aboutsummaryrefslogtreecommitdiffstats
path: root/security/apparmor/include/policy.h (follow)
AgeCommit message (Expand)AuthorFilesLines
2025-07-20apparmor: transition from a list of rules to a vector of rulesJohn Johansen1-13/+3
2025-05-25apparmor: Document that label must be last member in struct aa_profileJohn Johansen1-1/+8
2025-01-18apparmor: gate make fine grained unix mediation behind v9 abiJohn Johansen1-1/+17
2025-01-18apparmor: add fine grained af_unix mediationJohn Johansen1-7/+2
2025-01-18apparmor: add support for profiles to define the kill signalJohn Johansen1-0/+1
2025-01-18apparmor: add additional flags to extended permission.John Johansen1-1/+6
2025-01-18apparmor: carry mediation check on labelJohn Johansen1-0/+13
2024-11-26apparmor: Remove deadcodeDr. David Alan Gilbert1-1/+0
2023-10-18apparmor: allow restricting unprivileged change_profileJohn Johansen1-0/+1
2023-10-18apparmor: refcount the pdbJohn Johansen1-12/+37
2023-10-18apparmor: pass cred through to audit info.John Johansen1-3/+6
2023-08-08apparmor: remove unused PROF_* macrosGONG, Ruiqi1-3/+0
2023-08-08apparmor: cleanup unused declarations in policy.hXiu Jianfeng1-6/+0
2022-10-24apparmor: refactor code that alloc null profilesJohn Johansen1-2/+4
2022-10-03apparmor: rework profile->rules to be a listJohn Johansen1-1/+16
2022-10-03apparmor: refactor profile rules and attachmentsJohn Johansen1-33/+51
2022-10-03apparmor: add the ability for policy to specify a permission tableJohn Johansen1-1/+4
2022-10-03apparmor: add user mode flagJohn Johansen1-0/+3
2022-10-03apparmor: extend permissions to support a label and tag stringJohn Johansen1-2/+4
2022-10-03apparmor: preparse for state being more than just an integerJohn Johansen1-7/+7
2022-10-03apparmor: convert policy lookup to use accept as an indexJohn Johansen1-0/+12
2022-10-03apparmor: convert xmatch to using the new shared policydb structJohn Johansen1-3/+1
2022-10-03apparmor: combine file_rules and aa_policydb into a single shared structJohn Johansen1-3/+11
2022-10-03apparmor: compute policydb permission on profile loadJohn Johansen1-0/+1
2022-10-03apparmor: convert xmatch to use aa_perms structureJohn Johansen1-1/+2
2022-10-03apparmor: compute xmatch permissions on profile loadMike Salvatore1-0/+2
2022-07-19apparmor: allow label to carry debug flagsJohn Johansen1-0/+4
2022-07-19apparmor: fix overlapping attachment computationJohn Johansen1-1/+1
2021-02-07apparmor: update policy capable checks to use a labelJohn Johansen1-2/+4
2019-06-18apparmor: fix PROFILE_MEDIATES for untrusted inputJohn Johansen1-1/+10
2019-06-05treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 441Thomas Gleixner1-5/+1
2018-10-03apparmor: Parse secmark policyMatthew Garrett1-0/+3
2018-03-13apparmor: remove POLICY_MEDIATES_SAFEJohn Johansen1-11/+1
2018-03-13apparmor: add base infastructure for socket mediationJohn Johansen1-0/+11
2018-02-09apparmor: convert attaching profiles via xattrs to use dfa matchingJohn Johansen1-2/+0
2018-02-09apparmor: Add support for attaching profiles via xattr, presence and valueMatthew Garrett1-0/+6
2017-10-26Revert "apparmor: add base infastructure for socket mediation"Linus Torvalds1-13/+0
2017-09-22apparmor: add base infastructure for socket mediationJohn Johansen1-0/+13
2017-06-10apparmor: switch from profiles to using labels on contextsJohn Johansen1-78/+32
2017-06-10apparmor: add fn to test if profile supports a given mediation classJohn Johansen1-0/+10
2017-06-10apparmor: provide finer control over policy managementJohn Johansen1-2/+6
2017-06-08apparmor: move permissions into their own file to be more easily sharedJohn Johansen1-0/+1
2017-06-08apparmor: allow profiles to provide info to disconnected pathsJohn Johansen1-0/+2
2017-02-21Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-securityLinus Torvalds1-142/+57
2017-01-16apparmor: support querying extended trusted helper extra dataWilliam Hua1-0/+16
2017-01-16apparmor: change op from int to const char *John Johansen1-1/+2
2017-01-16apparmor: pass the subject profile into profile replace/removeJohn Johansen1-3/+4
2017-01-16apparmor: allow introspecting the loaded policy pre internal transformJohn Johansen1-2/+3
2017-01-16apparmor: add profile and ns params to aa_may_manage_policy()John Johansen1-1/+1
2017-01-16apparmor: add ns being viewed as a param to policy_admin_capable()John Johansen1-1/+1