aboutsummaryrefslogtreecommitdiffstats
path: root/security/apparmor/include (follow)
AgeCommit message (Expand)AuthorFilesLines
2018-10-03apparmor: Parse secmark policyMatthew Garrett2-0/+13
2018-10-03apparmor: Add a wildcard secidMatthew Garrett1-0/+3
2018-09-13apparmor: don't try to replace stale label in ptrace access checkJann Horn1-0/+2
2018-07-19apparmor: Check buffer bounds when mapping permissions maskTyler Hicks1-1/+2
2018-06-07apparmor: fixup secid map conversion to using IDRJohn Johansen1-1/+3
2018-06-07apparmor: Add support for audit rule filteringMatthew Garrett1-0/+6
2018-06-07apparmor: improve get_buffers macro by using get_cpu_ptrJohn Johansen1-17/+16
2018-05-02apparmor: add support for mapping secids and using secctxesJohn Johansen2-4/+13
2018-04-13Merge tag 'apparmor-pr-2018-04-10' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmorLinus Torvalds11-77/+299
2018-03-28macro: introduce COUNT_ARGS() macroAlexei Starovoitov1-6/+1
2018-03-13apparmor: remove POLICY_MEDIATES_SAFEJohn Johansen1-11/+1
2018-03-13apparmor: add base infastructure for socket mediationJohn Johansen5-3/+128
2018-02-09apparmor: improve overlapping domain attachment resolutionJohn Johansen1-0/+19
2018-02-09apparmor: convert attaching profiles via xattrs to use dfa matchingJohn Johansen1-2/+0
2018-02-09apparmor: Add support for attaching profiles via xattr, presence and valueMatthew Garrett1-0/+6
2018-02-09apparmor: dfa add support for state differential encodingJohn Johansen1-0/+4
2018-02-09apparmor: update domain transitions that are subsets of confinement at nnpJohn Johansen1-0/+4
2018-02-09apparmor: move context.h to cred.hJohn Johansen1-0/+0
2018-02-09apparmor: move task related defines and fns to task.X filesJohn Johansen2-39/+91
2018-02-09apparmor: cleanup, drop unused fn __aa_task_is_confined()John Johansen1-11/+0
2018-02-09apparmor: drop cred_ctx and reference the label directlyJohn Johansen1-19/+5
2018-02-09apparmor: move task domain change info to task securityJohn Johansen1-10/+21
2018-02-09apparmor: rename task_ctx to the more accurate cred_ctxJohn Johansen1-10/+9
2018-02-09apparmor: audit unknown signal numbersJohn Johansen2-1/+5
2018-02-09apparmor: provide a bounded version of label_parseJohn Johansen1-0/+3
2018-02-09apparmor: use the dfa to do label parse string splittingJohn Johansen2-0/+26
2018-02-09apparmor: add first substr match to dfaJohn Johansen1-0/+4
2018-02-09apparmor: split load data into management struct and data blobJohn Johansen1-1/+1
2018-02-09apparmor: fix logging of the existence test for signalsJohn Johansen1-1/+3
2018-02-09apparmor: fix resource audit messages when auditing peerJohn Johansen1-4/+4
2018-01-12apparmor: fix ptrace label match when matching stacked labelsJohn Johansen1-0/+3
2017-11-30Merge tag 'apparmor-pr-2017-11-30' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmorLinus Torvalds1-5/+7
2017-11-27apparmor: fix oops in audit_signal_cb hookJohn Johansen1-5/+7
2017-11-27Rename superblock flags (MS_xyz -> SB_xyz)Linus Torvalds1-1/+1
2017-11-07Merge branch 'linus' into locking/core, to resolve conflictsIngo Molnar4-147/+11
2017-10-26Revert "apparmor: add base infastructure for socket mediation"Linus Torvalds4-147/+11
2017-10-10locking/rwsem, security/apparmor: Replace homebrew use of write_can_lock() with lockdepWill Deacon1-11/+0
2017-09-23Merge tag 'apparmor-pr-2017-09-22' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmorLinus Torvalds10-11/+326
2017-09-22apparmor: fix build failure on sparc caused by undeclared signalsJohn Johansen1-1/+4
2017-09-22apparmor: add base infastructure for socket mediationJohn Johansen4-11/+147
2017-09-22apparmor: make policy_unpack able to audit different info messagesJohn Johansen1-2/+2
2017-09-22apparmor: add support for absolute root view based labelsJohn Johansen1-0/+1
2017-09-22apparmor: add mount mediationJohn Johansen4-0/+71
2017-09-22apparmor: add the ability to mediate signalsJohn Johansen4-0/+104
2017-08-01apparmor: Refactor to remove bprm_secureexec hookKees Cook2-4/+0
2017-06-10apparmor: add domain label stacking info to apparmorfsJohn Johansen2-0/+3
2017-06-10apparmor: move exec domain mediation to using labelsJohn Johansen1-1/+86
2017-06-10apparmor: mediate files when they are receivedJohn Johansen1-0/+1
2017-06-10apparmor: move path_link mediation to using labelsJohn Johansen1-1/+1
2017-06-10apparmor: refactor path name lookup and permission checks around labelsJohn Johansen1-1/+4