linux-security-module
Thread
Date
Earlier messages
Later messages
Messages by Thread
Re: [PATCH 08/26] Add a secctx_to_secid() LSM hook to go along with the existing
James Morris
Re: [PATCH 08/26] Add a secctx_to_secid() LSM hook to go along with the existing
Paul Moore
Re: [PATCH 08/26] Add a secctx_to_secid() LSM hook to go along with the existing
Casey Schaufler
Re: [PATCH 08/26] Add a secctx_to_secid() LSM hook to go along with the existing
James Morris
Re: [PATCH 08/26] Add a secctx_to_secid() LSM hook to go along with the existing
Paul Moore
[PATCH 16/26] CacheFiles: Add missing copy_page export for ia64
David Howells
[PATCH 17/26] CacheFiles: Be consistent about the use of mapping vs file->f_mapping in Ext3
David Howells
[PATCH 18/26] CacheFiles: Add a hook to write a single page of data to an inode
David Howells
[PATCH 20/26] CacheFiles: Export things for CacheFiles
David Howells
[PATCH 19/26] CacheFiles: Permit the page lock state to be monitored
David Howells
[PATCH 22/26] NFS: Fix memory leak
David Howells
[PATCH 23/26] NFS: Use local caching
David Howells
[PATCH 24/26] NFS: Configuration and mount option changes to enable local caching on NFS
David Howells
[PATCH 25/26] NFS: Display local caching state
David Howells
[PATCH 26/26] NFS: Separate caching by superblock, explicitly if necessary
David Howells
Re: [PATCH 00/26] Permit filesystem local caching
James Morris
Re: [PATCH 00/26] Permit filesystem local caching
James Morris
Re: [PATCH 00/26] Permit filesystem local caching
Kyle Moffett
Re: [PATCH 00/26] Permit filesystem local caching
David Howells
Re: [PATCH 00/26] Permit filesystem local caching
David Howells
[PATCH 06a/26] Extra task_struct -> task_security separation
David Howells
[PATCH 06b/26] Security: Make NFSD work with detached security
David Howells
Re: [PATCH 06b/26] Security: Make NFSD work with detached security
J. Bruce Fields
Re: [PATCH 06b/26] Security: Make NFSD work with detached security
David Howells
Re: [PATCH 06b/26] Security: Make NFSD work with detached security
David Howells
[PATCH][RFC] security: call security_file_permission from rw_verify_area
James Morris
[RFC PATCH] Adding prctl override support for LSMs
Andrew Morgan
Re: [RFC PATCH] Adding prctl override support for LSMs
Casey Schaufler
Re: [RFC PATCH] Adding prctl override support for LSMs
Stephen Smalley
Re: [RFC PATCH] Adding prctl override support for LSMs
Serge E. Hallyn
Re: [RFC PATCH] Adding prctl override support for LSMs
Andrew Morgan
Re: [RFC PATCH] Adding prctl override support for LSMs
James Morris
Re: [RFC PATCH] Adding prctl override support for LSMs
Stephen Smalley
Re: [RFC PATCH] Adding prctl override support for LSMs
Serge E. Hallyn
[TOMOYO #6 retry 00/21] TOMOYO Linux - MAC based on process invocation history.
Kentaro Takeda
[TOMOYO #6 retry 01/21] TOMOYO Linux documentation.
Kentaro Takeda
[TOMOYO #6 retry 02/21] Add struct vfsmount to struct task_struct.
Kentaro Takeda
Re: [TOMOYO #6 retry 02/21] Add struct vfsmount to struct task_struct.
Serge E. Hallyn
Re: [TOMOYO #6 retry 02/21] Add struct vfsmount to struct task_struct.
Kentaro Takeda
Re: [TOMOYO #6 retry 02/21] Add struct vfsmount to struct task_struct.
Serge E. Hallyn
Re: [TOMOYO #6 retry 02/21] Add struct vfsmount to struct task_struct.
