Show patches with: Series = Kernel lockdown functionality       |    State = Action Required       |   29 patches
Patch Series A/R/T S/W/F Date Submitter Delegate State
[V35,29/29] lockdown: Print current->comm in restriction messages Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down Kernel lockdown functionality 1 1 - --- 2019-07-15 Matthew Garrett New
[V35,27/29] tracefs: Restrict tracefs when the kernel is locked down Kernel lockdown functionality - - - --- 2019-07-15 Matthew Garrett New
[V35,26/29] debugfs: Restrict debugfs when the kernel is locked down Kernel lockdown functionality - - - --- 2019-07-15 Matthew Garrett New
[V35,25/29] kexec: Allow kexec_file() with appropriate IMA policy when locked down Kernel lockdown functionality 1 - - --- 2019-07-15 Matthew Garrett New
[V35,24/29] Lock down perf when in confidentiality mode Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,23/29] bpf: Restrict bpf when kernel lockdown is in confidentiality mode Kernel lockdown functionality - - - --- 2019-07-15 Matthew Garrett New
[V35,22/29] Lock down tracing and perf kprobes when in confidentiality mode Kernel lockdown functionality 1 1 - --- 2019-07-15 Matthew Garrett New
[V35,21/29] Lock down /proc/kcore Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,20/29] x86/mmiotrace: Lock down the testmmiotrace module Kernel lockdown functionality 1 - - --- 2019-07-15 Matthew Garrett New
[V35,19/29] Lock down module params that specify hardware parameters (eg. ioport) Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,18/29] Lock down TIOCSSERIAL Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,17/29] Prohibit PCMCIA CIS storage when the kernel is locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,16/29] acpi: Disable ACPI table override if the kernel is locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,15/29] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,14/29] ACPI: Limit access to custom_method when the kernel is locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,13/29] x86/msr: Restrict MSR access when the kernel is locked down Kernel lockdown functionality 1 1 - --- 2019-07-15 Matthew Garrett New
[V35,12/29] x86: Lock down IO port access when the kernel is locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,11/29] PCI: Lock down BAR access when the kernel is locked down Kernel lockdown functionality 1 1 - --- 2019-07-15 Matthew Garrett New
[V35,10/29] hibernate: Disable when the kernel is locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,09/29] kexec_file: Restrict at runtime if the kernel is locked down Kernel lockdown functionality - 2 - --- 2019-07-15 Matthew Garrett New
[V35,08/29] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE Kernel lockdown functionality - 2 - --- 2019-07-15 Matthew Garrett New
[V35,07/29] Copy secure_boot flag in boot params across kexec reboot Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,06/29] kexec_load: Disable at runtime if the kernel is locked down Kernel lockdown functionality 1 1 - --- 2019-07-15 Matthew Garrett New
[V35,05/29] Restrict /dev/{mem,kmem,port} when the kernel is locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,04/29] Enforce module signatures if the kernel is locked down Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,03/29] security: Add a static lockdown policy LSM Kernel lockdown functionality - 1 - --- 2019-07-15 Matthew Garrett New
[V35,02/29] security: Add a "locked down" LSM hook Kernel lockdown functionality 1 - - --- 2019-07-15 Matthew Garrett New
[V35,01/29] security: Support early LSMs Kernel lockdown functionality 1 - - --- 2019-07-15 Matthew Garrett New