Eric Richter
|
725de7fabb
ima: extend ima_get_action() to return the policy pcr
|
9 years ago |
Eric Richter
|
0260643ce8
ima: add policy support for extending different pcrs
|
9 years ago |
Andy Shevchenko
|
b8b572789c
security/integrity/ima/ima_policy.c: use %pU to output UUID in printable format
|
9 years ago |
Mimi Zohar
|
cf90ea9340
ima: fix the string representation of the LSM/IMA hook enumeration ordering
|
9 years ago |
Mimi Zohar
|
95ee08fa37
ima: require signed IMA policy
|
9 years ago |
Mimi Zohar
|
19f8a84713
ima: measure and appraise the IMA policy itself
|
9 years ago |
Mimi Zohar
|
d9ddf077bb
ima: support for kexec image and initramfs
|
9 years ago |
Mimi Zohar
|
c6af8efe97
ima: remove firmware and module specific cached status info
|
9 years ago |
Mimi Zohar
|
cf22221786
ima: define a new hook to measure and appraise a file already in memory
|
9 years ago |
Mimi Zohar
|
4ad87a3d74
ima: use "ima_hooks" enum as function argument
|
9 years ago |
Mimi Zohar
|
b5269ab3e2
ima: refactor ima_policy_show() to display "ima_hooks" rules
|
9 years ago |
Colin Ian King
|
c75d8e96f3
IMA: fix non-ANSI declaration of ima_check_policy()
|
9 years ago |
Sasha Levin
|
0112721df4
IMA: policy can be updated zero times
|
9 years ago |
Mimi Zohar
|
6ad6afa146
ima: update appraise flags after policy update completes
|
9 years ago |
Petko Manolov
|
80eae209d6
IMA: allow reading back the current IMA policy
|
9 years ago |
Petko Manolov
|
38d859f991
IMA: policy can now be updated multiple times
|
9 years ago |
Mimi Zohar
|
24fd03c876
ima: update builtin policies
|
10 years ago |
Mimi Zohar
|
4351c294b8
ima: extend "mask" policy matching support
|
10 years ago |
Mimi Zohar
|
139069eff7
ima: add support for new "euid" policy condition
|
10 years ago |
Mimi Zohar
|
cd025f7f94
ima: do not measure or appraise the NSFS filesystem
|
10 years ago |
Roberto Sassu
|
6438de9f3f
ima: skip measurement of cgroupfs files and update documentation
|
10 years ago |
Dan Carpenter
|
5577857f8e
ima: cleanup ima_init_policy() a little
|
10 years ago |
Dmitry Kasatkin
|
c57782c13e
ima: require signature based appraisal
|
10 years ago |
Dmitry Kasatkin
|
0716abbb58
ima: use atomic bit operations to protect policy update interface
|
11 years ago |
Dmitry Kasatkin
|
7178784f0a
ima: ignore empty and with whitespaces policy lines
|
11 years ago |
Dmitry Kasatkin
|
272a6e90ff
ima: no need to allocate entry for comment
|
11 years ago |
Roberto Sassu
|
a756024efe
ima: added ima_policy_flag variable
|
11 years ago |
Mimi Zohar
|
5a9196d715
ima: add support for measuring and appraising firmware
|
11 years ago |
Richard Guy Briggs
|
7e9001f663
audit: fix dangling keywords in integrity ima message output
|
11 years ago |
Mimi Zohar
|
f9b2a735bd
ima: audit log files opened with O_DIRECT flag
|
11 years ago |