Show patches with: Submitter = Stephen Smalley       |    Archived = No       |   391 patches
« 1 2 3 4 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RFC,44/44] selinux: fix inode initialization when no namespace is initialized SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,43/44] selinux: introduce a Kconfig option for SELinux namespaces SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,42/44] selinux: exempt creation of init SELinux namespace from limits SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,41/44] selinux: allow userspace to detect non-init SELinux namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,40/44] selinux: init inode from nearest initialized namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,39/44] selinux: defer inode init on current selinux state SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,38/44] selinux: convert nlmsg_sock_has_extended_perms() to namespace-aware SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,37/44] selinux: disallow writes to /sys/fs/selinux/user in non-init namespaces SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,36/44] selinux: set initial SID context for init to "kernel" in global SID table SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,35/44] selinux: split cred_ssid_has_perm() into two cases SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,34/44] selinux: make open_perms namespace-aware SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,33/44] selinux: refactor selinux_state_create() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,32/44] selinux: limit selinux netlink notifications to init namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,31/44] selinux: fix namespace creation SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,30/44] selinux: add limits for SELinux namespaces SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,29/44] selinux: switch selinux_lsm_setattr() checks to current namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,28/44] selinux: convert xfrm and netlabel permission checks SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,27/44] selinux: annotate process transition permission checks SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,26/44] selinux: annotate selinuxfs permission checks SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,25/44] selinux: introduce selinux_state_has_perm() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,24/44] selinux: convert additional checks to cred_ssid_has_perm() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,23/44] selinux: rename cred_has_perm*() to cred_tsid_has_perm*() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,22/44] selinux: convert selinux_file_send_sigiotask() to namespace-aware helper SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,21/44] selinux: add kerneldoc to new permission checking functions SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,20/44] selinux: update bprm hooks for selinux namespaces SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,19/44] selinux: fix selinux_lsm_getattr() check SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,18/44] selinux: introduce task_obj_perm() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,17/44] selinux: introduce cred_ssid_has_perm() and cred_other_has_perm() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,16/44] selinux: introduce cred_has_perm() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,15/44] selinux: introduce cred_self_has_perm() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,14/44] selinux: introduce cred_has_extended_perms() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,13/44] selinux: introduce cred_task_has_perm() SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,12/44] selinux: update hook functions to use correct selinux namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,11/44] selinux: wrap security server interfaces to use the global SID table SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,10/44] selinux: introduce a global SID table SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,09/44] selinuxfs: restrict write operations to the same selinux namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,08/44] selinux: add a selinuxfs interface to unshare selinux namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,07/44] selinux: introduce cred_selinux_state() and use it SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,06/44] selinux: support per-task/cred selinux namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,05/44] netstate,selinux: create the selinux netlink socket per network namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,04/44] selinux: dynamically allocate selinux namespace SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,03/44] selinux: support multiple selinuxfs instances SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,02/44] selinux: introduce current_selinux_state SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[RFC,01/44] selinux: restore passing of selinux_state SELinux namespace support - - - --- 2025-01-02 Stephen Smalley pcmoore New
