linux-security-module.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
 messages from 2021-11-25 18:05:37 to 2021-12-07 20:22:20 UTC [more...]

[PATCH v4 00/16] ima: Namespace IMA with audit support in IMA-ns
 2021-12-07 20:21 UTC  (4+ messages)
` [PATCH v4 01/16] ima: Add IMA namespace support
` [PATCH v4 02/16] ima: Define ns_status for storing namespaced iint data
` [PATCH v4 03/16] ima: Namespace audit status flags

[PATCH v2 0/6] KEXEC_SIG with appended signature
 2021-12-07 17:32 UTC  (14+ messages)
` [PATCH v2 1/6] s390/kexec_file: Don't opencode appended signature check
` [PATCH v2 2/6] powerpc/kexec_file: Add KEXEC_SIG support
` [PATCH v2 3/6] kexec_file: Don't opencode appended signature verification
` [PATCH v2 4/6] module: strip the signature marker in the verification function
` [PATCH v2 5/6] module: Use key_being_used_for for log messages in verify_appended_signature
` [PATCH v2 6/6] module: Move duplicate mod_check_sig users code to mod_parse_sig

[PATCH v3 00/16] ima: Namespace IMA with audit support in IMA-ns
 2021-12-07 17:13 UTC  (27+ messages)
` [PATCH v3 01/16] ima: Add IMA namespace support
` [PATCH v3 02/16] ima: Define ns_status for storing namespaced iint data
` [PATCH v3 03/16] ima: Namespace audit status flags
` [PATCH v3 04/16] ima: Move delayed work queue and variables into ima_namespace
` [PATCH v3 05/16] ima: Move IMA's keys queue related "
` [PATCH v3 06/16] ima: Move policy "
` [PATCH v3 07/16] ima: Move ima_htable "
` [PATCH v3 08/16] ima: Move measurement list related variables "
` [PATCH v3 09/16] ima: Only accept AUDIT rules for IMA non-init_ima_ns namespaces for now
` [PATCH v3 10/16] ima: Implement hierarchical processing of file accesses
` [PATCH v3 11/16] securityfs: Move vfsmount into user_namespace
` [PATCH v3 12/16] securityfs: Extend securityfs with namespacing support
` [PATCH v3 13/16] ima: Move some IMA policy and filesystem related variables into ima_namespace
` [PATCH v3 14/16] ima: Use mac_admin_ns_capable() to check corresponding capability
` [PATCH v3 15/16] ima: Move dentries into ima_namespace
` [PATCH v3 16/16] ima: Setup securityfs for IMA namespace

[PATCH] security,selinux: remove security_add_mnt_opt()
 2021-12-06 23:36 UTC  (4+ messages)

[RFC v2 00/19] ima: Namespace IMA with audit support in IMA-ns
 2021-12-06 17:22 UTC  (43+ messages)
` [RFC v2 01/19] ima: Add IMA namespace support
` [RFC v2 02/19] ima: Define ns_status for storing namespaced iint data
` [RFC v2 03/19] ima: Namespace audit status flags
` [RFC v2 04/19] ima: Move delayed work queue and variables into ima_namespace
` [RFC v2 05/19] ima: Move IMA's keys queue related "
` [RFC v2 06/19] ima: Move policy "
` [RFC v2 07/19] ima: Move ima_htable "
` [RFC v2 08/19] ima: Move measurement list related variables "
` [RFC v2 09/19] ima: Only accept AUDIT rules for IMA non-init_ima_ns namespaces for now
` [RFC v2 10/19] ima: Implement hierarchical processing of file accesses
` [RFC v2 11/19] securityfs: Prefix global variables with securityfs_
` [RFC v2 12/19] securityfs: Pass static variables as parameters from top level functions
` [RFC v2 13/19] securityfs: Extend securityfs with namespacing support
` [RFC v2 14/19] ima: Move some IMA policy and filesystem related variables into ima_namespace
` [RFC v2 15/19] capabilities: Introduce CAP_INTEGRITY_ADMIN
` [RFC v2 16/19] ima: Use integrity_admin_ns_capable() to check corresponding capability
` [RFC v2 17/19] userns: Introduce a refcount variable for calling early teardown function
` [RFC v2 18/19] ima/userns: Define early teardown function for IMA namespace
` [RFC v2 19/19] ima: Setup securityfs "

[RFC PATCH v7 00/16] Integrity Policy Enforcement (IPE)
 2021-12-06 10:57 UTC  (13+ messages)
` [RFC PATCH v7 11/16] ipe: add support for dm-verity as a trust provider
      ` [RFC][PATCH] device mapper: Add builtin function dm_get_status()

