projects
/
linux-2.6-block.git
/ search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
vfs: define kernel_read_file_from_path
2016-02-21
Mimi Zohar
vfs: define kernel_read_file_from_path
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-21
Mimi Zohar
ima: define a new hook to measure and appraise a file...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
ima: calculate the hash of a buffer using aynchronous...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Dmitry Kasatkin
ima: provide buffer hash calculation function
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
vfs: define kernel_read_file_id enumeration
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
vfs: define a generic function to read a file from...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Kees Cook
firmware: clean up filesystem load exit path
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Luis R. Rodriguez
firmware: move completing fw into a helper
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Luis R. Rodriguez
firmware: simplify dev_*() print messages for generic...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
ima: use "ima_hooks" enum as function argument
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Mimi Zohar
ima: refactor ima_policy_show() to display "ima_hooks...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-18
Dmitry Kasatkin
ima: separate 'security.ima' reading functionality...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-02-08
Colin Ian King
IMA: fix non-ANSI declaration of ima_check_policy()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-01-07
Mimi Zohar
KEYS: refcount bug fix
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2016-01-03
Petko Manolov
ima: ima_write_policy() limit locking
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-24
Sasha Levin
IMA: policy can be updated zero times
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Paul Gortmaker
security/integrity: make ima/ima_mok.c explicitly non...
Cc: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Mimi Zohar
ima: update appraise flags after policy update completes
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Mimi Zohar
IMA: prevent keys on the .ima_blacklist from being...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Mimi Zohar
KEYS: prevent keys from being removed from specified...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Petko Manolov
IMA: allow reading back the current IMA policy
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Petko Manolov
IMA: create machine owner and blacklist keyrings
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Petko Manolov
IMA: policy can now be updated multiple times
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Arnd Bergmann
evm: EVM_LOAD_X509 depends on EVM
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Dmitry Kasatkin
evm: reset EVM status when file attributes change
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Dmitry Kasatkin
evm: provide a function to set the EVM key from the...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Dmitry Kasatkin
evm: enable EVM when X509 certificate is loaded
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-12-15
Dmitry Kasatkin
evm: load an x509 certificate from the kernel
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-11-23
Dmitry Kasatkin
integrity: define '.evm' as a builtin 'trusted' keyring
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-10-09
Dmitry Kasatkin
integrity: prevent loading untrusted certificates on...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: update builtin policies
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: extend "mask" policy matching support
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: add support for new "euid" policy condition
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-06-16
Mimi Zohar
ima: fix ima_show_template_data_ascii()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Roberto Sassu
ima: pass iint to ima_add_violation()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Roberto Sassu
ima: wrap event related data to the new ima_event_data...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Dmitry Kasatkin
integrity: add validity checks for 'path' parameter
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Mimi Zohar
KEYS: fix "ca_keys=" partial key matching
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Dmitry Kasatkin
evm: fix potential race when removing xattrs
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Mimi Zohar
evm: labeling pseudo filesystems exception
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Dmitry Kasatkin
ima: remove definition of IMA_X509_PATH
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Dmitry Kasatkin
ima: limit file hash setting by user to fix and log...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Mimi Zohar
ima: do not measure or appraise the NSFS filesystem
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-21
Roberto Sassu
ima: skip measurement of cgroupfs files and update...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-13
Roberto Sassu
ima: added ima-sig template among choices in kernel...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-05-13
Dan Carpenter
ima: cleanup ima_init_policy() a little
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2015-01-22
Dmitry Kasatkin
MAINTAINERS: email update
commit
|
commitdiff
|
tree
2014-12-07
Michael Ellerman
ima: Fix build failure on powerpc when TCG_IBMVTPM...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-12-07
Takashi Iwai
KEYS: Fix stale key registration at error path
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-11-18
Dmitry Kasatkin
VFS: refactor vfs_read()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-11-18
Dmitry Kasatkin
