Age | Commit message (Expand) | Author |
2018-01-12 | apparmor: Fix regression in profile conflict logic | Matthew Garrett |
2017-11-21 | apparmor: fix locking when creating a new complain profile. | John Johansen |
2017-11-21 | apparmor: fix profile attachment for special unconfined profiles | John Johansen |
2017-11-21 | apparmor: ensure that undecidable profile attachments fail | John Johansen |
2017-09-23 | Merge tag 'apparmor-pr-2017-09-22' of git://git.kernel.org/pub/scm/linux/kern... | Linus Torvalds |
2017-09-22 | apparmor: add mount mediation | John Johansen |
2017-08-01 | apparmor: Refactor to remove bprm_secureexec hook | Kees Cook |
2017-08-01 | exec: Rename bprm->cred_prepared to called_set_creds | Kees Cook |
2017-06-10 | apparmor: move change_profile mediation to using labels | John Johansen |
2017-06-10 | apparmor: move change_hat mediation to using labels | John Johansen |
2017-06-10 | apparmor: move exec domain mediation to using labels | John Johansen |
2017-06-10 | apparmor: update aa_audit_file() to use labels | John Johansen |
2017-06-10 | apparmor: move ptrace checks to using labels | John Johansen |
2017-06-10 | apparmor: switch from profiles to using labels on contexts | John Johansen |
2017-06-10 | apparmor: convert aa_change_XXX bool parameters to flags | John Johansen |
2017-06-10 | apparmor: convert to profile block critical sections | John Johansen |
2017-06-10 | apparmor: move bprm_committing_creds/committed_creds to lsm.c | John Johansen |
2017-06-10 | apparmor: switch from file_perms to aa_perms | John Johansen |
2017-06-08 | apparmor: Move path lookup to using preallocated buffers | John Johansen |
2017-06-08 | apparmor: allow profiles to provide info to disconnected paths | John Johansen |
2017-02-23 | Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebi... | Linus Torvalds |
2017-01-24 | exec: Remove LSM_UNSAFE_PTRACE_CAP | Eric W. Biederman |
2017-01-16 | apparmor: convert change_profile to use fqname later to give better control | John Johansen |
2017-01-16 | apparmor: change aad apparmor_audit_data macro to a fn macro | John Johansen |
2017-01-16 | apparmor: change op from int to const char * | John Johansen |
2017-01-16 | apparmor: rename context abreviation cxt to the more standard ctx | John Johansen |
2017-01-16 | apparmor: name null-XXX profiles after the executable | John Johansen |
2017-01-16 | apparmor: rename namespace to ns to improve code line lengths | John Johansen |
2017-01-16 | apparmor: split apparmor policy namespaces code into its own file | John Johansen |
2016-11-21 | apparmor: fix change_hat not finding hat after policy replacement | John Johansen |
2016-07-12 | apparmor: ensure the target profile name is always audited | John Johansen |
2016-07-12 | apparmor: exec should not be returning ENOENT when it denies | John Johansen |
2015-05-12 | LSM: Switch to lists of hooks | Casey Schaufler |
2014-07-18 | sched: move no_new_privs into new atomic flags | Kees Cook |
2013-10-29 | apparmor: remove the "task" arg from may_change_ptraced_domain() | Oleg Nesterov |
2013-10-29 | apparmor: fix capability to not use the current task, during reporting | John Johansen |
2013-08-14 | apparmor: allow setting any profile into the unconfined state | John Johansen |
2013-08-14 | apparmor: update how unconfined is handled | John Johansen |
2013-08-14 | apparmor: change how profile replacement update is done | John Johansen |
2013-08-14 | apparmor: convert profile lists to RCU based locking | John Johansen |
2013-04-28 | apparmor: localize getting the security context to a few macros | John Johansen |
2013-04-28 | apparmor: use common fn to clear task_context for domain transitions | John Johansen |
2013-04-28 | apparmor: add utility function to get an arbitrary tasks profile. | John Johansen |
2013-04-28 | apparmor: Remove -W1 warnings | John Johansen |
2013-04-28 | apparmor: fix auditing of domain transition failures due to incomplete policy | John Johansen |
2013-02-22 | new helper: file_inode(file) | Al Viro |
2012-09-21 | userns: Convert apparmor to use kuid and kgid where appropriate | Eric W. Biederman |
2012-04-14 | Fix execve behavior apparmor for PR_{GET,SET}_NO_NEW_PRIVS | John Johansen |
2012-04-14 | Add PR_{GET,SET}_NO_NEW_PRIVS to prevent execve from granting privs | Andy Lutomirski |
2012-03-28 | apparmor: Fix change_onexec when called from a confined task | John Johansen |