Show patches with: Archived = No       |   515 patches
« 1 2 3 45 6 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RFC,2/2] evm: Add kernel parameter to disable EVM ima: evm: Add kernel cmdline options to disable IMA/EVM - - - --- 2024-12-17 Song Liu New
[RFC,1/2] ima: Add kernel parameter to disable IMA ima: evm: Add kernel cmdline options to disable IMA/EVM - - - --- 2024-12-17 Song Liu New
[v2,8/8,RFC] ima_kexec.sh: Relax result on unreadable policy to TCONF LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v2,7/8] ima_violations.sh: Check for a required policy LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v2,6/8] IMA: Add example policy for ima_violations.sh LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v2,5/8] ima_kexec.sh: Move checking policy if readable to ima_setup.sh LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v2,4/8] ima_setup: Print warning when policy not readable LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v2,3/8] tst_test.sh: IMA: Allow to disable LSM warnings and use it for IMA LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v2,2/8] ima_setup.sh: Allow to load predefined policy LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v2,1/8] IMA: Add TCB policy as an example for ima_measurements.sh LTP tests: load predefined policy, enhancements - - - --- 2024-12-13 Petr Vorel New
[v23,8/8] ima: instantiate the bprm_creds_for_exec() hook Script execution control (was O_MAYEXEC) - 1 1 --- 2024-12-12 Mickaël Salaün New
[v23,7/8] samples/check-exec: Add an enlighten "inc" interpreter and 28 tests Script execution control (was O_MAYEXEC) - - - --- 2024-12-12 Mickaël Salaün New
[v23,6/8] selftests: ktap_helpers: Fix uninitialized variable Script execution control (was O_MAYEXEC) - - - --- 2024-12-12 Mickaël Salaün New
[v23,5/8] samples/check-exec: Add set-exec Script execution control (was O_MAYEXEC) - - - --- 2024-12-12 Mickaël Salaün New
[v23,4/8] selftests/landlock: Add tests for execveat + AT_EXECVE_CHECK Script execution control (was O_MAYEXEC) - - - --- 2024-12-12 Mickaël Salaün New
[v23,3/8] selftests/exec: Add 32 tests for AT_EXECVE_CHECK and exec securebits Script execution control (was O_MAYEXEC) - - - --- 2024-12-12 Mickaël Salaün New
[v23,2/8] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits Script execution control (was O_MAYEXEC) - 2 1 --- 2024-12-12 Mickaël Salaün New
[v23,1/8] exec: Add a new AT_EXECVE_CHECK flag to execveat(2) Script execution control (was O_MAYEXEC) 1 2 1 --- 2024-12-12 Mickaël Salaün New
[v3] doc: correct the build steps for open_posix_testsuite [v3] doc: correct the build steps for open_posix_testsuite - 2 - --- 2024-12-11 Xiubo Li New
tpm/eventlog: Limit memory allocations for event logs with excessive size tpm/eventlog: Limit memory allocations for event logs with excessive size - - - --- 2024-12-10 Stefan Berger New
[3/3] x86/sev: add a SVSM vTPM platform device Enlightened vTPM support for SVSM on SEV-SNP - - - --- 2024-12-10 Stefano Garzarella New
[2/3] x86/sev: add SVSM call macros for the vTPM protocol Enlightened vTPM support for SVSM on SEV-SNP - - - --- 2024-12-10 Stefano Garzarella New
[1/3] tpm: add generic platform device Enlightened vTPM support for SVSM on SEV-SNP - - - --- 2024-12-10 Stefano Garzarella New
[v22,8/8] ima: instantiate the bprm_creds_for_exec() hook Script execution control (was O_MAYEXEC) - 1 - --- 2024-12-05 Mickaël Salaün New
[v22,7/8] samples/check-exec: Add an enlighten "inc" interpreter and 28 tests Script execution control (was O_MAYEXEC) - - - --- 2024-12-05 Mickaël Salaün New
[v22,6/8] selftests: ktap_helpers: Fix uninitialized variable Script execution control (was O_MAYEXEC) - - - --- 2024-12-05 Mickaël Salaün New
[v22,5/8] samples/check-exec: Add set-exec Script execution control (was O_MAYEXEC) - - - --- 2024-12-05 Mickaël Salaün New
[v22,4/8] selftests/landlock: Add tests for execveat + AT_EXECVE_CHECK Script execution control (was O_MAYEXEC) - - - --- 2024-12-05 Mickaël Salaün New
[v22,3/8] selftests/exec: Add 32 tests for AT_EXECVE_CHECK and exec securebits Script execution control (was O_MAYEXEC) - - - --- 2024-12-05 Mickaël Salaün New
[v22,2/8] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits Script execution control (was O_MAYEXEC) - 2 1 --- 2024-12-05 Mickaël Salaün New
[v22,1/8] exec: Add a new AT_EXECVE_CHECK flag to execveat(2) Script execution control (was O_MAYEXEC) 1 2 1 --- 2024-12-05 Mickaël Salaün New
[v2] ima: instantiate the bprm_creds_for_exec() hook [v2] ima: instantiate the bprm_creds_for_exec() hook - - - --- 2024-12-04 Mimi Zohar New