[PATCH v30 00/28] LSM: Module stacking for AppArmor
 2021-12-06  2:45 UTC  (17+ messages)
` [PATCH v30 01/28] integrity: disassociate ima_filter_rule from security_audit_rule
` [PATCH v30 03/28] LSM: Add the lsmblob data structure
` [PATCH v30 06/28] LSM: Use lsmblob in security_audit_rule_match
` [PATCH v30 22/28] Audit: Keep multiple LSM data in audit_names
` [PATCH v30 23/28] Audit: Create audit_stamp structure
` [PATCH v30 24/28] Audit: Add framework for auxiliary records
` [PATCH v30 25/28] Audit: Add record for multiple task security contexts
` [PATCH v30 26/28] Audit: Add record for multiple object "

[PATCH v5 0/2] integrity: support including firmware ".platform" keys at build time
 2021-12-05 13:45 UTC  (5+ messages)
` [PATCH v5 1/2] certs: export load_certificate_list() to be used outside certs/
` [PATCH v5 2/2] integrity: support including firmware ".platform" keys at build time

[PATCH v4 0/5] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys
 2021-12-05  0:18 UTC  (7+ messages)
` [PATCH v4 1/5] KEYS: trusted: allow use of TEE as backend without TCG_TPM support
` [PATCH v4 2/5] KEYS: trusted: allow users to use kernel RNG for key material
` [PATCH v4 4/5] crypto: caam - add in-kernel interface for blob generator

[PATCH v8 00/17] Enroll kernel keys thru MOK
 2021-12-04 17:39 UTC  (19+ messages)
` [PATCH v8 03/17] integrity: Introduce a Linux keyring called machine
` [PATCH v8 04/17] integrity: Do not allow machine keyring updates following init
` [PATCH v8 05/17] X.509: Parse Basic Constraints for CA
` [PATCH v8 06/17] KEYS: CA link restriction
` [PATCH v8 08/17] integrity: add new keyring handler for mok keys
` [PATCH v8 09/17] KEYS: Rename get_builtin_and_secondary_restriction

[PATCH v19 0/4] overlayfs override_creds=off & nested get xattr fix
 2021-12-03 18:34 UTC  (6+ messages)

[RFC 00/20] ima: Namespace IMA with audit support in IMA-ns
 2021-12-02 20:03 UTC  (54+ messages)
` [RFC 01/20] ima: Add IMA namespace support
` [RFC 02/20] ima: Define ns_status for storing namespaced iint data
` [RFC 03/20] ima: Namespace audit status flags
` [RFC 04/20] ima: Move delayed work queue and variables into ima_namespace
` [RFC 05/20] ima: Move IMA's keys queue related "
` [RFC 06/20] ima: Move policy "
` [RFC 07/20] ima: Move ima_htable "
` [RFC 08/20] ima: Move measurement list related variables "
` [RFC 09/20] ima: Only accept AUDIT rules for IMA non-init_ima_ns namespaces for now
` [RFC 10/20] ima: Implement hierarchical processing of file accesses
` [RFC 11/20] securityfs: Prefix global variables with securityfs_
` [RFC 12/20] securityfs: Pass static variables as parameters from top level functions
` [RFC 13/20] securityfs: Build securityfs_ns for namespacing support
` [RFC 14/20] ima: Move some IMA policy and filesystem related variables into ima_namespace
` [RFC 15/20] capabilities: Introduce CAP_INTEGRITY_ADMIN
` [RFC 16/20] ima: Use ns_capable() for namespace policy access
` [RFC 17/20] ima: Use integrity_admin_ns_capable() to check corresponding capability
` [RFC 18/20] userns: Introduce a refcount variable for calling early teardown function
` [RFC 19/20] ima/userns: Define early teardown function for IMA namespace
` [RFC 20/20] ima: Setup securityfs_ns "

[PATCH] Add GlowSlayer Explicit Access Control from Cory Craig <gs.cory.craig@gmail.com>
 2021-12-02  1:39 UTC  (2+ messages)

[PATCH v17 0/3] Add trusted_for(2) (was O_MAYEXEC)
 2021-12-01 16:40 UTC  (6+ messages)

[PATCH v4] KEYS: trusted: Fix trusted key backends when building as module
 2021-12-01 10:47 UTC  (3+ messages)

[PATCH v3 0/2] use SM3 instead of SM3_256
 2021-11-29 13:01 UTC  (3+ messages)

[PATCH v6 0/5] Allow guest access to EFI confidential computing secret area
 2021-11-29 11:42 UTC  (6+ messages)
` [PATCH v6 1/5] efi: Save location of EFI confidential computing area
` [PATCH v6 2/5] efi/libstub: Reserve confidential computing secret area
` [PATCH v6 3/5] virt: Add efi_secret module to expose confidential computing secrets
` [PATCH v6 4/5] efi: Load efi_secret module if EFI secret area is populated
` [PATCH v6 5/5] docs: security: Add coco/efi_secret documentation


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).