public inbox for linux-audit@redhat.com
 help / color / mirror / Atom feed
 messages from 2013-10-30 20:24:27 to 2013-12-06 21:31:35 UTC [more...]

[RFC Part1 PATCH 00/20 v2] Add namespace support for audit
 2013-12-06 21:31 UTC  (11+ messages)

Exclude /usr/libexec/mysqld from audit.rules
 2013-12-06 20:34 UTC 

[BUG][PATCH] audit: audit_log_start running on auditd should not stop
 2013-12-06 18:40 UTC  (7+ messages)
` [PATCH 0/3] audit: remove audit_log_start() contention in AUDIT_USER type calls
  ` [PATCH 1/3] selinux: call WARN_ONCE() instead of calling audit_log_start()
  ` [PATCH 2/3] smack: "
  ` [PATCH 3/3] audit: drop audit_cmd_lock in AUDIT_USER family of cases
  ` [RESEND][BUG][PATCH V3] audit: audit_log_start running on auditd should not stop

Converting relative path to absolute path
 2013-12-06 17:33 UTC  (3+ messages)

[PATCH] - auditing cmdline
 2013-12-06 15:39 UTC  (6+ messages)
` [PATCH 1/3] mm: Create utility functions for accessing a tasks commandline value
` [PATCH 2/3] proc: Update get proc_pid_cmdline() to use mm.h helpers
` [PATCH 3/3] audit: Audit proc cmdline value

[PATCH 3.11 003/272] audit: printk USER_AVC messages when audit isn't enabled
 2013-12-06 12:54 UTC 

nlmsg_len in audit netlink messages going to userspace
 2013-12-05 22:05 UTC 

[PATCH] audit: process errors from filter user rules
 2013-12-05 20:52 UTC  (2+ messages)

[PATCH 3.5 51/90] audit: printk USER_AVC messages when audit isn't enabled
 2013-12-05 17:35 UTC 

[3.11.y.z extended stable] Patch "audit: printk USER_AVC messages when audit isn't enabled" has been added to staging queue
 2013-12-05 11:20 UTC 

Rational behind RefuseManualStop=yes in auditd.service
 2013-12-03 20:16 UTC  (3+ messages)

Namespaces in event records
 2013-12-03 12:35 UTC  (2+ messages)

[PATCH 3.12 105/212] audit: printk USER_AVC messages when audit isnt enabled
 2013-12-02 19:14 UTC 

[PATCH 3.10 081/173] audit: printk USER_AVC messages when audit isnt enabled
 2013-12-02 19:11 UTC 

[PATCH 3.4 36/60] audit: printk USER_AVC messages when audit isnt enabled
 2013-12-02 19:06 UTC 

Follow up on command line auditing
 2013-12-02 18:19 UTC  (7+ messages)
` [PATCH] audit: Audit proc cmdline value

[3.5.y.z extended stable] Patch "audit: printk USER_AVC messages when audit isn't enabled" has been added to staging queue
 2013-11-29 14:03 UTC 

[PATCH 1/1 v2] Added exe field to audit core dump signal log
 2013-11-27 10:56 UTC  (3+ messages)

[RFC PATCH] audit: generic compat system call support
 2013-11-27  1:34 UTC  (5+ messages)
` [RFC PATCH] audit: Add generic compat syscall support
  ` [RFC PATCH v2 1/1] "

"File system watches not supported" with auditctl 1.0.12 / kernel 2.6.32
 2013-11-26 18:34 UTC  (3+ messages)

Updated patches
 2013-11-25 16:11 UTC  (2+ messages)
` [PATCH] audit: Audit proc cmdline value

[PATCH 1/1 v1] Added exe field to audit core dump signal log
 2013-11-21  2:18 UTC  (2+ messages)

[DRAFT v3.4] - audit cmdline updates
 2013-11-21  1:34 UTC  (6+ messages)
` [PATCH 1/4] audit: Allow auditing of proc/self/cmdline value
` [PATCH 2/4] audit: Enable cacheing of cmdline in audit_context
` [PATCH 3/4] audit: dont allocate whole pages
` [PATCH 4/4] SQUASH audit: Change cmdline get API to reduce locking

[PATCH 1/1] Added exe field to audit core dump signal log
 2013-11-20 22:30 UTC  (6+ messages)

[PATCH] audit/userspace: add support for the parisc architecture
 2013-11-20 20:16 UTC  (2+ messages)

[PATCH v3.4] - Updates on cmdline auditing patches
 2013-11-19 19:41 UTC  (4+ messages)
` [PATCH 1/3] audit: Allow auditing of proc/self/cmdline value
` [PATCH 2/3] audit: Enable cacheing of cmdline in audit_context
` [PATCH 3/3] audit: dont allocate whole pages

ANON message
 2013-11-19 17:19 UTC  (2+ messages)