[v2] selinux: Deprecate /sys/fs/selinux/user [v2] selinux: Deprecate /sys/fs/selinux/user - - - --- 2024-10-04 Stephen Smalley pcmoore Accepted
libselinux: formally deprecate security_compute_user() libselinux: formally deprecate security_compute_user() 1 - - --- 2024-10-04 Stephen Smalley bachradsusi Accepted
selinux: Deprecate /sys/fs/selinux/user selinux: Deprecate /sys/fs/selinux/user - - - --- 2024-10-04 Stephen Smalley pcmoore Superseded
[testsuite,v2] tests/extended_socket_class: test SMC sockets [testsuite,v2] tests/extended_socket_class: test SMC sockets - - - --- 2024-08-29 Stephen Smalley omos Accepted
[testsuite] policy,tests: add tests for netlink xperms [testsuite] policy,tests: add tests for netlink xperms - - 1 --- 2024-08-28 Stephen Smalley omos Accepted
selinux: annotate false positive data race to avoid KCSAN warnings selinux: annotate false positive data race to avoid KCSAN warnings - - - --- 2024-08-26 Stephen Smalley pcmoore Accepted
[testsuite] tests/extended_socket_class: test SMC sockets [testsuite] tests/extended_socket_class: test SMC sockets - 1 - --- 2024-08-16 Stephen Smalley omos Superseded
[v3,2/2,testsuite] tests/nfs_filesystem: comment out failing mount [v3,1/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-31 Stephen Smalley omos Accepted
[v3,1/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now [v3,1/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-31 Stephen Smalley omos Accepted
[v2,2/2] tests/nfs_filesystem: remove failing mount [v2,1/2] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-29 Stephen Smalley omos Superseded
[v2,1/2] tools/nfs.sh: comment out the fscontext= tests for now [v2,1/2] tools/nfs.sh: comment out the fscontext= tests for now - - - --- 2024-05-29 Stephen Smalley omos Superseded
[2/2,testsuite] tools/nfs.sh: comment out the fscontext= tests for now [1/2,testsuite] tests/nfs_filesystem: remove failing mount - - - --- 2024-05-06 Stephen Smalley omos Superseded
[1/2,testsuite] tests/nfs_filesystem: remove failing mount [1/2,testsuite] tests/nfs_filesystem: remove failing mount - - - --- 2024-05-06 Stephen Smalley omos Superseded
[v3] nfsd: set security label during create operations [v3] nfsd: set security label during create operations - 2 - --- 2024-05-03 Stephen Smalley pcmoore Handled Elsewhere
[v2] nfsd: set security label during create operations [v2] nfsd: set security label during create operations - 1 - --- 2024-05-02 Stephen Smalley pcmoore Superseded
[RFC] nfsd: set security label during create operations [RFC] nfsd: set security label during create operations - - - --- 2024-05-02 Stephen Smalley Handled Elsewhere
[v3,3/4] selinux: use vma_is_initial_stack() and vma_is_initial_heap() Untitled series #771253 1 1 - --- 2023-07-31 Stephen Smalley pcmoore Handled Elsewhere
[userspace] checkpolicy,libselinux,libsepol,policycoreutils,semodule-utils: update my email [userspace] checkpolicy,libselinux,libsepol,policycoreutils,semodule-utils: update my email 1 - - --- 2023-07-19 Stephen Smalley bachradsusi Accepted
[userspace] libselinux,policycoreutils,python,semodule-utils: de-brand SELinux [userspace] libselinux,policycoreutils,python,semodule-utils: de-brand SELinux 2 - - --- 2023-07-19 Stephen Smalley bachradsusi Accepted
selinux: update my email address selinux: update my email address - - - --- 2023-07-19 Stephen Smalley pcmoore Accepted
selinux: de-brand SELinux selinux: de-brand SELinux - - - --- 2023-07-18 Stephen Smalley pcmoore Accepted
[testsuite] policy: allow inet socket test domains to search user home content [testsuite] policy: allow inet socket test domains to search user home content - - - --- 2023-07-14 Stephen Smalley omos Rejected
selinux: stop returning node from avc_insert selinux: stop returning node from avc_insert - - - --- 2023-04-03 Stephen Smalley pcmoore Accepted
[RFC,v2] selinux: cache access vector decisions in the inode security blob [RFC,v2] selinux: cache access vector decisions in the inode security blob - - - --- 2023-03-14 Stephen Smalley pcmoore RFC
[RFC] selinux: cache access vector decisions in the inode security blob [RFC] selinux: cache access vector decisions in the inode security blob - - - --- 2023-03-10 Stephen Smalley pcmoore Superseded
[testsuite] defconfig: add FAT and GRE config options [testsuite] defconfig: add FAT and GRE config options - - - --- 2023-03-10 Stephen Smalley omos Accepted
