Toggle navigation
Patchwork
Security modules development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Submitter =
Mimi Zohar
| State =
Action Required
| 198 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
holtmann
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
cvaroqui
jbrassow
mikulas
dtor
bmarzins
tmlind
jmberg
jmberg
mcgrof
mcgrof
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
bhelgaas
vkoul
vkoul
szlin
davejiang
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
matthias_bgg
dvhart
axboe
axboe
pcmoore
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
dgc
kbingham
derosier
narmstrong
narmstrong
atull
tytso
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
pkshih
patersonc
brauner
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
broonie
broonie
broonie
mricon
mricon
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
perfinion
bbrezillon
bachradsusi
rostedt
rostedt
kholk
nbd
ebiggers
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wens
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
mani_sadhasivam
mlimonci
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
dhowells
tzungbi
conchuod
paulmck
jes
mtkaczyk
colyli
cem
pateldipen1984
iweiny
iweiny
bjorn
mhiramat
JanKiszka
jaegeuk
mraynal
aring
konradybcio
ij
Hailan
jstitt007
denkenz
denkenz
mkorenbl
jjohnson
frank_li
geliang
mdraidci
mdraidci
peluse
Apply
«
1
2
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[v6,8/8] ima: based on policy warn about loading firmware (pre-allocated buffer)
- 1 -
-
-
-
2018-07-13
Mimi Zohar
New
[v6,7/8] module: replace the existing LSM hook in init_module
3 - -
-
-
-
2018-07-13
Mimi Zohar
New
[v6,6/8] ima: add build time policy
- 1 -
-
-
-
2018-07-13
Mimi Zohar
New
[v6,5/8] ima: based on policy require signed firmware (sysfs fallback)
- 1 -
-
-
-
2018-07-13
Mimi Zohar
New
[v6,4/8] firmware: add call to LSM hook before firmware sysfs fallback
1 1 -
-
-
-
2018-07-13
Mimi Zohar
New
[v6,3/8] ima: based on policy require signed kexec kernel images
- 1 -
-
-
-
2018-07-13
Mimi Zohar
New
[v6,2/8] kexec: add call to LSM hook in original kexec_load syscall
2 - -
-
-
-
2018-07-13
Mimi Zohar
New
[v6,1/8] security: define new LSM hook named security_kernel_load_data
2 - -
-
-
-
2018-07-13
Mimi Zohar
New
[v5,8/8] module: replace the existing LSM hook in init_module
2 - -
-
-
-
2018-07-02
Mimi Zohar
New
[v5,7/8] ima: based on policy warn about loading firmware (pre-allocated buffer)
- - -
-
-
-
2018-07-02
Mimi Zohar
New
[v5,6/8] ima: add build time policy
- - -
-
-
-
2018-07-02
Mimi Zohar
New
[v5,5/8] ima: based on policy require signed firmware (sysfs fallback)
- - -
-
-
-
2018-07-02
Mimi Zohar
New
[v5,4/8] firmware: add call to LSM hook before firmware sysfs fallback
1 - -
-
-
-
2018-07-02
Mimi Zohar
New
[v5,3/8] ima: based on policy require signed kexec kernel images
- - -
-
-
-
2018-07-02
Mimi Zohar
New
[v5,2/8] kexec: add call to LSM hook in original kexec_load syscall
1 - -
-
-
-
2018-07-02
Mimi Zohar
New
[v5,1/8] security: define new LSM hook named security_kernel_load_data
1 - -
-
-
-
2018-07-02
Mimi Zohar
New
[v4a,8/8] module: replace the existing LSM hook in init_module
2 - -
-
-
-
2018-05-31
Mimi Zohar
New
[v4,8/8] module: replace the existing LSM hook in init_module
- - -
-
-
-
2018-05-29
Mimi Zohar
New
[RFC,v4,7/8] ima: based on policy prevent loading firmware (pre-allocated buffer)
- - -
-
-
-
2018-05-29
Mimi Zohar
New
[v4,6/8] ima: add build time policy
- - -
-
-
-
2018-05-29
Mimi Zohar
New
[v4,5/8] ima: based on policy require signed firmware (sysfs fallback)
- - -
-
-
-
2018-05-29
Mimi Zohar
New
[v4,4/8] firmware: add call to LSM hook before firmware sysfs fallback
1 - -
-
-
-
2018-05-29
Mimi Zohar
New
[v4,3/8] ima: based on policy require signed kexec kernel images
- - -
-
-
-
2018-05-29
Mimi Zohar
New
[v4,2/8] kexec: add call to LSM hook in original kexec_load syscall
