AgeCommit message (Expand)AuthorFilesLines
2007-07-11security: Protection for exploiting null dereference using mmapEric Paris4-0/+4
2007-07-11SELinux: allow preemption between transition permission checksStephen Smalley1-2/+4
2007-07-11selinux: add selinuxfs structure for object class discoveryChristopher J. PeBenito1-0/+1
2007-07-11selinux: add support for querying object classes and permissions from the running policyChristopher J. PeBenito1-0/+3
2007-04-26selinux: export initial SID contexts via selinuxfsJames Carter1-0/+2
2007-04-26selinux: remove userland security class and permission definitionsStephen Smalley4-314/+17
2007-04-26SELinux: move security_skb_extlbl_sid() out of the security serverPaul Moore1-3/+0
2007-04-26SELinux: rename selinux_netlabel.h to netlabel.hPaul Moore1-0/+0
2007-04-26SELinux: extract the NetLabel SELinux support from the security serverPaul Moore2-37/+58
2007-01-26[SELINUX]: Fix 2.6.20-rc6 build when no xfrmVenkat Yekkirala1-0/+9
2006-12-04[PATCH] selinux endianness annotationsAl Viro1-4/+4
2006-12-02Compile fix for "peer secid consolidation for external network labeling"James Morris1-1/+2
2006-12-02SELinux: peer secid consolidation for external network labelingPaul Moore3-24/+12
2006-12-02NetLabel: SELinux cleanupsPaul Moore2-8/+15
2006-12-02[SELinux]: Add support for DCCPJames Morris5-0/+45
2006-12-02SELinux: Fix SA selection semanticsVenkat Yekkirala1-5/+2
2006-12-02SELinux: Return correct context for SO_PEERSECVenkat Yekkirala1-6/+6
2006-12-02SELinux: Various xfrm labeling fixesVenkat Yekkirala1-2/+2
2006-11-28SELinux: export object class and permission definitionsChad Sellers1-0/+24
2006-10-30[NetLabel]: protect the CIPSOv4 socket option from setsockopt()Paul Moore1-0/+10
2006-10-11IPsec: correct semantics for SELinux policy matchingVenkat Yekkirala1-1/+2
2006-09-26[PATCH] SELinux: convert sbsec semaphore to a mutexEric Paris1-1/+1
2006-09-26[PATCH] SELinux: change isec semaphore to a mutexEric Paris1-1/+1
2006-09-26[PATCH] selinux: add support for range transitions on object classesDarrel Goeddel1-1/+2
2006-09-26[PATCH] selinux: enable configuration of max policy versionStephen Smalley1-1/+5
2006-09-22[NetLabel]: add some missing #includes to various header filesPaul Moore1-0/+9
2006-09-22[NetLabel]: uninline selinux_netlbl_inode_permission()Paul Moore1-34/+1
2006-09-22[NetLabel]: Correctly initialize the NetLabel fields.Paul Moore1-0/+18
2006-09-22[NetLabel]: SELinux supportVenkat Yekkirala2-0/+133
2006-09-22[MLSXFRM]: Fix build with SECURITY_NETWORK_XFRM disabled.Venkat Yekkirala1-1/+6
2006-09-22[MLSXFRM]: Default labeling of socket specific IPSec policiesVenkat Yekkirala1-1/+2
2006-09-22[MLSXFRM]: Add flow labelingVenkat Yekkirala1-13/+1
2006-09-22[MLSXFRM]: Flow based matching of xfrm policy and stateVenkat Yekkirala1-6/+17
2006-09-22[MLSXFRM]: Add security sid to sockVenkat Yekkirala1-0/+1
2006-09-22[MLSXFRM]: Define new SELinux service routineVenkat Yekkirala1-0/+2
2006-09-22[MLSXFRM]: Granular IPSec associations for use in MLS environmentsVenkat Yekkirala2-0/+2
2006-07-10[PATCH] SELinux: decouple fscontext/context mount optionsEric Paris1-1/+2
2006-06-26[PATCH] SELinux: Add sockcreate node to procattr APIEric Paris3-0/+3
2006-06-26[PATCH] keys: add a way to store the appropriate context for newly-created keysMichael LeMay3-1/+5
2006-06-22[PATCH] selinux: add hooks for key subsystemMichael LeMay5-0/+21
2006-06-17[SECMARK]: Add new packet controls to SELinuxJames Morris1-1/+1
2006-06-17[SECMARK]: Add new flask definitions to SELinuxJames Morris4-0/+8
2006-06-17[SELINUX]: add security class for appletalk socketsChristopher J. PeBenito4-0/+26
2006-06-17[LSM-IPsec]: SELinux AuthorizeCatherine Zhang1-0/+2
2006-05-03[PATCH] selinux: Clear selinux_enabled flag upon runtime disable.Stephen Smalley1-5/+0
2006-03-20[SELINUX]: selinux_socket_getpeer_{stream,dgram} fixupCatherine Zhang1-0/+10
2006-03-20[SECURITY]: TCP/UDP getpeersecCatherine Zhang1-0/+2
2006-02-01[PATCH] selinux: remove security struct magic number fields and testsStephen Smalley1-8/+0
2006-01-06[LSM-IPSec]: Corrections to LSM-IPSec NethooksTrent Jaeger2-4/+2
2006-01-03[LSM-IPSec]: Per-packet access control.Trent Jaeger3-0/+58