[v2] ima: instantiate the bprm_creds_for_exec() hook [v2] ima: instantiate the bprm_creds_for_exec() hook - - 1 --- 2024-12-03 Mimi Zohar New
[v2] doc: correct the build steps for open_posix_testsuite [v2] doc: correct the build steps for open_posix_testsuite - - - --- 2024-12-02 Xiubo Li New
[v2,7/7] ima: Reset IMA_NONACTION_RULE_FLAGS after post_setattr ima: Remove unnecessary inode locks - - - --- 2024-11-28 Roberto Sassu New
[v2,6/7] ima: Discard files opened with O_PATH ima: Remove unnecessary inode locks - - - --- 2024-11-28 Roberto Sassu New
[v2,5/7] ima: Set security.ima on file close when ima_appraise=fix ima: Remove unnecessary inode locks - - - --- 2024-11-28 Roberto Sassu New
[v2,4/7] ima: Mark concurrent accesses to the iint pointer in the inode security blob ima: Remove unnecessary inode locks - - - --- 2024-11-28 Roberto Sassu New
[v2,3/7] ima: Ensure lock is held when setting iint pointer in inode security blob ima: Remove unnecessary inode locks - - - --- 2024-11-28 Roberto Sassu New
[v2,2/7] ima: Remove inode lock ima: Remove unnecessary inode locks - 1 - --- 2024-11-28 Roberto Sassu New
[v2,1/7] fs: ima: Remove S_IMA and IS_IMA() ima: Remove unnecessary inode locks 1 1 - --- 2024-11-28 Roberto Sassu New
ima: instantiate the bprm_creds_for_exec() hook ima: instantiate the bprm_creds_for_exec() hook - - - --- 2024-11-27 Mimi Zohar New
[RFC] ima: instantiate the bprm_creds_for_exec() hook [RFC] ima: instantiate the bprm_creds_for_exec() hook - - - --- 2024-11-27 Mimi Zohar New
IMA,LSM: Uncover hidden variable in ima_match_rules() IMA,LSM: Uncover hidden variable in ima_match_rules() - 1 - --- 2024-11-26 Casey Schaufler New
[3/3] ima_{kexec,keys,selinux}: Set minimal kernel version LTP tests: load predefined policy - 1 - --- 2024-11-26 Petr Vorel New
[2/3] ima_setup.sh: Allow to load predefined policy LTP tests: load predefined policy - - - --- 2024-11-26 Petr Vorel New
[1/3] ima: Add TCB policy as an example LTP tests: load predefined policy - - - --- 2024-11-26 Petr Vorel New
[GIT,PULL] TPM DEVICE DRIVER: linux-next-6.13-rc1 [GIT,PULL] TPM DEVICE DRIVER: linux-next-6.13-rc1 - - - --- 2024-11-21 Jarkko Sakkinen New
[v2] ima: kexec: silence RCU list traversal warning [v2] ima: kexec: silence RCU list traversal warning - - - --- 2024-11-21 Breno Leitao New
[RFC,v4,9/9] ima: Use digest caches for appraisal ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,8/9] ima: Use digest caches for measurement ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,7/9] ima: Load verified usage from digest cache found from query ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,6/9] ima: Store verified usage in digest cache based on integrity metadata flags ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,5/9] ima: Retrieve digest cache and check if changed ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,4/9] ima: Modify existing boot-time built-in policies with digest cache policies ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,3/9] ima: Add digest_cache_measure/appraise boot-time built-in policies ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,2/9] ima: Add digest_cache policy keyword ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[RFC,v4,1/9] ima: Introduce hook DIGEST_LIST_CHECK ima: Integrate with Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,15/15] docs: Add documentation of the Integrity Digest Cache integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,14/15] selftests/digest_cache: Add selftests for the Integrity Digest Cache integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,13/15] digest_cache: Reset digest cache on file/directory change integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,12/15] digest cache: Prefetch digest lists if requested integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,11/15] digest_cache: Add support for directories integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,10/15] digest_cache: Add management of verification data integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,09/15] digest_cache: Populate the digest cache from a digest list integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,08/15] digest_cache: Parse tlv digest lists integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,07/15] digest_cache: Allow registration of digest list parsers integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,06/15] digest_cache: Add hash tables and operations integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,05/15] digest_cache: Add securityfs interface integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,04/15] digest_cache: Initialize digest caches integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,03/15] integrity: Introduce the Integrity Digest Cache integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,02/15] module: Introduce ksys_finit_module() integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
