repo.or.cz
/
linux-2.6
/
btrfs-unstable.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
SELinux: Add network ingress and egress control permission checks
2008-01-29
Paul Moor
e
SELinux: Add netwo
r
k
ingress and egress c
o
n
trol permission
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
P
a
ul Moore
NetLabel: Add
a
uditi
n
g to th
e
s
tat
i
c
labeling mechanism
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Moo
r
e
Ne
t
Label:
I
ntrodu
c
e static netwo
r
k
l
abel
s
fo
r
unl
a
be
l
ed
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul M
o
ore
S
E
Lin
u
x: Al
l
ow NetLabel to directly cache
S
I
Ds
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Pau
l
Moore
S
E
Linux: Enable dynami
c
enable/disable of the network
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
P
a
ul Moore
SE
L
inux:
B
etter integration
betwee
n
peer
lab
e
ling su
b
s
yste
m
s
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Mo
o
r
e
SELinux: Add a new
p
eer class and
p
e
r
missions
to
the
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Pa
u
l M
o
o
re
SELin
u
x
: Add a capabilities bitmap to SELinux policy
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul M
o
or
e
SE
L
i
n
ux: Add a network n
o
de caching mech
a
nism sim
i
lar
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Moor
e
SELinux: On
l
y store the network interface
'
s ifindex
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Moore
SELinux: Convert
t
he netif co
d
e to use ifinde
x
value
s
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Moore
Ne
t
L
abel
:
Ad
d
IP a
d
dress family info
r
mat
i
o
n
to the
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Moor
e
NetLa
b
el: Add secid token
s
upport to
t
h
e NetLabel secattr
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Moore
NetLabel:
C
onsolida
t
e the LSM
dom
a
in
m
apping/hashing
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul M
o
o
re
N
etLa
b
el: Cleanup the LSM domain
h
a
s
h
f
u
nctions
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-29
Paul Moore
N
e
tLabel
:
Remove unneeded
R
C
U
read locks
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-28
Paul Moore
[XFRM]: Drop packets w
h
e
n replay count
e
r would o
v
e
r
flow
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-28
Paul Moore
[XFRM
]
: RFC4303 co
m
pliant auditing
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-28
P
aul Moore
[X
F
RM]: Assorted IPse
c
fixups
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-28
Paul M
o
ore
[IP
S
EC]
:
S
PD
auditi
n
g
f
i
x
t
o incl
u
de the ne
t
mas
k
/prefix
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-21
Paul Moo
r
e
s
e
l
i
nux:
f
ix
m
e
mory le
a
k in n
e
tlabel cod
e
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2008-01-09
P
aul
M
o
or
e
[NET]: Clone
t
he s
k
_buff 'iif' field in __skb_clone(
)
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-12-20
Pau
l
Moor
e
[XFRM]: Audit function
argum
e
nts misordered
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-12-14
Paul Moore
[
X
FRM]:
Disp
l
ay t
h
e au
d
ited SP
I
v
a
lue in host byte
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-10-26
P
a
ul Mo
o
re
[Ne
t
La
b
el]
:
correct usage o
f
RCU locking
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-10-10
Paul Moore
[C
I
PSO
]
: remove duplicated code in the cipso_v4_*_geta
t
tr
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-08-08
Paul Moore
[NetLabel]: add missi
n
g rcu_der
e
f
erence() c
a
l
l
s in
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-08-02
Paul
Moore
Ne
t
/S
e
c
u
rity
:
fix memor
y
leaks fro
m
securit
y
_seci
d
_
to_secctx()
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-08-02
Paul Moore
S
ELi
n
ux: re
m
ove redund
a
nt pointer checks before calling
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-08-02
P
a
u
l Moo
r
e
SELi
n
ux: restore p
r
oper NetLabel
c
a
ching
b
eh
a
v
i
or
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-07-19
P
a
ul Moore
SELinux
:
use SECIN
I
TSID_NETMSG
instead of SECINITSID_U
N
LABEL
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-07-19
Paul M
o
o
re
S
ELinux: enable dynamic activati
o
n/deactivat
i
on of
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-07-12
Paul Moor
e
SELinux: use SECINITSID_NE
T
MSG instead o
f
SECINITSID_UNL
A
BEL
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-06-08
Paul Moore
[CIPSO]: Fix sev
e
ral unaligned
k
ern
e
l accesses in the
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-06-08
Pau
l
Moore
[NetLabel]: co
n
so
l
idate the stru
c
t socket/s
o
ck handling
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-04-26
P
a
ul Moore
SE
L
inux: move securi
t
y
_
skb_extlbl_sid() out
of the
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-04-26
Paul Moo
r
e
SELinux: ren
a
me selinu
x
_n
e
tlabe
l
.
h to netlabel
.
