summaryrefslogtreecommitdiffstats
path: root/security/selinux/include
AgeCommit message (Expand)AuthorFilesLines
2017-09-12Merge tag 'selinux-pr-20170831' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds5-4/+8
2017-08-17selinux: update my email addressStephen Smalley4-4/+4
2017-08-02selinux: Generalize support for NNP/nosuid SELinux domain transitionsStephen Smalley2-0/+4
2017-07-18xfrm: remove flow cacheFlorian Westphal1-3/+1
2017-05-23selinux: Add a cache for quicker retreival of PKey SIDsDaniel Jurgens2-0/+37
2017-05-23selinux: Add IB Port SMP access vectorDaniel Jurgens2-0/+4
2017-05-23selinux: Implement Infiniband PKey "Access" access vectorDaniel Jurgens2-0/+4
2017-05-23selinux: Allocate and free infiniband security hooksDaniel Jurgens1-0/+5
2017-05-23selinux: Create policydb version for Infiniband supportDaniel Jurgens1-1/+2
2017-05-23selinux: log policy capability state when a policy is loadedStephen Smalley1-0/+2
2017-05-23selinux: add a map permission check for mmapStephen Smalley1-1/+1
2017-03-06prlimit,security,selinux: add a security hook for prlimitStephen Smalley1-1/+1
2017-03-02selinux: wrap cgroup seclabel support with its own policy capabilityStephen Smalley1-0/+2
2017-02-22Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-nextLinus Torvalds1-1/+3
2017-01-12selinux: drop unused socket security classesStephen Smalley1-6/+0
2017-01-09selinux: clean up cred usage and simplifyStephen Smalley1-0/+10
2017-01-09selinux: support distinctions among all network address familiesStephen Smalley2-1/+70
2016-12-21selinux: use the kernel headers when building scripts/selinuxPaul Moore1-0/+2
2016-11-22selinux: Convert isec->lock into a spinlockAndreas Gruenbacher1-2/+3
2016-11-21selinux: keep SELinux in sync with new capability definitionsStephen Smalley1-0/+4
2016-08-18selinux: drop SECURITY_SELINUX_POLICYDB_VERSION_MAXWilliam Roberts1-4/+0
2016-06-27netlabel: Pass a family parameter to netlbl_skbuff_err().Huw Davies1-1/+3
2016-04-26selinux: distinguish non-init user namespace capability checksStephen Smalley1-10/+18
2016-04-14selinux: Change bool variable name to index.Prarit Bhargava1-1/+1
2016-04-05selinux: restrict kernel module loadingJeff Vander Stoep1-1/+1
2016-04-05selinux: simply inode label states to INVALID and INITIALIZEDPaul Moore1-3/+2
2015-12-24selinux: export validatetrans decisionsAndrew Perepechko2-1/+4
2015-12-24security: Add hook to invalidate inode security labelsAndreas Gruenbacher1-0/+6
2015-10-21selinux: introduce security_context_str_to_sidRasmus Villemoes1-0/+2
2015-08-15Merge branch 'next' of git://git.infradead.org/users/pcmoore/selinux into nextJames Morris2-2/+36
2015-07-13selinux: extended permissions for ioctlsJeff Vander Stoep2-2/+36
2015-06-27Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds2-20/+25
2015-06-04selinux: Remove unused permission definitionsStephen Smalley1-14/+8
2015-06-04selinux: enable per-file labeling for debugfs files.Stephen Smalley1-0/+1
2015-06-04selinux: update netlink socket classesStephen Smalley1-6/+16
2015-05-11security/selinux: pass 'flags' arg to avc_audit() and avc_has_perm_flags()NeilBrown1-2/+7
2015-01-25Add security hooks to binder and implement the hooks for SELinux.Stephen Smalley1-0/+2
2014-09-10selinux: make the netif cache namespace awarePaul Moore2-1/+5
2014-08-05Merge tag 'v3.16' into nextPaul Moore1-1/+1
2014-06-26selinux: reduce the number of calls to synchronize_net() when flushing cachesPaul Moore3-0/+6
2014-06-18security: Used macros from compiler.h instead of __attribute__((...))Gideon Israel Dsouza1-1/+2
2014-06-17Merge tag 'v3.15' into nextPaul Moore1-2/+3
2014-06-12Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-nextLinus Torvalds1-1/+1
2014-06-10Merge branch 'serge-next-1' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds1-2/+2
2014-06-03selinux: Report permissive mode in avc: denied messages.Stephen Smalley1-2/+2
2014-05-01selinux: Report permissive mode in avc: denied messages.Stephen Smalley1-2/+2
2014-04-22audit: add netlink audit protocol bind to check capabilities on multicast joinRichard Guy Briggs1-1/+1
2014-03-25Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2-2/+3
2014-03-10selinux: add gfp argument to security_xfrm_policy_alloc and fix callersNikolay Aleksandrov2-2/+3
2014-02-12flowcache: Make flow cache name space awareFan Du1-2/+3