1 - -
-
-
-
2018-05-29
Mimi Zohar
New
[v4,1/8] security: define new LSM hook named security_kernel_load_data
1 - -
-
-
-
2018-05-29
Mimi Zohar
New
[RFC,v3,7/7] ima: based on policy prevent loading firmware (pre-allocated buffer)
- - -
-
-
-
2018-05-24
Mimi Zohar
New
[v3,6/7] ima: add build time policy
- - -
-
-
-
2018-05-24
Mimi Zohar
New
[v3,5/7] ima: based on policy require signed firmware (sysfs fallback)
- - -
-
-
-
2018-05-24
Mimi Zohar
New
[v3,4/7] firmware: add call to LSM hook before firmware sysfs fallback
- - -
-
-
-
2018-05-24
Mimi Zohar
New
[v3,3/7] ima: based on policy require signed kexec kernel images
- - -
-
-
-
2018-05-24
Mimi Zohar
New
[v3,2/7] kexec: add call to LSM hook in original kexec_load syscall
- - -
-
-
-
2018-05-24
Mimi Zohar
New
[v3,1/7] security: rename security_kernel_read_file() hook
- - -
-
-
-
2018-05-24
Mimi Zohar
New
[v2,9/9] ima: based on policy prevent loading firmware (pre-allocated buffer)
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,8/9] ima: add build time policy
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,7/9] ima: based on policy require signed firmware (sysfs fallback)
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,6/9] firmware: add call to LSM hook before firmware sysfs fallback
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,5/9] ima: based on policy require signed kexec kernel images
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,4/9] kexec: add call to LSM hook in original kexec_load syscall
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,3/9] security: define security_kernel_read_blob() wrapper
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,2/9] ima: fix updating the ima_appraise flag
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[v2,1/9] ima: based on policy verify firmware signatures (pre-allocated buffer)
- - -
-
-
-
2018-05-17
Mimi Zohar
New
[3/3] ima: based on policy require signed kexec kernel images
- - -
-
-
-
2018-05-11
Mimi Zohar
New
[2/3] kexec: call LSM hook for kexec_load syscall
- - -
-
-
-
2018-05-11
Mimi Zohar
New
[1/3] ima: based on the "secure_boot" policy limit syscalls
- - -
-
-
-
2018-05-11
Mimi Zohar
New
[RFC,6/6] ima: prevent loading firmware into a pre-allocated buffer
- - -
-
-
-
2018-05-01
Mimi Zohar
New
[5/6] ima: verify kernel firmware signatures when using a preallocated buffer
- - -
-
-
-
2018-05-01
Mimi Zohar
New
[4/6] ima: coordinate with signed regulatory.db
- - -
-
-
-
2018-05-01
Mimi Zohar
New
[3/6] firmware: differentiate between signed regulatory.db and other firmware
- - -
-
-
-
2018-05-01
Mimi Zohar
New
[2/6] ima: prevent sysfs fallback firmware loading
- - -
-
-
-
2018-05-01
Mimi Zohar
New
[1/6] firmware: permit LSMs and IMA to fail firmware sysfs fallback loading
- - -
-
-
-
2018-05-01
Mimi Zohar
New
lockdown: fix coordination of kernel module signature verification
1 - -
-
-
-
2018-04-13
Mimi Zohar
New
[3/3] ima: based on policy require signed kexec kernel images
- - -
-
-
-
2018-04-12
Mimi Zohar
New
[2/3] kexec: call LSM hook for kexec_load syscall
- - -
-
-
-
2018-04-12
Mimi Zohar
New
[1/3] ima: based on the "secure_boot" policy limit syscalls
- - -
-
-
-
2018-04-12
Mimi Zohar
New
[v3,4/4] fuse: define the filesystem as untrusted
2 - -
-
-
-
2018-03-08
Mimi Zohar
New
[v3,3/4] ima: fail signature verification based on policy
2 - -
-
-
-
2018-03-08
Mimi Zohar
New
[v3,2/4] ima: re-evaluate files on privileged mounted filesystems
2 - -
-
-
-
2018-03-08
Mimi Zohar
New
[v3,1/4] ima: fail file signature verification on non-init mounted filesystems
2 - -
-
-
-
2018-03-08
Mimi Zohar
New
[v2,4/4] fuse: define the filesystem as untrusted
- - -
-
-
-
2018-02-22
Mimi Zohar
New
[v2,3/4] ima: fail signature verification based on policy
- - -
-
-
-
2018-02-22
Mimi Zohar
New
[v2,2/4] ima: re-evaluate files on privileged mounted filesystems
