linux-audit.redhat.com archive mirror
 help / color / mirror / Atom feed
 messages from 2013-03-14 10:54:20 to 2013-05-20 13:58:18 UTC [more...]

Rules mysteriously flushed
 2013-05-20 13:58 UTC 

ausearch
 2013-05-16 13:13 UTC  (2+ messages)

[PATCH] ausearch: Add checkpoint capability and have incomplete logs carry forward when processing multiple audit.log files
 2013-05-13 21:53 UTC  (5+ messages)

[PATCH] auditfilter.c: fix kernel-doc warnings
 2013-05-13 16:41 UTC 

Proposed additions to ausearch
 2013-05-13 13:02 UTC  (9+ messages)

[PATCH] [BZ905179] audit: omit check for uid and gid validity in audit rules and data
 2013-05-13  1:22 UTC  (15+ messages)

Kernel patches needed
 2013-05-13  1:18 UTC  (2+ messages)

[PATCH] ausearch: Minor bugs and enhanced interpret output
 2013-05-12 10:02 UTC 

[PATCH] audit: log the audit_names record type
 2013-05-09 14:57 UTC  (3+ messages)

[PATCH] auparse: add a check to au->source_list to ensure it not null
 2013-05-09  2:13 UTC  (2+ messages)

[PATCH RFC 00/48] Add namespace support for audit
 2013-05-09  1:13 UTC  (55+ messages)
` [PATCH RFC 15/48] Audit: allow to send netlink message to auditd in uninit user namespace
` [PATCH RFC 27/48] Audit: make tree_list per "
` [PATCH RFC 31/48] Audit: pass proper user namespace to audit_filter_syscall
  ` [PATCH RFC 01/48] Audit: make audit kernel side netlink sock per userns
  ` [PATCH RFC 02/48] netlink: Add compare function for netlink_table
  ` [PATCH RFC 03/48] Audit: implement audit self-defined compare function
  ` [PATCH RFC 04/48] Audit: make audit_skb_queue per user namespace
  ` [PATCH RFC 05/48] Audit: make audit_skb_hold_queue "
  ` [PATCH RFC 06/48] Audit: make kauditd_task "
  ` [PATCH RFC 07/48] Audit: make audit_pid "
  ` [PATCH RFC 08/48] Audit: make audit_nlk_portid per user namesapce
  ` [PATCH RFC 09/48] Audit: make audit_enabled per user namespace
  ` [PATCH RFC 10/48] Audit: change type of audit_ever_enabled to bool
  ` [PATCH RFC 11/48] Audit: make audit_ever_enabled per user namespace
  ` [PATCH RFC 12/48] Audit: make audit_initialized "
  ` [PATCH RFC 13/48] Audit: only allow init user namespace to change audit_rate_limit
  ` [PATCH RFC 14/48] Audit: only allow init user namespace to change audit_failure
  ` [PATCH RFC 16/48] Audit: user proper user namespace in audit_log_config_change
  ` [PATCH RFC 17/48] Audit: make kauditd_wait per user namespace
  ` [PATCH RFC 18/48] Audit: make audit_backlog_wait "
  ` [PATCH RFC 19/48] Audit: remove duplicate comments
  ` [PATCH RFC 20/48] Audit: introduce new audit logging interface for user namespace
  ` [PATCH RFC 21/48] Audit: pass proper user namespace to audit_log_common_recv_msg
  ` [PATCH RFC 22/48] Audit: Log audit config change in uninit user namespace
  ` [PATCH RFC 23/48] Audit: netfilter: Log xt table replace behavior in proper "
  ` [PATCH RFC 24/48] Audit: xt_AUDIT: Log audit message "
  ` [PATCH RFC 25/48] Audit: send reply message to the auditd "
  ` [PATCH RFC 26/48] Audit: make audit_inode_hash per "
  ` [PATCH RFC 28/48] Audit: make audit filter list "
  ` [PATCH RFC 29/48] Audit: make audit_krule belongs to "
  ` [PATCH RFC 30/48] Audit: reply audit filter list request to proper "
  ` [PATCH RFC 32/48] Audit: pass proper user namespace to audit_filter_inode_name
  ` [PATCH RFC 34/48] Log audit tree related message in proper user namespace
  ` [PATCH RFC 35/48] Audit: Log task related audit message to "
  ` [PATCH RFC 36/48] Audit: Log watch "
  ` [PATCH RFC 37/48] Audit: translate audit_log_start to audit_log_start_ns
  ` [PATCH RFC 40/48] Audit: ima: "
` [PATCH RFC 33/48] Audit: Log filter related audit message to proper user namespace
` [PATCH RFC 38/48] Audit: tty: translate audit_log_start to audit_log_start_ns
` [PATCH RFC 39/48] Audit: netlabel: "
` [PATCH RFC 41/48] Audit: lsm: "
` [PATCH RFC 42/48] Audit: selinux: "
` [PATCH RFC 43/48] Audit: xfrm: "
` [PATCH RFC 44/48] Audit: rename audit_log_start_ns to audit_log_start
` [PATCH RFC 45/48] Audit: user audit_enabled_ns to replace audit_enabled
` [PATCH RFC 46/48] Audit: rename audit_enabled_ns to audit_enabled
` [PATCH RFC 47/48] Audit: make audit_log user namespace awared
` [PATCH RFC 48/48] Audit: allow root user of un-init user namespace to set audit