[PATCH v3.4] - audit cmdline on events
 2013-11-19 16:25 UTC  (8+ messages)
` [PATCH 1/2] audit: Allow auditing of proc/self/cmdline value
` [PATCH 2/2] audit: Enable cacheing of cmdline in audit_context

[RFC PATH 0/2] audit(userspace): Add/Improve arm/aarch64 support
 2013-11-19  7:29 UTC  (3+ messages)
` [RFC PATCH 1/2] audit(userspace): Add missing syscalls for AArch64
` [RFC PATCH 2/2] audit(userspace): Add arm LE/aarch64 BE support

Audit Cross Compile Support
 2013-11-15  1:07 UTC  (3+ messages)
  ` [PATCH] Fix gen_tables.py in parsing arguments

logging changes in tty logging status
 2013-11-14 20:43 UTC  (4+ messages)

Hash ideas on adding an extended comm field
 2013-11-14 18:02 UTC  (2+ messages)

lib/audit.c (kernel)
 2013-11-14  5:45 UTC 

missing system call defs in audit(userspace)
 2013-11-14  4:42 UTC 

order of entries output from ausearch -i
 2013-11-13 20:35 UTC  (2+ messages)

proposing [PATCH] audit: get rid of *NO* daemon at audit_pid=0 message
 2013-11-11 19:28 UTC  (4+ messages)

[PATCH] Dropped audit_log_abend()
 2013-11-11 18:51 UTC  (3+ messages)

SIGXCPU and Auditd
 2013-11-11 10:54 UTC  (5+ messages)

[PATCH 0/4] arm64: Add audit support
 2013-11-11  7:40 UTC  (11+ messages)
` [PATCH 1/4] audit: Enable arm64 support
` [PATCH 2/4] arm64: Add audit support
` [PATCH 3/4] arm64: audit: Add AArch32 support
` [PATCH 4/4] arm64: audit: Add audit hook in ptrace/syscall_trace

[PATCH] Fixed reason field in audit signal logging
 2013-11-07 18:07 UTC  (12+ messages)

[PATCH] audit: convert all sessionid declaration to unsigned int
 2013-11-06 16:52 UTC 

Follow up on auditing cmdline
 2013-11-06 14:27 UTC  (3+ messages)

Auditd errors on busy hosts when rolling over log files
 2013-11-05 13:59 UTC  (4+ messages)

Question on the unset user in audit
 2013-11-05 13:07 UTC  (3+ messages)

Removing open_by_handle_at in local copy of stig.rules
 2013-11-04 14:05 UTC  (2+ messages)

[PATCH v2] audit: fix incorrect type of sessionid
 2013-11-03  1:14 UTC  (2+ messages)

[PATCH 1/7] audit: implement generic feature setting and retrieving
 2013-11-02 14:44 UTC  (3+ messages)

[PATCH 1/5] audit: fix incorrect order of log new and old feature
 2013-11-02  6:16 UTC  (7+ messages)
` [PATCH 2/5] audit: don't generate audit feature changed log when audit disabled
` [PATCH 3/5] audit: use old_lock in audit_set_feature
` [PATCH 4/5] audit: don't generate loginuid log when audit disabled
` [PATCH 5/5] audit: change the type of oldloginuid from kuid_t to unsigned long

Format specifier issue when building kernel
 2013-11-01 22:22 UTC  (14+ messages)

[PATCH] audit: don't generate loginuid log when audit disabled
 2013-11-01  1:15 UTC  (4+ messages)

[PATCH 1/3] audit: fix incorrect order of log new and old feature
 2013-11-01  0:55 UTC  (6+ messages)
` [PATCH 2/3] audit: don't generate audit feature changed log when audit disabled
` [PATCH 3/3] audit: use old_lock in audit_set_feature

[PATCH 0/4][v2] audit: Tidy up audit_context and stop bprm recursion
 2013-10-31 17:18 UTC  (6+ messages)
` [PATCH 1/4][v2] audit: Kill the unused struct audit_aux_data_capset
` [PATCH 2/4][v2] audit: remove unused envc member of audit_aux_data_execve
` [PATCH 3/4][v2] audit: move audit_aux_data_execve contents into audit_context union
` [PATCH 4/4][v2] audit: call audit_bprm() only once to add AUDIT_EXECVE information

[PATCH] audit: Add cmdline to taskinfo output
 2013-10-31 15:52 UTC  (14+ messages)

[PATCH] audit: remove useless code in audit_enable
 2013-10-31 15:22 UTC  (3+ messages)
` [PATCH v2] "

[PATCH 0/3] audit: Tidy up audit_context and stop bprm recursion
 2013-10-30 20:24 UTC  (2+ messages)
` [PATCH 3/3] audit: call audit_bprm() only once to add AUDIT_EXECVE information


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox