summaryrefslogtreecommitdiffstats
path: root/security/integrity/evm/evm_main.c
AgeCommit message (Expand)AuthorFilesLines
2018-03-25evm: check for remount ro in progress before writingSascha Hauer1-2/+6
2018-03-23evm: Constify *integrity_status_msg[]Hernán Gonzalez1-1/+1
2018-03-23evm: Move evm_hmac and evm_hash from evm_main.c to evm_crypto.cHernán Gonzalez1-2/+0
2017-12-11EVM: Add support for portable signature formatMatthew Garrett1-10/+19
2017-12-11EVM: Allow userland to permit modification of EVM-protected metadataMatthew Garrett1-7/+31
2017-11-08EVM: Include security.apparmor in EVM measurementsMatthew Garrett1-0/+3
2017-03-02sched/headers: Prepare to remove the <linux/magic.h> include from <linux/sche...Ingo Molnar1-0/+2
2016-11-13security/integrity: Harden against malformed xattrsSeth Forshee1-0/+4
2016-10-07xattr: Add __vfs_{get,set,remove}xattr helpersAndreas Gruenbacher1-2/+2
2016-04-11->getxattr(): pass dentry and inode as separate argumentsAl Viro1-1/+1
2016-04-10don't bother with ->d_inode->i_sb - it's always equal to ->d_sbAl Viro1-2/+2
2016-02-12EVM: Use crypto_memneq() for digest comparisonsRyan Ware1-1/+2
2015-12-15evm: reset EVM status when file attributes changeDmitry Kasatkin1-0/+13
2015-12-15evm: enable EVM when X509 certificate is loadedDmitry Kasatkin1-1/+5
2015-12-15evm: load an x509 certificate from the kernelDmitry Kasatkin1-0/+7
2015-11-23integrity: define '.evm' as a builtin 'trusted' keyringDmitry Kasatkin1-3/+5
2015-05-21evm: fix potential race when removing xattrsDmitry Kasatkin1-4/+3
2015-05-21evm: labeling pseudo filesystems exceptionMimi Zohar1-0/+11
2015-04-15VFS: security/: d_backing_inode() annotationsDavid Howells1-9/+9
2014-12-14Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds1-3/+8
2014-10-28evm: check xattr value length and type in evm_inode_setxattr()Dmitry Kasatkin1-3/+6
2014-10-07evm: skip replacing EVM signature with HMAC on read-only filesystemDmitry Kasatkin1-3/+8
2014-09-09evm: properly handle INTEGRITY_NOXATTRS EVM statusDmitry Kasatkin1-0/+7
2014-09-08evm: prevent passing integrity check if xattr read failsDmitry Kasatkin1-3/+4
2014-09-02evm: fix checkpatch warningsDmitry Kasatkin1-3/+0
2014-06-12evm: prohibit userspace writing 'security.evm' HMAC valueMimi Zohar1-2/+10
2014-06-12evm: provide option to protect additional SMACK xattrsDmitry Kasatkin1-0/+5
2014-06-12evm: replace HMAC version with attribute maskDmitry Kasatkin1-1/+11
2014-04-12Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/vir...Linus Torvalds1-1/+1
2014-04-01get rid of pointless checks for NULL ->i_opAl Viro1-1/+1
2014-03-07security: integrity: Use a more current logging styleJoe Perches1-2/+4
2013-10-25ima: pass full xattr with the signatureDmitry Kasatkin1-2/+2
2013-07-25xattr: Constify ->name member of "struct xattr".Tetsuo Handa1-1/+1
2013-06-20evm: audit integrity metadata failuresMimi Zohar1-1/+14
2013-02-06evm: add file system uuid to EVM hmacDmitry Kasatkin1-0/+1
2013-01-16evm: remove unused cleanup functionsDmitry Kasatkin1-9/+0
2012-09-07ima: integrity appraisal extensionMimi Zohar1-0/+3
2011-11-09evm: digital signature verification supportDmitry Kasatkin1-13/+81
2011-09-14evm: permit mode bits to be updatedMimi Zohar1-17/+13
2011-09-14evm: posix acls modify i_modeMimi Zohar1-5/+19
2011-09-14evm: limit verifying current security.evm integrityMimi Zohar1-34/+24
2011-08-11evm: fix evm_inode_init_security return codeMimi Zohar1-1/+1
2011-07-18evm: add evm_inode_setattr to prevent updating an invalid security.evmMimi Zohar1-0/+15
2011-07-18evm: permit only valid security.evm xattrs to be updatedMimi Zohar1-14/+63
2011-07-18evm: replace hmac_status with evm_statusDmitry Kasatkin1-7/+7
2011-07-18evm: evm_verify_hmac must not return INTEGRITY_UNKNOWNDmitry Kasatkin1-6/+5
2011-07-18evm: additional parameter to pass integrity cache entry 'iint'Dmitry Kasatkin1-10/+8
2011-07-18evm: crypto hash replaced by shashDmitry Kasatkin1-3/+3
2011-07-18evm: add evm_inode_init_security to initialize new filesMimi Zohar1-0/+38
2011-07-18security: imbed evm calls in security hooksMimi Zohar1-0/+1