[PATCH] audit: fix mq_open and mq_unlink to add the MQ root as a hidden parent audit_names record
 2013-05-08 17:30 UTC 

[PATCH] audit: add child record before the create to handle case where create fails
 2013-05-08 14:25 UTC 

[PATCH] auparse: add a check to au->source_list to ensure it not null
 2013-05-08  7:06 UTC 

[GIT PULL] Audit changes for 3.10
 2013-05-08  4:25 UTC 

[PATCH] auparse: add a check to au->source_list to ensure it not null
 2013-05-08  1:46 UTC 

audit 2.3 released
 2013-05-06 14:02 UTC  (10+ messages)
` explanation/translation of auditd exit codes
` audit.rules file [Was: audit 2.3 released]

[ANNOUNCE] Linux Security Summit 2013 - CFP
 2013-05-06  9:18 UTC 

[PATCH] pam_tty_audit: add an option to control logging of passwords: log_passwd
 2013-05-03 17:42 UTC 

[PATCH 1/2] audit: use given values in tty_audit enable api
 2013-05-03 18:03 UTC  (2+ messages)
` [PATCH 2/2] tty: add an option to control logging of passwords with pam_tty_audit

libaudit large stack requirement in audit_send()
 2013-04-29 21:02 UTC  (4+ messages)

pam_tty_audit icanon log switch
 2013-04-29 21:02 UTC  (15+ messages)

Audit filter by TTY
 2013-04-26 17:27 UTC  (5+ messages)

Adding enterprise capability - an includeConfig directive for audit.rules?
 2013-04-24 20:37 UTC  (11+ messages)
      ` EXT :Re: "

[PATCH] audit: destroy filename correctly PING
 2013-04-23 14:24 UTC  (2+ messages)

[PATCH] vfs: fix audit_inode call in O_CREAT case of do_last
 2013-04-17  3:02 UTC  (3+ messages)

[PATCH 1/2] audit: remove duplicate export of audit_enabled
 2013-04-15 21:02 UTC  (3+ messages)
` [PATCH 2/2] audit: remove unnecessary #if CONFIG_AUDIT

[PATCH] audit: fix build break when AUDIT_DEBUG == 2
 2013-04-12 17:12 UTC 

[PATCH] audit: audit on the future execution of a binary
 2013-04-11 18:13 UTC  (3+ messages)

[PATCH RESEND] audit: don't check if kauditd is valid everytime
 2013-04-08  2:34 UTC 

How to offer a patch
 2013-04-02 18:55 UTC  (2+ messages)

[PATCH RFC 8/8] audit: allow user records to be created inside a container
 2013-03-21  4:48 UTC  (18+ messages)
  ` [PATCH RFC 7/8] audit: report namespace information along with USER events
  ` [PATCH RFC] audit: provide namespace information in user originated records

Thoughts on adding sd-journal as a log_format to auditd
 2013-03-20 20:58 UTC  (4+ messages)

audit 2.2.3 released
 2013-03-19 22:52 UTC 

[PATCH RFC] audit: provide namespace information in user originated records
 2013-03-18 15:45 UTC  (9+ messages)
` [PATCH RFC 1/8] mntns: introduce mntns_get_inum()
` [PATCH RFC 2/8] ipcns: introduce ipcns_get_inum()
` [PATCH RFC 3/8] pidns: introduce pidns_get_inum()
` [PATCH RFC 4/8] userns: introduce userns_get_inum()
` [PATCH RFC 5/8] utsns: introduce utsns_get_inum()
` [PATCH RFC 6/8] netns: introduce netns_get_inum()
` [PATCH RFC 7/8] audit: report namespace information along with USER events
` [PATCH RFC 8/8] audit: allow user records to be created inside a container

PCI-DSS: Log every root actions/keystrokes but avoid passwords
 2013-03-14 14:56 UTC  (3+ messages)

Auparse feature or bug
 2013-03-14 12:55 UTC  (4+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).