summaryrefslogtreecommitdiffstats
path: root/security/apparmor/lsm.c
Commit message (Expand)AuthorAgeFilesLines
* apparmor: add stacked domain labels interfaceJohn Johansen2017-06-101-0/+5
* apparmor: mediate files when they are receivedJohn Johansen2017-06-101-0/+6
* apparmor: move path_link mediation to using labelsJohn Johansen2017-06-101-2/+1
* apparmor: refactor path name lookup and permission checks around labelsJohn Johansen2017-06-101-9/+4
* apparmor: move aa_file_perm() to use labelsJohn Johansen2017-06-101-21/+3
* apparmor: move ptrace checks to using labelsJohn Johansen2017-06-101-2/+21
* apparmor: move resource checks to using labelsJohn Johansen2017-06-101-4/+2
* apparmor: move capability checks to using labelsJohn Johansen2017-06-101-6/+14
* apparmor: switch getprocattr to using label_print fns()John Johansen2017-06-101-1/+1
* apparmor: switch from profiles to using labels on contextsJohn Johansen2017-06-101-62/+72
* apparmor: revalidate files during execJohn Johansen2017-06-101-0/+6
* apparmor: cleanup rename XXX_file_context() to XXX_file_ctx()John Johansen2017-06-101-6/+4
* apparmor: convert aa_change_XXX bool parameters to flagsJohn Johansen2017-06-101-8/+5
* apparmor: convert to profile block critical sectionsJohn Johansen2017-06-101-12/+29
* apparmor: move bprm_committing_creds/committed_creds to lsm.cJohn Johansen2017-06-101-0/+30
* apparmor: provide information about path buffer size at bootJohn Johansen2017-06-101-2/+9
* apparmor: rework perm mapping to a slightly broader setJohn Johansen2017-06-091-5/+5
* apparmor: Make path_max parameter readonlyJohn Johansen2017-04-071-1/+1
* apparmor: fix parameters so that the permission test is bypassed at bootJohn Johansen2017-04-071-25/+22
* security/apparmor/lsm.c: set debug messagesValentin Rothberg2017-04-071-1/+1
* security: mark LSM hooks as __ro_after_initJames Morris2017-03-061-1/+1
* Merge branch 'stable-4.11' of git://git.infradead.org/users/pcmoore/selinux i...James Morris2017-02-101-5/+2
|\
| * proc,security: move restriction on writing /proc/pid/attr nodes to procStephen Smalley2017-01-091-5/+2
* | LSM: Add /sys/kernel/security/lsmCasey Schaufler2017-01-191-1/+2
* | apparmor: fix undefined reference to `aa_g_hash_policy'John Johansen2017-01-161-1/+1
* | apparmor: replace remaining BUG_ON() asserts with AA_BUG()John Johansen2017-01-161-1/+1
* | apparmor: add check for apparmor enabled in module parameters missing itJohn Johansen2017-01-161-0/+10
* | apparmor: add per cpu work buffers to avoid allocating buffers at every hookJohn Johansen2017-01-161-1/+50
* | apparmor: sysctl to enable unprivileged user ns AppArmor policy loadingTyler Hicks2017-01-161-0/+47
* | apparmor: support querying extended trusted helper extra dataWilliam Hua2017-01-161-0/+1
* | apparmor: make computing policy hashes conditional on kernel parameterJohn Johansen2017-01-161-23/+23
* | apparmor: convert change_profile to use fqname later to give better controlJohn Johansen2017-01-161-6/+6
* | apparmor: change aad apparmor_audit_data macro to a fn macroJohn Johansen2017-01-161-8/+4
* | apparmor: change op from int to const char *John Johansen2017-01-161-7/+8
* | apparmor: rename context abreviation cxt to the more standard ctxJohn Johansen2017-01-161-35/+37
* | apparmor: add ns being viewed as a param to policy_admin_capable()John Johansen2017-01-161-6/+6
* | apparmor: add ns being viewed as a param to policy_view_capable()John Johansen2017-01-161-4/+4
* | apparmor: add a default null dfaJohn Johansen2017-01-161-0/+7
* | apparmor: remove paranoid load switchJohn Johansen2017-01-161-2/+3
* | apparmor: rename mediated_filesystem() to path_mediated_fs()John Johansen2017-01-161-7/+7
* | apparmor: add debug assert AA_BUG and Kconfig to control debug infoJohn Johansen2017-01-161-1/+1
* | apparmor: split apparmor policy namespaces code into its own fileJohn Johansen2017-01-161-0/+1
* | apparmor: use designated initializersKees Cook2017-01-151-3/+5
|/
* apparmor: fix SECURITY_APPARMOR_HASH_DEFAULT parameter handlingArnd Bergmann2016-07-271-1/+3
* apparmor: fix arg_size computation for when setprocattr is null terminatedJohn Johansen2016-07-121-1/+1
* apparmor: fix oops, validate buffer size in apparmor_setprocattr()Vegard Nossum2016-07-121-17/+19
* apparmor: fix module parameters can be changed after policy is lockedJohn Johansen2016-07-121-12/+10
* apparmor: add parameter to control whether policy hashing is usedJohn Johansen2016-07-121-0/+4
* constify security_path_{link,rename}Al Viro2016-03-281-3/+3
* apparmor: remove useless checks for NULL ->mntAl Viro2016-03-281-2/+2
OpenPOWER on IntegriCloud