Kentaro Takeda
[TOMOYO #6 retry 03/21] Add wrapper functions for VFS helper functions.
Kentaro Takeda
[TOMOYO #6 retry 04/21] Replace VFS with wrapper functions.
Kentaro Takeda
[TOMOYO #6 retry 05/21] Add packet filtering based on processs security context.
Kentaro Takeda
[TOMOYO #6 retry 06/21] Data structures and prototype defitions.
Kentaro Takeda
[TOMOYO #6 retry 07/21] Memory and pathname management functions.
Kentaro Takeda
[TOMOYO #6 retry 10/21] Auditing interface.
Kentaro Takeda
[TOMOYO #6 retry 12/21] argv0 check functions.
Kentaro Takeda
[TOMOYO #6 retry 09/21] Domain transition functions.
Kentaro Takeda
[TOMOYO #6 retry 11/21] File access control functions.
Kentaro Takeda
[TOMOYO #6 retry 13/21] environment variable name check functions.
Kentaro Takeda
[TOMOYO #6 retry 14/21] Network access control functions.
Kentaro Takeda
[TOMOYO #6 retry 15/21] Namespace manipulation control functions.
Kentaro Takeda
[TOMOYO #6 retry 16/21] Signal control functions.
Kentaro Takeda
[TOMOYO #6 retry 17/21] Capability access control functions.
Kentaro Takeda
[TOMOYO #6 retry 20/21] Kconfig and Makefile
Kentaro Takeda
[TOMOYO #6 retry 19/21] Conditional permission support.
Kentaro Takeda
[TOMOYO #6 retry 18/21] LSM adapter functions.
Kentaro Takeda
[TOMOYO #6 retry 21/21] Add signal hooks at sleepable location.
Kentaro Takeda
Re: [TOMOYO #6 retry 08/21] Utility functions and policy manipulation interface.
James Morris
Re: [TOMOYO #6 retry 08/21] Utility functions and policy manipulation interface.
James Morris
Re: [TOMOYO #6 retry 08/21] Utility functions and policy manipulationinterface.
Tetsuo Handa
Re: [TOMOYO #6 retry 08/21] Utility functions and policy manipulationinterface.
James Morris
Re: [TOMOYO #6 retry 08/21] Utility functions and policy manipulationinterface.
Greg KH
Re: [TOMOYO #6 retry 08/21] Utility functions and policymanipulationinterface.
Tetsuo Handa
Re: [TOMOYO #6 retry 08/21] Utility functions and policy manipulation interface.
Kentaro Takeda
[TOMOYO #6 00/21] TOMOYO Linux - MAC based on process invocation history.
Kentaro Takeda
[TOMOYO #6 02/21] Add struct vfsmount to struct task_struct.
Kentaro Takeda
Re: [TOMOYO #6 02/21] Add struct vfsmount to struct task_struct.
Christoph Hellwig
Re: [TOMOYO #6 02/21] Add struct vfsmount to struct task_struct.
Tetsuo Handa
[TOMOYO #6 20/21] Kconfig and Makefile
Kentaro Takeda
[TOMOYO #6 03/21] Add wrapper functions for VFS helper functions.
Kentaro Takeda
[TOMOYO #6 16/21] Signal control functions.
Kentaro Takeda
[TOMOYO #6 04/21] Replace VFS with wrapper functions.
Kentaro Takeda
[TOMOYO #6 10/21] Auditing interface.
Kentaro Takeda
[TOMOYO #6 17/21] Capability access control functions.
Kentaro Takeda
[TOMOYO #6 07/21] Memory and pathname management functions.
Kentaro Takeda
[TOMOYO #6 19/21] Conditional permission support.
Kentaro Takeda
[TOMOYO #6 12/21] argv0 check functions.
Kentaro Takeda
[TOMOYO #6 13/21] environment variable name check functions.
