1. bd35db8 apparmor: internal paths should be treated as disconnected by John Johansen · 10 years ago
  2. f2e561d apparmor: fix disconnected bind mnts reconnection by John Johansen · 10 years ago
  3. d671e890 apparmor: fix update the mtime of the profile file on replacement by John Johansen · 10 years ago
  4. 9049a79 apparmor: exec should not be returning ENOENT when it denies by John Johansen · 10 years ago
  5. b6b1b81 apparmor: fix uninitialized lsm_audit member by John Johansen · 10 years ago
  6. ec34fa2 apparmor: fix replacement bug that adds new child to old parent by John Johansen · 8 years ago
  7. dcda617 apparmor: fix refcount bug in profile replacement by John Johansen · 8 years ago
  8. e1e5fa9 Merge tag 'keys-misc-20160708' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs into next by James Morris · 8 years ago
  9. c632809 Merge branch 'smack-for-4.8' of https://github.com/cschaufler/smack-next into next by James Morris · 8 years ago
  10. 30a46a4 apparmor: fix oops, validate buffer size in apparmor_setprocattr() by Vegard Nossum · 8 years ago
  11. d011a4d Merge branch 'stable-4.8' of git://git.infradead.org/users/pcmoore/selinux into next by James Morris · 8 years ago
  12. 0b3c976 evm: Translate user/group ids relative to s_user_ns when computing HMAC by Seth Forshee · 9 years ago
  13. b223f4e2 Merge branch 'd_real' of git://git.kernel.org/pub/scm/linux/kernel/git/mszeredi/vfs into work.misc by Al Viro · 8 years ago
  14. 544e1ce ima: extend the measurement entry specific pcr by Eric Richter · 8 years ago
  15. a422638 ima: change integrity cache to store measured pcr by Eric Richter · 8 years ago
  16. 67696f6 ima: redefine duplicate template entries by Eric Richter · 8 years ago
  17. 5f6f027 ima: change ima_measurements_show() to display the entry specific pcr by Eric Richter · 8 years ago
  18. 14b1da8 ima: include pcr for each measurement log entry by Eric Richter · 8 years ago
  19. 725de7f ima: extend ima_get_action() to return the policy pcr by Eric Richter · 8 years ago
  20. 0260643 ima: add policy support for extending different pcrs by Eric Richter · 8 years ago
  21. 96d450b integrity: add measured_pcrs field to integrity cache by Eric Richter · 8 years ago
  22. 4fee524 calipso: Add a label cache. by Huw Davies · 8 years ago
  23. a04e71f netlabel: Pass a family parameter to netlbl_skbuff_err(). by Huw Davies · 8 years ago
  24. 2917f57 calipso: Allow the lsm to label the skbuff directly. by Huw Davies · 8 years ago
  25. e1adea9 calipso: Allow request sockets to be relabelled by the lsm. by Huw Davies · 8 years ago
  26. 1f440c9 netlabel: Prevent setsockopt() from changing the hop-by-hop option. by Huw Davies · 8 years ago
  27. ceba183 calipso: Set the calipso socket label to match the secattr. by Huw Davies · 8 years ago
  28. aad8289 selinux: Add support for unprivileged mounts from user namespaces by Seth Forshee · 8 years ago
  29. 809c02e Smack: Handle labels consistently in untrusted mounts by Seth Forshee · 8 years ago
  30. 9f50eda Smack: Add support for unprivileged mounts from user namespaces by Seth Forshee · 9 years ago
  31. 380cf5b fs: Treat foreign mounts as nosuid by Andy Lutomirski · 8 years ago
  32. d07b846 fs: Limit file caps to the user namespace of the super block by Seth Forshee · 9 years ago
  33. d56d72c KEYS: Use skcipher for big keys by Herbert Xu · 8 years ago
  34. 3832742 KEYS: potential uninitialized variable by Dan Carpenter · 8 years ago
  35. 309c5fa selinux: fix type mismatch by Heinrich Schuchardt · 8 years ago
  36. 965475a KEYS: Strip trailing spaces by David Howells · 8 years ago
  37. 8387ff2 vfs: make the string hashes salt the hash by Linus Torvalds · 8 years ago
  38. 8bebe88 selinux: import NetLabel category bitmaps correctly by Paul Moore · 8 years ago
  39. 18d872f Smack: ignore null signal in smack_task_kill by Rafal Krypa · 8 years ago
  40. 40d2737 security: tomoyo: simplify the gc kthread creation by Mike Danese · 8 years ago
  41. 2885c1e LSM: Fix for security_inode_getsecurity and -EOPNOTSUPP by Casey Schaufler · 8 years ago
  42. 4693fc7 KEYS: Add placeholder for KDF usage with DH by Stephan Mueller · 8 years ago
  43. 7ea5920 selinux: Only apply bounds checking to source types by Stephen Smalley · 8 years ago
  44. 4093d30 securityfs: ->d_parent is never NULL or negative by Al Viro · 8 years ago
  45. 07a8e62 drbd: ->d_parent is never NULL or negative by Al Viro · 8 years ago
  46. d102a56 Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  47. 3767e25 switch ->setxattr() to passing dentry and inode separately by Al Viro · 8 years ago
  48. dca6b41 Yama: fix double-spinlock and user access in atomic context by Jann Horn · 8 years ago
  49. b8b5727 security/integrity/ima/ima_policy.c: use %pU to output UUID in printable format by Andy Shevchenko · 8 years ago