h
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-04-26
Paul
M
oore
SELinu
x
:
ext
r
ac
t
the N
e
tLabel SELinux
support f
r
om
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-04-26
Pau
l
Moore
NetL
a
bel
:
convert
a BUG_ON
in
t
h
e CIPSO code to a runtime
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-04-26
Paul
M
o
ore
NetLabel:
c
leanup and document CIPSO constants
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-03-12
Paul Mo
o
re
[NetLabe
l
]: parse the CIPSO rang
e
d
t
ag on
i
ncomi
n
g
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-03-03
Paul
M
oor
e
[NetLabel]:
Verify sensitivity level ha
s
a
valid CIPSO
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-01-09
Paul Moore
[IN
E
T]: style updates for the inet_sock->
i
s
_
icsk assignment fix
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-01-09
Paul
Moore
NetLabel: cor
r
e
ct CIPSO tag
hand
l
ing when a
d
ding
new
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-01-09
Paul Moore
Ne
t
Lab
e
l:
correct locking
i
n selinu
x
_net
l
bl_socket_setsid()
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2007-01-09
Paul Moo
r
e
[INET]: F
i
x
incorrect "i
n
e
t_sock->is_i
c
s
k" ass
i
gnment
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-22
Paul Moore
NetLabel: correct
l
y fill
in unu
s
e
d
CI
P
SO
v
4 level and
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-22
Pa
u
l
M
oore
Net
L
abel: perfo
r
m input validation earlie
r
on CI
P
SOv
4
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-07
Paul Moor
e
[NETLIK]: Add
a
pointer to the G
e
ner
i
c Netl
i
nk wiki
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
P
a
ul Moore
N
etLabel: ad
d
th
e
ranged
t
ag t
o
the CIPSOv
4
pr
o
tocol
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Moore
NetLab
e
l: ad
d
the enumera
t
ed
t
ag to the
C
I
P
SOv4 protocol
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Moore
NetLabel: con
v
ert to an exten
s
ibile/sparse cat
e
gory
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
P
aul
M
oore
NetLabel: honor the audit_enabled flag
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Mo
o
re
SELinux
:
peer sec
i
d
consolidatio
n
f
o
r external network
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Pa
u
l Moore
Ne
t
Label: SEL
i
nux cleanup
s
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul
M
oore
N
etLabel: use cipso
_
v4_doi_search
(
) for lo
c
al CIPSOv4
.
.
.
Signed-of-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Pau
l
Mo
o
re
NetLabel:
u
s
e t
h
e c
o
rrect CIPSOv4 MLS label limi
t
s
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Moore
NetL
a
bel:
r
eturn
the correct error for tr
a
nslated CIPSOv4
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
P
a
ul Moor
e
NetLabel: fixup the handling of CIPSOv4 tags
t
o allo
w
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
P
a
ul
M
oore
NetLabel: a
d
d tag v
e
rification w
h
en adding new CI
P
SOv4
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Moore
NetLabel: check for a CI
P
SOv4 option before we do call
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Mo
o
r
e
N
etLab
e
l
:
mak
e
netlbl_lsm_s
e
cat
t
r struct easier/
q
u
i
cker
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Moore
Ne
t
Label: change
n
etlbl_s
e
cattr_init() to retur
n
void
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Pa
u
l Moo
r
e
NetL
a
bel: convert the
unla
b
e
l
ed accep
t
fla
g
to use RCU
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-12-03
Paul Moore
NetLabel: us
e
gf
p
_t instead of int where it makes sense
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-11-06
Paul Moore
[NETLA
B
EL]
:
Fix bu
i
ld fail
u
re
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-10-30
Paul Moore
[
NetLabel]
:
p
rotect t
h
e
C
I
PSOv4 socket
o
ption from
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-10-16
Paul Moo
r
e
NetLabel: the CIPSOv4 pas
s
through mapping do
e
s not
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-10-16
P
a
ul Moore
NetLa
b
el: bet
t
er error h
a
ndling
involv
i
ng
m
ls_e
x
port_cat()
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-10-16
Paul Mo
o
r
e
NetL
a
bel: only deref the CI
P
SOv
4
stand
a
rd ma
p
fields
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-30
Paul Moore
[NetLabe
l
]: audit
fixups
d
u
e to delayed feedback
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-29
Paul
Mo
o
r
e
[Ne
t
L
abel]: add
audit support for conf
i
g
u
r
ation change
s
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
Paul Moor
e
[Net
L
abe
l
]: update docs wit
h
website
i
n
formation
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
P
au
l
Moore
[NetLabel]: rework the Netl
i
nk
a
t
t
r
ibute
handling
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
Paul Moor
e
[Ne
t
Labe
l
]: re
w
ork the Netl
i
nk
a
t
tribute handling
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
Paul Moore
[Netlink]: add nla_valid
a
te_nested()
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
P
a
u
l Moore
[NE
T
LIN
K
]: add nla_for
_
each_nested() to the int
e
r
face
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
Paul
M
oore
[NetLa
b
el]
:
cha
n
ge
t
he SELinux permis
s
ions
Signed-of-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
Paul Moore
[NetLabel]: make the CIPSOv
4
cach
e
spin
l
o
cks bo
t
tom
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-25
Paul Moore
[Net
L
abel]:
c
o
r
rect
i
mpro
p
er
h
andlin
g
of non-NetLabel
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul Moore
[NetLabel]: add some mis
s
ing #includes to various header
.
.
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
P
aul Mo
o
re
[NetLabel]: uninline s
e
linux_netlbl_ino
d
e_permission()
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul
M
oor
e
[NetL
a
bel]: Clean
u
p ebitma
p
_import()
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul Mo
o
re
[NetLabel]: Comment correction
s
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul Moore
[NetL
a
bel]: re
m
ove unused function prototypes
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul Moore
[NetLabel]: Correc
t
ly initialize the NetL
a
bel fields
.
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul
M
oore
[NetLabel]: tie
Ne
t
Label into the Kcon
f
ig system
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
P
a
ul Moore
[NetLa
b
el]: CIPSOv4 and
U
nlabeled p
a
cket
inte
g
ration
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul Moore
[Net
L
abel]:
core NetLabel subsys
t
em
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul Moore
[NetLabel
]
: C
I
PSOv4 engine
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
Paul Moore
[N
e
tLabel]
:
core network ch
a
nges
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree
2006-09-22
P
aul
Moore
[
N
etLab
e
l]: docume
n
ta
t
ion
Signed-off-by:
Paul Moore
<paul.moore@hp.com>
commit
|
commitdiff
|
tree