-25 |
* | Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo... | Linus Torvalds | 2008-01-25 |
|\ |
|
| * | selinux: make mls_compute_sid always polyinstantiate | Eamon Walsh | 2008-01-24 |
| * | security/selinux: constify function pointer tables and fields | Jan Engelhardt | 2008-01-24 |
| * | security: add a secctx_to_secid() hook | David Howells | 2008-01-24 |
| * | security: remove security_sb_post_mountroot hook | H. Peter Anvin | 2008-01-24 |
| * | Security: add get, set, and cloning of superblock security information | Eric Paris | 2008-01-24 |