[v6,01/15] lib: Add TLV parser integrity: Introduce the Integrity Digest Cache - - - --- 2024-11-19 Roberto Sassu New
doc: correct the build steps for open_posix_testsuite doc: correct the build steps for open_posix_testsuite - - - --- 2024-11-19 Xiubo Li New
[v3] ima: Suspend PCR extends and log appends when rebooting [v3] ima: Suspend PCR extends and log appends when rebooting - - - --- 2024-11-18 Stefan Berger New
KEYS: trusted: dcp: fix improper sg use with CONFIG_VMAP_STACK=y KEYS: trusted: dcp: fix improper sg use with CONFIG_VMAP_STACK=y - - - --- 2024-11-13 David Gstir New
[GIT,PULL] TPM DEVICE DRIVER: tpmdd-next-6.12-rc8 [GIT,PULL] TPM DEVICE DRIVER: tpmdd-next-6.12-rc8 - - - --- 2024-11-13 Jarkko Sakkinen New
tpm: Disable TPM on tpm2_create_primary() failure tpm: Disable TPM on tpm2_create_primary() failure - - - --- 2024-11-13 Jarkko Sakkinen New
[v3] tpm: Opt-in in disable PCR integrity protection [v3] tpm: Opt-in in disable PCR integrity protection - - 1 --- 2024-11-13 Jarkko Sakkinen New
[v21,6/6] samples/check-exec: Add an enlighten "inc" interpreter and 28 tests Script execution control (was O_MAYEXEC) - - - --- 2024-11-12 Mickaël Salaün New
[v21,5/6] samples/check-exec: Add set-exec Script execution control (was O_MAYEXEC) - - - --- 2024-11-12 Mickaël Salaün New
[v21,4/6] selftests/landlock: Add tests for execveat + AT_EXECVE_CHECK Script execution control (was O_MAYEXEC) - - - --- 2024-11-12 Mickaël Salaün New
[v21,3/6] selftests/exec: Add 32 tests for AT_EXECVE_CHECK and exec securebits Script execution control (was O_MAYEXEC) - - - --- 2024-11-12 Mickaël Salaün New
[v21,2/6] security: Add EXEC_RESTRICT_FILE and EXEC_DENY_INTERACTIVE securebits Script execution control (was O_MAYEXEC) - 1 - --- 2024-11-12 Mickaël Salaün New
[v21,1/6] exec: Add a new AT_EXECVE_CHECK flag to execveat(2) Script execution control (was O_MAYEXEC) 1 1 - --- 2024-11-12 Mickaël Salaün New
[v2] ima: Suspend PCR extends and log appends when rebooting [v2] ima: Suspend PCR extends and log appends when rebooting - 1 - --- 2024-11-12 Stefan Berger New
[GIT,PULL] integrity: subsystem fixes for v6.12 [GIT,PULL] integrity: subsystem fixes for v6.12 - - - --- 2024-11-12 Mimi Zohar New
tpm: Remove the documentation from tpm2-sessions.c tpm: Remove the documentation from tpm2-sessions.c - - - --- 2024-11-07 Jarkko Sakkinen New
tpm/eventlog: Use kvmalloc() for event log buffer tpm/eventlog: Use kvmalloc() for event log buffer - - - --- 2024-11-07 Takashi Iwai New
[v2] tpm: Opt-in in disable PCR integrity protection [v2] tpm: Opt-in in disable PCR integrity protection - - - --- 2024-11-07 Jarkko Sakkinen New
tpm: Opt-in in disable PCR encryption on TPM2 chips tpm: Opt-in in disable PCR encryption on TPM2 chips - - - --- 2024-11-07 Jarkko Sakkinen New
[GIT,PULL] KEYS: keys-next-6.12-rc7 [GIT,PULL] KEYS: keys-next-6.12-rc7 - - - --- 2024-11-06 Jarkko Sakkinen New
ima: kexec: Add RCU read lock protection for ima_measurements list traversal ima: kexec: Add RCU read lock protection for ima_measurements list traversal - - - --- 2024-11-04 Breno Leitao New
[GIT,PULL] TPM DEVICE DRIVER: tpmdd-next-6.12-rc7 [GIT,PULL] TPM DEVICE DRIVER: tpmdd-next-6.12-rc7 - - - --- 2024-11-04 Jarkko Sakkinen New
[RFC,4/4] tpm: sysfs: Show locality used by kernel Alternative TPM patches for Trenchboot - - - --- 2024-11-02 Jarkko Sakkinen New
[RFC,3/4] tpm, tpm_tis: allow to set locality to a different value Alternative TPM patches for Trenchboot - - - --- 2024-11-02 Jarkko Sakkinen New
[RFC,2/4] tpm, tpm_tis: Address positive localities in tpm_tis_request_locality() Alternative TPM patches for Trenchboot - - - --- 2024-11-02 Jarkko Sakkinen New
[RFC,1/4] tpm, tpm_tis: Close all localities Alternative TPM patches for Trenchboot - - - --- 2024-11-02 Jarkko Sakkinen New
[RFC,v2,2/2] tpm: show the default locality in sysfs [RFC,v2,1/2] tpm, tpm_tis: Introduce TPM_IOC_SET_LOCALITY - - - --- 2024-11-02 Jarkko Sakkinen New
[RFC,v2,1/2] tpm, tpm_tis: Introduce TPM_IOC_SET_LOCALITY [RFC,v2,1/2] tpm, tpm_tis: Introduce TPM_IOC_SET_LOCALITY - - - --- 2024-11-02 Jarkko Sakkinen New
« 1 2 3 45 6 »