- - -
-
-
-
2018-02-22
Mimi Zohar
New
[v2,1/4] ima: fail file signature verification on non-init mounted filesystems
- - -
-
-
-
2018-02-22
Mimi Zohar
New
[v1,2/2] fuse: define the filesystem as untrusted
- - -
-
-
-
2018-02-19
Mimi Zohar
New
[v1,1/2] ima: fail signature verification on untrusted filesystems
- - -
-
-
-
2018-02-19
Mimi Zohar
New
[RFC,4/4] fuse: define the filesystem as untrusted
- - -
-
-
-
2018-02-14
Mimi Zohar
New
[RFC,3/4] ima: define a new policy option named "fail"
- - -
-
-
-
2018-02-14
Mimi Zohar
New
[RFC,2/4] ima: fail signature verification on unprivileged & untrusted filesystems
1 - -
-
-
-
2018-02-14
Mimi Zohar
New
[RFC,1/4] ima: define a new policy condition based on the filesystem name
- - -
-
-
-
2018-02-14
Mimi Zohar
New
[RFC] ima: force the re-evaluation of files on untrusted file systems
- - -
-
-
-
2018-02-05
Mimi Zohar
New
[RFC] rootfs: force mounting rootfs as tmpfs
- - -
-
-
-
2018-01-30
Mimi Zohar
New
ima: define new policy condition based on the filesystem name
- - -
-
-
-
2018-01-15
Mimi Zohar
New
[RFC,v1] fw_lockdown: new micro LSM module to prevent loading unsigned firmware
- - -
-
-
-
2017-11-10
Mimi Zohar
New
[RFC] fw_lockdown: new micro LSM module to prevent loading unsigned firmware
- - -
-
-
-
2017-11-10
Mimi Zohar
New
MAINTAINERS: update the IMA, EVM, trusted-keys, encrypted-keys entries
- - -
-
-
-
2017-11-03
Mimi Zohar
New
[RFC] ima: require secure_boot rules in lockdown mode
- - -
-
-
-
2017-10-23
Mimi Zohar
New
vfs: fix mounting a filesystem with i_version
- - -
-
-
-
2017-10-08
Mimi Zohar
New
[RFC,3/3] fs: detect that the i_rwsem has already been taken exclusively
- - -
-
-
-
2017-09-28
Mimi Zohar
New
[RFC,2/3] integrity: use call_read_iter to calculate the file hash
- - -
-
-
-
2017-09-28
Mimi Zohar
New
[RFC,1/3] fs: define new read_iter rwf flag
- - -
-
-
-
2017-09-28
Mimi Zohar
New
[2/2] integrity: replace call to integrity_read_file with kernel version
- - -
-
-
-
2017-09-13
Mimi Zohar
New
[1/2] vfs: constify path argument to kernel_read_file_from_path
- - -
-
-
-
2017-09-13
Mimi Zohar
New
[RFC,4/4] ima: define a new ima_sb_post_remount hook
- - -
-
-
-
2017-08-16
Mimi Zohar
New
[RFC,3/4] security: define a new LSM sb_post_remount hook
- - -
-
-
-
2017-08-16
Mimi Zohar
New
[RFC,2/4] ima: define new ima_sb_post_new_mount hook
- 1 -
-
-
-
2017-08-16
Mimi Zohar
New
[RFC,1/4] security: define new LSM sb_post_new_mount hook
- - -
-
-
-
2017-08-16
Mimi Zohar
New
[v6,6/6] ima: define "fs_unsafe" builtin policy
- - -
-
-
-
2017-08-15
Mimi Zohar
New
[v6,5/6] ima: define "dont_failsafe" policy action rule
- - -
-
-
-
2017-08-15
Mimi Zohar
New
[v6,4/6] ima: use fs method to read integrity data
- 1 -
-
-
-
2017-08-15
Mimi Zohar
New
[v6,3/6] ima: always measure and audit files in policy
- - -
-
-
-
2017-08-15
Mimi Zohar
New
[v6,2/6] efivarfs: replaces the read file operation with read_iter
- 1 -
-
-
-
2017-08-15
Mimi Zohar
New
[v6,1/6] libfs: define simple_read_iter_from_buffer
- 1 -
-
-
-
2017-08-15
Mimi Zohar
New
[v5,4/4] ima: define "fs_unsafe" builtin policy
- - -
-
-
-
2017-08-10
Mimi Zohar
New
[v5,3/4] ima: define "dont_failsafe" policy action rule
- - -
-
-
-
2017-08-10
Mimi Zohar
New
[v5,2/4] ima: use fs method to read integrity data
- - -
-
-
-
2017-08-10
Mimi Zohar
New
[v5,1/4] ima: always measure and audit files in policy
- - -
-
-
-
2017-08-10
Mimi Zohar
New
[v4,2/5] ima: use fs method to read integrity data [updated]
- - -
-
-
-
2017-08-01
Mimi Zohar
New
[v4,5/5] ima: remove permit_directio policy option
- - -
-
-
-
2017-07-26
Mimi Zohar
New
[v4,4/5] ima: define "fs_unsafe" builtin policy
- - -
-
-
-
2017-07-26
Mimi Zohar
New
[v4,3/5] ima: define "dont_failsafe" policy action rule
- - -
-
-
-
2017-07-26
Mimi Zohar
New
[v4,2/5] ima: use fs method to read integrity data
- - -
-
-
-
2017-07-26
Mimi Zohar
New
«
1
2
»