Kentaro Takeda
[TOMOYO #6 21/21] Add signal hooks at sleepable location.
Kentaro Takeda
[TOMOYO #6 05/21] Add packet filtering based on processs security context.
Kentaro Takeda
[TOMOYO #6 01/21] TOMOYO Linux documentation.
Kentaro Takeda
[TOMOYO #6 15/21] Namespace manipulation control functions.
Kentaro Takeda
[TOMOYO #6 18/21] LSM adapter functions.
Kentaro Takeda
[TOMOYO #6 14/21] Network access control functions.
Kentaro Takeda
[TOMOYO #6 06/21] Data structures and prototype defitions.
Kentaro Takeda
[TOMOYO #6 09/21] Domain transition functions.
Kentaro Takeda
[TOMOYO #6 11/21] File access control functions.
Kentaro Takeda
Re: [TOMOYO #6 00/21] TOMOYO Linux - MAC based on process invocation history.
Kentaro Takeda
[RFC PATCH v10 00/20] Labeled networking changes for 2.6.25
Paul Moore
[RFC PATCH v10 01/20] NetLabel: Remove unneeded RCU read locks
Paul Moore
[RFC PATCH v10 02/20] NetLabel: Cleanup the LSM domain hash functions
Paul Moore
[RFC PATCH v10 03/20] NetLabel: Consolidate the LSM domain mapping/hashing locks
Paul Moore
[RFC PATCH v10 04/20] NetLabel: Add secid token support to the NetLabel secattr struct
Paul Moore
[RFC PATCH v10 05/20] LSM: Add secctx_to_secid() LSM hook
Paul Moore
[RFC PATCH v10 06/20] LSM: Add inet_sys_snd_skb() LSM hook
Paul Moore
[RFC PATCH v10 07/20] NetLabel: Add IP address family information to the netlbl_skbuff_getattr() function
Paul Moore
[RFC PATCH v10 08/20] NET: Clone the sk_buff 'iif' field in __skb_clone()
Paul Moore
[RFC PATCH v10 09/20] SELinux: Convert the netif code to use ifindex values
Paul Moore
[RFC PATCH v10 10/20] SELinux: Only store the network interface's ifindex
Paul Moore
[RFC PATCH v10 11/20] SELinux: Add a network node caching mechanism similar to the sel_netif_*() functions
Paul Moore
[RFC PATCH v10 12/20] SELinux: Add a capabilities bitmap to SELinux policy version 22
Paul Moore
[RFC PATCH v10 13/20] SELinux: Add a new peer class and permissions to the Flask definitions
Paul Moore
[RFC PATCH v10 14/20] SELinux: Better integration between peer labeling subsystems
Paul Moore
[RFC PATCH v10 15/20] SELinux: Enable dynamic enable/disable of the network access checks
Paul Moore
[RFC PATCH v10 17/20] NetLabel: Introduce static network labels for unlabeled connections
Paul Moore
[RFC PATCH v10 18/20] NetLabel: Add auditing to the static labeling mechanism
Paul Moore
[RFC PATCH v10 19/20] SELinux: Add network ingress and egress control permission checks
Paul Moore
[RFC PATCH v10 20/20] SELinux: Add warning messages on network denial due to error
Paul Moore
[RFC PATCH v10 16/20] SELinux: Allow NetLabel to directly cache SIDs
Paul Moore
[PATCH] security: remove security_sb_post_mountroot hook
H. Peter Anvin
Re: [PATCH] security: remove security_sb_post_mountroot hook
Casey Schaufler
Re: [PATCH] security: remove security_sb_post_mountroot hook
James Morris
[PATCH] Exporting capability code/name pairs
KaiGai Kohei
Re: [PATCH] Exporting capability code/name pairs
James Morris
Re: [PATCH] Exporting capability code/name pairs
