summaryrefslogtreecommitdiffstats
path: root/security/selinux/include
AgeCommit message (Expand)AuthorFilesLines
2017-01-12selinux: drop unused socket security classesStephen Smalley1-6/+0
2017-01-09selinux: clean up cred usage and simplifyStephen Smalley1-0/+10
2017-01-09selinux: support distinctions among all network address familiesStephen Smalley2-1/+70
2016-12-21selinux: use the kernel headers when building scripts/selinuxPaul Moore1-0/+2
2016-11-22selinux: Convert isec->lock into a spinlockAndreas Gruenbacher1-2/+3
2016-11-21selinux: keep SELinux in sync with new capability definitionsStephen Smalley1-0/+4
2016-08-18selinux: drop SECURITY_SELINUX_POLICYDB_VERSION_MAXWilliam Roberts1-4/+0
2016-06-27netlabel: Pass a family parameter to netlbl_skbuff_err().Huw Davies1-1/+3
2016-04-26selinux: distinguish non-init user namespace capability checksStephen Smalley1-10/+18
2016-04-14selinux: Change bool variable name to index.Prarit Bhargava1-1/+1
2016-04-05selinux: restrict kernel module loadingJeff Vander Stoep1-1/+1
2016-04-05selinux: simply inode label states to INVALID and INITIALIZEDPaul Moore1-3/+2
2015-12-24selinux: export validatetrans decisionsAndrew Perepechko2-1/+4
2015-12-24security: Add hook to invalidate inode security labelsAndreas Gruenbacher1-0/+6
2015-10-21selinux: introduce security_context_str_to_sidRasmus Villemoes1-0/+2
2015-08-15Merge branch 'next' of git://git.infradead.org/users/pcmoore/selinux into nextJames Morris2-2/+36
2015-07-13selinux: extended permissions for ioctlsJeff Vander Stoep2-2/+36
2015-06-27Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds2-20/+25
2015-06-04selinux: Remove unused permission definitionsStephen Smalley1-14/+8
2015-06-04selinux: enable per-file labeling for debugfs files.Stephen Smalley1-0/+1
2015-06-04selinux: update netlink socket classesStephen Smalley1-6/+16
2015-05-11security/selinux: pass 'flags' arg to avc_audit() and avc_has_perm_flags()NeilBrown1-2/+7
2015-01-25Add security hooks to binder and implement the hooks for SELinux.Stephen Smalley1-0/+2
2014-09-10selinux: make the netif cache namespace awarePaul Moore2-1/+5
2014-08-05Merge tag 'v3.16' into nextPaul Moore1-1/+1
2014-06-26selinux: reduce the number of calls to synchronize_net() when flushing cachesPaul Moore3-0/+6
2014-06-18security: Used macros from compiler.h instead of __attribute__((...))Gideon Israel Dsouza1-1/+2
2014-06-17Merge tag 'v3.15' into nextPaul Moore1-2/+3
2014-06-12Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-nextLinus Torvalds1-1/+1
2014-06-10Merge branch 'serge-next-1' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds1-2/+2
2014-06-03selinux: Report permissive mode in avc: denied messages.Stephen Smalley1-2/+2
2014-05-01selinux: Report permissive mode in avc: denied messages.Stephen Smalley1-2/+2
2014-04-22audit: add netlink audit protocol bind to check capabilities on multicast joinRichard Guy Briggs1-1/+1
2014-03-25Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2-2/+3
2014-03-10selinux: add gfp argument to security_xfrm_policy_alloc and fix callersNikolay Aleksandrov2-2/+3
2014-02-12flowcache: Make flow cache name space awareFan Du1-2/+3
2014-01-21Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmo...Linus Torvalds1-1/+2
2014-01-12SELinux: Fix possible NULL pointer dereference in selinux_inode_permission()Steven Rostedt1-1/+4
2013-12-12selinux: look for IPsec labels on both inbound and outbound packetsPaul Moore1-3/+5
2013-12-09selinux: look for IPsec labels on both inbound and outbound packetsPaul Moore1-3/+5
2013-11-26Merge tag 'v3.12'Paul Moore2-14/+11
2013-11-19SELinux: Update policy version to support constraints infoRichard Haines1-1/+2
2013-11-08Merge tag 'v3.12'Paul Moore2-14/+11
2013-10-04selinux: remove 'flags' parameter from avc_audit()Linus Torvalds1-2/+2
2013-10-04selinux: avc_has_perm_flags has no more usersLinus Torvalds1-11/+3
2013-09-18Merge git://git.infradead.org/users/eparis/selinuxPaul Moore3-33/+29
2013-08-28Revert "SELinux: do not handle seclabel as a special flag"Eric Paris1-1/+1
2013-07-31net: split rt_genid for ipv4 and ipv6fan.du1-1/+6
2013-07-25Add SELinux policy capability for always checking packet and peer classes.Chris PeBenito1-0/+3
2013-07-25SELinux: pass a superblock to security_fs_useEric Paris1-2/+1