  50. f4f27d0 Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 8 years ago
  51. a7fd20d Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next by Linus Torvalds · 8 years ago
  52. c52b761 Merge branch 'work.const-path' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  53. 7f427d3 Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  54. 91e8d0c Merge branch 'timers-core-for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip by Linus Torvalds · 8 years ago
  55. b937190 LSM: LoadPin: provide enablement CONFIG by Kees Cook · 8 years ago
  56. 0e0162b Merge branch 'ovl-fixes' into for-linus by Al Viro · 8 years ago
  57. e800072 Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net by David S. Miller · 8 years ago
  58. a6926cc Merge branch 'stable-4.7' of git://git.infradead.org/users/pcmoore/selinux into next by James Morris · 8 years ago
  59. 0250abc Merge tag 'keys-next-20160505' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs into next by James Morris · 8 years ago
  60. 74f430c Yama: use atomic allocations when reporting by Sasha Levin · 8 years ago
  61. d55201c Merge branch 'keys-trust' into keys-next by David Howells · 8 years ago
  62. cf90ea9 ima: fix the string representation of the LSM/IMA hook enumeration ordering by Mimi Zohar · 8 years ago
  63. 05d1a71 ima: add support for creating files using the mknodat syscall by Mimi Zohar · 8 years ago
  64. 42a4c60 ima: fix ima_inode_post_setattr by Mimi Zohar · 8 years ago
  65. c2316db selinux: apply execstack check on thread stacks by Stephen Smalley · 8 years ago
  66. 8e4ff6f selinux: distinguish non-init user namespace capability checks by Stephen Smalley · 8 years ago
  67. 457db29 security: Introduce security_settime64() by Baolin Wang · 8 years ago
  68. 9b09155 LSM: LoadPin for kernel file loading restrictions by Kees Cook · 8 years ago
  69. 8a56038 Yama: consolidate error reporting by Kees Cook · 8 years ago
  70. 10c9ead rtnetlink: add new RTM_GETSTATS message to dump link stats by Roopa Prabhu · 8 years ago
  71. 1ac42476 selinux: check ss_initialized before revalidating an inode label by Paul Moore · 8 years ago
  72. 20cdef8 selinux: delay inode label lookup as long as possible by Paul Moore · 8 years ago
  73. 2c97165 selinux: don't revalidate an inode's label when explicitly setting it by Paul Moore · 8 years ago
  74. 0fd71a6 selinux: Change bool variable name to index. by Prarit Bhargava · 8 years ago
  75. ddbb411 KEYS: Add KEYCTL_DH_COMPUTE command by Mat Martineau · 8 years ago
  76. 13100a7 Security: Keys: Big keys stored encrypted by Kirill Marinushkin · 8 years ago
  77. 898de7d KEYS: user_update should use copy of payload made during preparsing by David Howells · 8 years ago
  78. 93da17b security: integrity: Remove select to deleted option PUBLIC_KEY_ALGO_RSA by Andreas Ziegler · 8 years ago
  79. 56104cf IMA: Use the the system trusted keyrings instead of .ima_mok by David Howells · 8 years ago
  80. 77f68ba KEYS: Remove KEY_FLAG_TRUSTED and KEY_ALLOC_TRUSTED by David Howells · 8 years ago
  81. a511e1a KEYS: Move the point of trust determination to __key_link() by David Howells · 8 years ago
  82. 5ac7eac KEYS: Add a facility to restrict new links into a keyring by David Howells · 8 years ago
  83. ce23e64 ->getxattr(): pass dentry and inode as separate arguments by Al Viro · 8 years ago
  84. 3c9d629 security: drop the unused hook skb_owned_by by Paolo Abeni · 8 years ago
  85. fc64005 don't bother with ->d_inode->i_sb - it's always equal to ->d_sb by Al Viro · 8 years ago
  86. 61d612ea selinux: restrict kernel module loading by Jeff Vander Stoep · 8 years ago
  87. 0c6181c selinux: consolidate the ptrace parent lookup code by Paul Moore · 8 years ago
  88. 4b57d6b selinux: simply inode label states to INVALID and INITIALIZED by Paul Moore · 8 years ago
  89. 899134f selinux: don't revalidate inodes in selinux_socket_getpeersec_dgram() by Paul Moore · 8 years ago
  90. 81cd889 constify ima_d_path() by Al Viro · 8 years ago
  91. 3b73b68 constify security_sb_pivotroot() by Al Viro · 8 years ago
  92. 77b286c constify security_path_chroot() by Al Viro · 8 years ago
  93. 3ccee46 constify security_path_{link,rename} by Al Viro · 8 years ago
  94. 8db0185 apparmor: remove useless checks for NULL ->mnt by Al Viro · 8 years ago
  95. d360775 constify security_path_{mkdir,mknod,symlink} by Al Viro · 8 years ago
  96. 989f74e constify security_path_{unlink,rmdir} by Al Viro · 8 years ago
  97. d6b49f7 apparmor: constify common_perm_...() by Al Viro · 8 years ago
  98. 3539aaf apparmor: constify aa_path_link() by Al Viro · 8 years ago
  99. 741aca7 apparmor: new helper - common_path_perm() by Al Viro · 8 years ago
  100. be01f9f constify chmod_common/security_path_chmod by Al Viro · 8 years ago