Serge E. Hallyn
Re: [PATCH] Exporting capability code/name pairs
KaiGai Kohei
Re: [PATCH] Exporting capability code/name pairs
KaiGai Kohei
Re: [PATCH] Exporting capability code/name pairs
James Morris
Re: [PATCH] Exporting capability code/name pairs
KaiGai Kohei
Re: [PATCH] Exporting capability code/name pairs
James Morris
Re: [PATCH] Exporting capability code/name pairs
KaiGai Kohei
Re: [PATCH] Exporting capability code/name pairs
James Morris
Re: [PATCH] Exporting capability code/name pairs
KaiGai Kohei
Re: [PATCH] Exporting capability code/name pairs
Randy Dunlap
Re: [PATCH] Exporting capability code/name pairs
Andrew Morgan
Re: [PATCH] Exporting capability code/name pairs
KaiGai Kohei
Re: [PATCH] Exporting capability code/name pairs
Andrew Morgan
Re: [PATCH] Exporting capability code/name pairs
KaiGai Kohei
[PATCH 1/1] capabilities: oom_kill: don't set PF_SUPERPRIV for oom check
Serge E. Hallyn
Re: [PATCH 1/1] capabilities: oom_kill: don't set PF_SUPERPRIV for oom check
Andrew Morgan
[PATCH 1/1] capabilities: oom_kill: don't set PF_SUPERPRIV for oom check
Serge E. Hallyn
POSIX file capabilities for directories
Chris Friedhoff
Re: POSIX file capabilities for directories
Serge E. Hallyn
Re: POSIX file capabilities for directories
Andrew Morgan
Re: POSIX file capabilities for directories
Serge E. Hallyn
Re: POSIX file capabilities for directories
Andrew Morgan
Re: POSIX file capabilities for directories
Jan Engelhardt
Re: POSIX file capabilities for directories
Casey Schaufler
empty capability sets and suid-0-bit binaries
Chris Friedhoff
Re: empty capability sets and suid-0-bit binaries
Serge E. Hallyn
Re: empty capability sets and suid-0-bit binaries
Chris Friedhoff
TOMOYO Linux Security Goal
Tetsuo Handa
Re: TOMOYO Linux Security Goal
Serge E. Hallyn
Re: TOMOYO Linux Security Goal
Tetsuo Handa
Re: TOMOYO Linux Security Goal
Serge E. Hallyn
Re: TOMOYO Linux Security Goal
Tetsuo Handa
Re: TOMOYO Linux Security Goal
Serge E. Hallyn
Re: TOMOYO Linux Security Goal
Tetsuo Handa
Re: TOMOYO Linux Security Goal
Serge E. Hallyn
Re: TOMOYO Linux Security Goal
Tetsuo Handa
Re: TOMOYO Linux Security Goal
Serge E. Hallyn
Re: TOMOYO Linux Security Goal
Valdis . Kletnieks
Re: TOMOYO Linux Security Goal
Pavel Machek
Re: TOMOYO Linux Security Goal
Tetsuo Handa
Re: TOMOYO Linux Security Goal
Valdis . Kletnieks
Re: TOMOYO Linux Security Goal
Casey Schaufler
libcap-1.10-29.fscaps.28 is working, but libcap-2.02 gives an error on 2.6.24-rc5/6
Chris Friedhoff
Re: libcap-1.10-29.fscaps.28 is working, but libcap-2.02 gives an error on 2.6.24-rc5/6
serge
Re: libcap-1.10-29.fscaps.28 is working, but libcap-2.02 gives an error on 2.6.24-rc5/6
Chris Friedhoff
Re: libcap-1.10-29.fscaps.28 is working, but libcap-2.02 gives an error on 2.6.24-rc5/6
Andrew Morgan
Re: libcap-1.10-29.fscaps.28 is working, but libcap-2.02 gives an error on 2.6.24-rc5/6
Chris Friedhoff
Re: libcap-1.10-29.fscaps.28 is working, but libcap-2.02 gives an error on 2.6.24-rc5/6
Andrew Morgan