ip.7: Document IP_PASSSEC for UDP sockets ip.7: Document IP_PASSSEC for UDP sockets - 1 - --- 2020-09-17 Stephen Smalley sds Accepted
socket.7,ip.7: Document SO_PEERSEC for AF_INET sockets socket.7,ip.7: Document SO_PEERSEC for AF_INET sockets - - - --- 2020-09-15 Stephen Smalley Accepted
[v2] socket.7,unix.7: add initial description for SO_PEERSEC [v2] socket.7,unix.7: add initial description for SO_PEERSEC - 1 - --- 2020-09-14 Stephen Smalley Accepted
socket.7,unix.7: add initial description for SO_PEERSEC socket.7,unix.7: add initial description for SO_PEERSEC - - - --- 2020-09-10 Stephen Smalley Superseded
selinux: access policycaps with READ_ONCE/WRITE_ONCE selinux: access policycaps with READ_ONCE/WRITE_ONCE - - - --- 2020-09-10 Stephen Smalley Accepted
[v2] selinux: move policy mutex to selinux_state, use in lockdep checks [v2] selinux: move policy mutex to selinux_state, use in lockdep checks - 1 - --- 2020-08-26 Stephen Smalley Accepted
selinux: move policy mutex to selinux_state, use in lockdep checks selinux: move policy mutex to selinux_state, use in lockdep checks - - - --- 2020-08-26 Stephen Smalley pcmoore Superseded
selinux: permit removing security.selinux xattr before policy load selinux: permit removing security.selinux xattr before policy load - - - --- 2020-08-20 Stephen Smalley Accepted
[RFC] selinux: enable proper lockdep checking for policy rcu access [RFC] selinux: enable proper lockdep checking for policy rcu access - - - --- 2020-08-20 Stephen Smalley pcmoore Rejected
[RFC,v4] selinux: convert policy read-write lock to RCU [RFC,v4] selinux: convert policy read-write lock to RCU - 1 - --- 2020-08-19 Stephen Smalley pcmoore Accepted
[RFC,v3] selinux: convert policy read-write lock to RCU [RFC,v3] selinux: convert policy read-write lock to RCU - - - --- 2020-08-19 Stephen Smalley Superseded
selinux: avoid dereferencing the policy prior to initialization selinux: avoid dereferencing the policy prior to initialization - - 1 --- 2020-08-19 Stephen Smalley Accepted
[RFC,v2] selinux: convert policy read-write lock to RCU [RFC,v2] selinux: convert policy read-write lock to RCU - - - --- 2020-08-18 Stephen Smalley Superseded
[RFC] selinux: convert policy read-write lock to RCU [RFC] selinux: convert policy read-write lock to RCU - - - --- 2020-08-18 Stephen Smalley Superseded
[v2] selinux: refactor changing booleans [v2] selinux: refactor changing booleans - - - --- 2020-08-11 Stephen Smalley pcmoore Accepted
[RFC] selinux: refactor changing booleans [RFC] selinux: refactor changing booleans - - - --- 2020-08-11 Stephen Smalley Superseded
[v5,2/2] selinux: move policy commit after updating selinuxfs [v5,1/2] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-07 Stephen Smalley pcmoore Accepted
[v5,1/2] selinux: encapsulate policy state, refactor policy load [v5,1/2] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-07 Stephen Smalley pcmoore Accepted
scripts/selinux,selinux: update mdp to enable policy capabilities scripts/selinux,selinux: update mdp to enable policy capabilities - - - --- 2020-08-06 Stephen Smalley pcmoore Accepted
libselinux: fix build order libselinux: fix build order - - - --- 2020-08-06 Stephen Smalley Accepted
[RFC,v2,2/2] selinux: move policy commit after updating selinuxfs [RFC,v4,1/2] selinux: encapsulate policy state, refactor policy load - - 1 --- 2020-08-05 Stephen Smalley pcmoore Superseded
[RFC,v4,1/2] selinux: encapsulate policy state, refactor policy load [RFC,v4,1/2] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-05 Stephen Smalley pcmoore Superseded
[RFC] selinux: move policy commit after updating selinuxfs [RFC] selinux: move policy commit after updating selinuxfs - - - --- 2020-08-04 Stephen Smalley Superseded
[RFC,v3] selinux: encapsulate policy state, refactor policy load [RFC,v3] selinux: encapsulate policy state, refactor policy load - - - --- 2020-08-03 Stephen Smalley Superseded
[RFC] selinux: encapsulate policy state, refactor policy load [RFC] selinux: encapsulate policy state, refactor policy load - - - --- 2020-07-30 Stephen Smalley Superseded
selinux: encapsulate policy-dependent state selinux: encapsulate policy-dependent state - - - --- 2020-07-28 Stephen Smalley Changes Requested
selinux: log error messages on required process class / permissions selinux: log error messages on required process class / permissions - - - --- 2020-06-17 Stephen Smalley Accepted
scripts/selinux/mdp: fix initial SID handling scripts/selinux/mdp: fix initial SID handling - - - --- 2020-06-17 Stephen Smalley Accepted
[testsuite] defconfig: add NETFILTER_XT_MATCH_STATE and NFS_V4_1 [testsuite] defconfig: add NETFILTER_XT_MATCH_STATE and NFS_V4_1 1 - - --- 2020-06-09 Stephen Smalley omos Accepted
libselinux: fix selinux_restorecon() statfs bug libselinux: fix selinux_restorecon() statfs bug 1 - 1 --- 2020-06-04 Stephen Smalley Accepted
« 1 2 3 4 »