Mimi Zohar
|
24fd03c876
ima: update builtin policies
|
10 years ago |
Mimi Zohar
|
4351c294b8
ima: extend "mask" policy matching support
|
11 years ago |
Mimi Zohar
|
139069eff7
ima: add support for new "euid" policy condition
|
11 years ago |
Mimi Zohar
|
cd025f7f94
ima: do not measure or appraise the NSFS filesystem
|
10 years ago |
Roberto Sassu
|
6438de9f3f
ima: skip measurement of cgroupfs files and update documentation
|
10 years ago |
Dan Carpenter
|
5577857f8e
ima: cleanup ima_init_policy() a little
|
10 years ago |
Dmitry Kasatkin
|
c57782c13e
ima: require signature based appraisal
|
11 years ago |
Dmitry Kasatkin
|
0716abbb58
ima: use atomic bit operations to protect policy update interface
|
11 years ago |
Dmitry Kasatkin
|
7178784f0a
ima: ignore empty and with whitespaces policy lines
|
11 years ago |
Dmitry Kasatkin
|
272a6e90ff
ima: no need to allocate entry for comment
|
11 years ago |
Roberto Sassu
|
a756024efe
ima: added ima_policy_flag variable
|
11 years ago |
Mimi Zohar
|
5a9196d715
ima: add support for measuring and appraising firmware
|
11 years ago |
Richard Guy Briggs
|
7e9001f663
audit: fix dangling keywords in integrity ima message output
|
11 years ago |
Mimi Zohar
|
f9b2a735bd
ima: audit log files opened with O_DIRECT flag
|
11 years ago |
Dmitry Kasatkin
|
2bb930abcf
integrity: fix checkpatch errors
|
11 years ago |
Dmitry Kasatkin
|
09b1148ef5
ima: fix erroneous removal of security.ima xattr
|
12 years ago |
Mimi Zohar
|
52a1328484
ima: use static const char array definitions
|
11 years ago |
Jingoo Han
|
29707b206c
security: replace strict_strto*() with kstrto*()
|
11 years ago |
Mimi Zohar
|
08de59eb14
Revert "ima: policy for RAMFS"
|
12 years ago |
Mimi Zohar
|
446d64e3e1
block: fix part_pack_uuid() build error
|
12 years ago |
Linus Torvalds
|
33673dcb37
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
|
12 years ago |
Dmitry Kasatkin
|
85865c1fa1
ima: add policy support for file system uuid
|
13 years ago |
Mimi Zohar
|
5a73fcfa88
ima: differentiate appraise status only for hook specific rules
|
12 years ago |
Mimi Zohar
|
d79d72e024
ima: per hook cache integrity appraisal status
|
12 years ago |
Dmitry Kasatkin
|
0e5a247cb3
ima: added policy support for 'security.ima' type
|
13 years ago |
Mimi Zohar
|
16cac49f72
ima: rename FILE_MMAP to MMAP_CHECK
|
12 years ago |
Mimi Zohar
|
7163a99384
ima: re-initialize IMA policy LSM info
|
12 years ago |
Mimi Zohar
|
a7f2a366f6
ima: fallback to MODULE_SIG_ENFORCE for existing kernel module syscall
|
12 years ago |
Mimi Zohar
|
fdf90729e5
ima: support new kernel module syscall
|
13 years ago |
Linus Torvalds
|
88265322c1
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
|
13 years ago |