summaryrefslogtreecommitdiffstats
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2009-02-06integrity: IMA as an integrity service providerMimi Zohar13-1/+1430
2009-02-03securityfs: fix long-broken securityfs_create_file commentSerge E. Hallyn1-4/+3
2009-02-02selinux: remove hooks which simply defer to capabilitiesJames Morris1-58/+10
2009-01-30selinux: remove secondary ops call to shm_shmatJames Morris1-5/+0
2009-01-30selinux: remove secondary ops call to unix_stream_connectJames Morris1-4/+0
2009-01-30selinux: remove secondary ops call to task_killJames Morris1-4/+0
2009-01-30selinux: remove secondary ops call to task_setrlimitJames Morris1-5/+0
2009-01-30selinux: remove unused cred_commit hookJames Morris1-9/+0
2009-01-30selinux: remove secondary ops call to task_createJames Morris1-6/+0
2009-01-30selinux: remove secondary ops call to file_mprotectJames Morris1-6/+1
2009-01-30selinux: remove secondary ops call to inode_setattrJames Morris1-5/+0
2009-01-30selinux: remove secondary ops call to inode_permissionJames Morris1-5/+0
2009-01-30selinux: remove secondary ops call to inode_follow_linkJames Morris1-4/+0
2009-01-30selinux: remove secondary ops call to inode_mknodJames Morris1-6/+0
2009-01-30selinux: remove secondary ops call to inode_unlinkJames Morris1-5/+0
2009-01-30selinux: remove secondary ops call to inode_linkJames Morris1-5/+0
2009-01-30selinux: remove secondary ops call to sb_umountJames Morris1-5/+0
2009-01-30selinux: remove secondary ops call to sb_mountJames Morris1-5/+0
2009-01-30selinux: remove secondary ops call to bprm_committed_credsJames Morris1-2/+0
2009-01-30selinux: remove secondary ops call to bprm_committing_credsJames Morris1-2/+0
2009-01-30selinux: remove unused bprm_check_security hookJames Morris1-6/+0
2009-01-19SELinux: Unify context mount and genfs behaviorDavid P. Quigley1-4/+4
2009-01-19SELinux: Add new security mount option to indicate security label support.David P. Quigley2-5/+36
2009-01-19SELinux: Condense super block security structure flags and cleanup necessary ...David P. Quigley3-22/+24
2009-01-07CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #3]David Howells3-25/+46
2009-01-07Revert "CRED: Fix regression in cap_capable() as shown up by sys_faccessat() ...James Morris6-73/+23
2009-01-05SELinux: shrink sizeof av_inhert selinux_class_perm and contextEric Paris3-10/+12
2009-01-05CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #2]David Howells6-23/+73
2009-01-05Merge branch 'master' of git://git.infradead.org/users/pcmoore/lblnet-2.6_nex...James Morris7-230/+557
2009-01-01keys: fix sparse warning by adding __user annotation to castJames Morris1-1/+1
2008-12-31smack: Add support for unlabeled network hosts and networksCasey Schaufler4-195/+538
2008-12-31selinux: Deprecate and schedule the removal of the the compat_net functionalityPaul Moore3-38/+11
2008-12-31netlabel: Update kernel configuration APIPaul Moore1-5/+16
2008-12-29KEYS: Fix variable uninitialisation warningsDavid Howells1-3/+3
2008-12-29Merge branch 'next' into for-linusJames Morris1-4/+16
2008-12-28Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next-2.6Linus Torvalds2-4/+4
2008-12-25smackfs: check for allocation failures in smk_set_access()Sergio Luis1-4/+16
2008-12-20SELinux: don't check permissions for kernel mountsJames Morris1-0/+4
2008-12-20security: pass mount flags to security_sb_kern_mount()James Morris4-5/+6
2008-12-20SELinux: correctly detect proc filesystems of the form "proc/foo"Stephen Smalley1-1/+1
2008-11-25CRED: fix sparse warningsHannes Eder1-3/+3
2008-11-15capabilities: define get_vfs_caps_from_disk when file caps are not enabledEric Paris1-0/+6
2008-11-14CRED: Allow kernel services to override LSM settings for task actionsDavid Howells4-0/+105
2008-11-14CRED: Add a kernel_service object class to SELinuxDavid Howells4-0/+10
2008-11-14CRED: Differentiate objective and effective subjective credentials on a taskDavid Howells1-24/+41
2008-11-14CRED: Prettify commoncap.cDavid Howells1-52/+248
2008-11-14CRED: Make execve() take advantage of copy-on-write credentialsDavid Howells8-335/+214
2008-11-14CRED: Inaugurate COW credentialsDavid Howells14-630/+668
2008-11-14CRED: Pass credentials through dentry_open()David Howells3-9/+12
2008-11-14CRED: Make inode_has_perm() and file_has_perm() take a cred pointerDavid Howells1-48/+92