[RFC PATCH v9 00/18] Labeled networking patches for 2.6.25 (against 2.6.24-rc6)
Paul Moore
[RFC PATCH v9 03/18] NetLabel: Consolidate the LSM domain mapping/hashing locks
Paul Moore
[RFC PATCH v9 02/18] NetLabel: Cleanup the LSM domain hash functions
Paul Moore
[RFC PATCH v9 05/18] LSM: Add secctx_to_secid() LSM hook
Paul Moore
[RFC PATCH v9 06/18] LSM: Add inet_sys_snd_skb() LSM hook
Paul Moore
[RFC PATCH v9 01/18] NetLabel: Remove unneeded RCU read locks
Paul Moore
[RFC PATCH v9 04/18] NetLabel: Add secid token support to the NetLabel secattr struct
Paul Moore
[RFC PATCH v9 07/18] NetLabel: Add IP address family information to the netlbl_skbuff_getattr() function
Paul Moore
[RFC PATCH v9 12/18] SELinux: Add a new peer class and permissions to the Flask definitions
Paul Moore
Re: [RFC PATCH v9 12/18] SELinux: Add a new peer class and permissions to the Flask definitions
Stephen Smalley
Re: [RFC PATCH v9 12/18] SELinux: Add a new peer class and permissions to the Flask definitions
Paul Moore
[RFC PATCH v9 09/18] SELinux: Only store the network interface's ifindex
Paul Moore
[RFC PATCH v9 14/18] SELinux: Enable dynamic enable/disable of the network access checks
Paul Moore
[RFC PATCH v9 15/18] SELinux: Allow NetLabel to directly cache SIDs
Paul Moore
[RFC PATCH v9 11/18] SELinux: Add a capabilities bitmap to SELinux policy version 22
Paul Moore
[RFC PATCH v9 08/18] SELinux: Convert the netif code to use ifindex values
Paul Moore
[RFC PATCH v9 17/18] NetLabel: Add auditing to the static labeling mechanism
Paul Moore
[RFC PATCH v9 18/18] SELinux: Add network ingress and egress control permission checks
Paul Moore
[RFC PATCH v9 10/18] SELinux: Add a network node caching mechanism similar to the sel_netif_*() functions
Paul Moore
[RFC PATCH v9 13/18] SELinux: Better integration between peer labeling subsystems
Paul Moore
[RFC PATCH v9 16/18] NetLabel: Introduce static network labels for unlabeled connections
Paul Moore
[AppArmor 00/47] AppArmor security module overview
John
[AppArmor 01/47] Pass struct vfsmount to the inode_create LSM hook
John
[AppArmor 02/47] Pass struct path down to remove_suid and children
John
[AppArmor 03/47] Add a vfsmount parameter to notify_change()
John
[AppArmor 04/47] Pass struct vfsmount to the inode_setattr LSM hook
John
[AppArmor 05/47] Add struct vfsmount parameter to vfs_mkdir()
John
[AppArmor 06/47] Pass struct vfsmount to the inode_mkdir LSM hook
John
[AppArmor 07/47] Add a struct vfsmount parameter to vfs_mknod()
John
[AppArmor 08/47] Pass struct vfsmount to the inode_mknod LSM hook
John
[AppArmor 09/47] Add a struct vfsmount parameter to vfs_symlink()
John
[AppArmor 10/47] Pass struct vfsmount to the inode_symlink LSM hook
John
[AppArmor 11/47] Pass struct vfsmount to the inode_readlink LSM hook
John
[AppArmor 12/47] Add struct vfsmount parameters to vfs_link()
John
[AppArmor 13/47] Pass the struct vfsmounts to the inode_link LSM hook
John
[AppArmor 14/47] Add a struct vfsmount parameter to vfs_rmdir()
John
Earlier messages
Later messages