ima: require signature based appraisal
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-11-18
Dmitry Kasatkin
integrity: provide a hook to load keys when rootfs...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-11-18
Dmitry Kasatkin
ima: load x509 certificate from the kernel
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-11-18
Dmitry Kasatkin
integrity: provide a function to load x509 certificate...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-11-18
Dmitry Kasatkin
integrity: define a new function integrity_read_file()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-28
Dmitry Kasatkin
evm: check xattr value length and type in evm_inode_setxattr()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-28
Dmitry Kasatkin
ima: check xattr value length and type in the ima_inode_setx...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-13
Roberto Sassu
ima: added support for new kernel cmdline parameter...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-13
Roberto Sassu
ima: allocate field pointers array on demand in template_des...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-13
Roberto Sassu
ima: don't allocate a copy of template_fmt in template_desc_...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-13
Roberto Sassu
ima: display template format in meas. list if template...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-13
Roberto Sassu
ima: added error messages to template-related functions
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-12
Dmitry Kasatkin
ima: use atomic bit operations to protect policy update...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-12
Dmitry Kasatkin
ima: ignore empty and with whitespaces policy lines
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-12
Dmitry Kasatkin
ima: no need to allocate entry for comment
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-12
Dmitry Kasatkin
ima: report policy load status
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-07
Dmitry Kasatkin
ima: use path names cache
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-07
Dmitry Kasatkin
evm: skip replacing EVM signature with HMAC on read...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-07
Dmitry Kasatkin
integrity: add missing '__init' keyword for integrity_init_k...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-10-07
Dmitry Kasatkin
ima: check ima_policy_flag in the ima_file_free() hook
commit
|
commitdiff
|
tree
2014-09-18
Roberto Sassu
ima: detect violations for mmaped files
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-18
Roberto Sassu
ima: fix race condition on ima_rdwr_violation_check...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-17
Roberto Sassu
ima: added ima_policy_flag variable
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-17
Roberto Sassu
ima: return an error code from ima_add_boot_aggregate()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-17
Dmitry Kasatkin
ima: provide 'ima_appraise=log' kernel option
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-17
Dmitry Kasatkin
ima: move keyring initialization to ima_init()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
integrity: make integrity files as 'integrity' module
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
integrity: base integrity subsystem kconfig options...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
integrity: move asymmetric keys config option
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
ima: initialize only required template
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
ima: remove usage of filename parameter
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
ima: remove unnecessary appraisal test
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
ima: add missing '__init' keywords
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
ima: remove unnecessary extra variable
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
ima: simplify conditional statement to improve performance
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
integrity: remove declaration of non-existing functions
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
integrity: prevent flooding with 'Request for unknown...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
ima: pass 'opened' flag to identify newly created files
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-09
Dmitry Kasatkin
evm: properly handle INTEGRITY_NOXATTRS EVM status
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-08
Dmitry Kasatkin
ima: provide flag to identify new empty files
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-08
Dmitry Kasatkin
evm: prevent passing integrity check if xattr read...
commit
|
commitdiff
|
tree
2014-09-02
Dmitry Kasatkin
evm: fix checkpatch warnings
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-02
Dmitry Kasatkin
ima: fix fallback to use new_sync_read()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-02
Dmitry Kasatkin
ima: prevent buffer overflow in ima_alloc_tfm()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-09-02
Mimi Zohar
ima: fix ima_alloc_atfm()
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Mimi Zohar
ima: define '.ima' as a builtin 'trusted' keyring
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Dmitry Kasatkin
KEYS: validate certificate trust only with builtin...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Dmitry Kasatkin
KEYS: validate certificate trust only with selected key
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Dmitry Kasatkin
KEYS: make partial key id matching as a dedicated function
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
2014-07-17
Mimi Zohar
KEYS: verify a certificate is signed by a 'trusted...
Signed-off-by: Mimi Zohar <
zohar@linux.vnet.ibm.com
>
commit
|
commitdiff
|
tree
next