repo.or.cz
/
linux-2.6
/
linux-acpi-2.6
/
ibm-acpi-2.6.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
IMA: clean up the IMA counts updating code
2009-12-16
Er
i
c Paris
IMA: clean up t
h
e IMA counts u
p
dating code
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-12-16
Eric Paris
i
ma:
o
n
ly insert at
ino
d
e creation
time
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-12-16
Eric P
a
ri
s
i
m
a: va
l
id r
e
turn
code from
i
ma_inode_alloc
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-12-16
Eric Paris
f
s: move get_empty_filp()
deffinition to internal
.
h
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-11-24
E
ric Pa
r
is
SELi
n
ux:
p
rint
d
e
nials
f
or buggy kernel with un
k
now
n
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-11-22
E
r
ic Paris
SELinux: heade
r
generati
o
n may hit
i
nfini
t
e loo
p
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-11-09
Eric
Paris
security: report
t
he modul
e
name
to secur
i
ty_mo
d
ule_request
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-11-06
Eric Pa
r
i
s
n
e
t: check ker
n
before calli
n
g security subsystem
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-11-06
E
ric Paris
net: pass kern to net_prot
o
_family create funct
i
o
n
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-11-06
Eric Paris
net: dro
p
cap
a
bility f
r
o
m protocol
de
f
initions
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-10-24
Eric Paris
SEL
i
n
ux: add
.
gitign
o
re f
i
les for d
y
namic classes
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-10-18
Eri
c
P
aris
inotif
y
:
depre
c
ate the inoti
f
y kern
e
l
interface
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-10-18
Eric
Paris
fsnotify: do no
t
set group for a mark before i
t
is
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-30
Eric Paris
S
E
Linux: reset t
h
e security_ops befo
r
e flushing the
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-24
Eric Pari
s
Audit: send sign
a
l inf
o
i
f
s
elinux is
disabled
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-24
Er
i
c Paris
Aud
i
t
: r
e
arra
n
ge audit_c
o
ntext
to save
16 byt
e
s per
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-24
Eri
c
Pa
r
is
Audit: reor
g
anize str
u
ct audit
_
watch to save 8 by
t
e
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-23
Eri
c
Paris
SELinux: d
o
not destr
o
y the
avc_c
a
c
h
e_nodep
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-15
Eric Paris
SE
L
i
nux: inline selinux
_
i
s_enabled in !CONFIG_SECUR
I
TY_
S
ELINUX
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-14
E
r
ic Paris
SELinux: flush the
avc b
e
fore di
s
ablin
g
SE
L
in
u
x
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-14
Eri
c
Paris
SE
L
i
nux
:
seperate avc_cache fl
u
shin
g
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-09-14
Eric Paris
Creds: cred
s
-
>
security ca
n
be N
U
LL is
s
elinu
x
is disabled
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-28
Eri
c
P
a
ris
inotify: update the group
m
ask on
m
ar
k
a
d
diti
o
n
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-28
E
ric Paris
in
o
tify: f
i
x length rep
o
rting
and size check
i
ng
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-27
Eri
c
Paris
inotify: fix locking around inotify watch
i
ng in the idr
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-27
E
ri
c
Paris
i
n
o
t
ify:
d
o
not BU
G
on idr entries at
i
notify destruction
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-27
Eric P
a
ris
inotif
y
: seperate new wat
c
h
c
reati
o
n u
p
dating e
x
isti
n
g
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-27
Eric
Paris
IMA: iint put in ima_count
s
_get and put
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-17
E
ric Paris
inotify: start watch descript
o
r c
o
unt at 1
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-17
Eric Paris
i
notify
:
tail
d
rop
i
notify q_overflow events
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-17
Eric Par
i
s
notify:
u
nu
s
e
d
event private race
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-17
Eri
c
Pa
r
is
secu
r
ity: d
e
f
ine ro
u
nd_hint_to_min in !C
O
N
F
I
G_SECURI
T
Y
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-17
Eric Paris
Security/S
E
Linux: seperate ls
m
s
p
e
cific
m
map_min_addr
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-17
Eric Paris
S
EL
i
nux: call cap_f
i
le
_
mma
p
in selinux_file_mmap
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-17
Eric Paris
Capabilities: mo
v
e cap_fi
l
e_m
m
a
p
t
o
c
ommoncap
.
c
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-14
Eric Paris
SELinux: add
s
e
li
n
ux_kernel_
m
odule_request
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-14
Eric Pa
r
is
security: int
r
oducing s
e
c
ur
i
ty_request_m
o
du
l
e
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-14
E
ric Paris
Networking: use
C
AP_NET_ADMI
N
when deciding to call
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-10
Eric Paris
security: define round_hint_
t
o_min i
n
!CONFIG_SECURITY
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-05
Eri
c
P
a
ris
Security/
S
ELinu
x
: seperat
e
lsm s
p
ecifi
c
mmap_min
_
a
d
d
r
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-05
Eric Paris
SELi
n
ux:
c
all cap_file_mma
p
in selinux_file_mm
a
p
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-08-05
Eric Pari
s
Capabi
l
ities: move
c
ap_file_m
m
ap to commoncap
.
c
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-07-21
E
ric Paris
in
o
t
ify: use GFP_
N
O
F
S under
p
o
t
ential memory pressure
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-07-21
Eric Paris
fsnotify:
f
ix inotify tail drop check w
i
th path entries
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-07-21
Eric
P
aris
inotify: che
c
k fil
e
name befor
e
droppi
n
g r
e
pea
t
event
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-07-21
E
ric Paris
f
s
noti
f
y: use def_
b
o
o
l in kconfi
g
instead
of
letting
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-07-21
Eric P
a
ris
inotif
y
: fix error
paths in inotify_upda
t
e_
w
atch
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-07-21
Eric P
a
r
i
s
inotif
y
: do not leak inode m
a
rks in inotify_add_w
a
t
ch
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-07-21
Eric Paris
inotify:
d
rop user
watch count when a watch is removed
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Eric Pari
s
audit: inode w
a
tches d
e
pend on CONFIG_AUDIT no
t
C
O
NFI
G
_
A
UDIT
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
E
ric Paris
Audit: clean up all op
=
output to include strin
g
quoting
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
E
ric Paris
Audit:
move audit_get_nd complete
l
y into audit
_
watch
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Er
i
c Paris
a
udit
:
seperate audit inode watc
h
es into
a subfile
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
Audit
:
clean up audit_receive_skb
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
Audit:
clea
n
up netli
n
k mesg handling
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
A
udit: unif
y
t
he printk of an skb when auditd
n
ot around
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Eric Pa
r
i
s
A
udit: dere
f
erencing krule as if it were a
n
audit_watch
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
A
u
d
it: better estimation of execve rec
o
rd len
g
th
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
Audit: f
i
x
audit watc
h
u
s
e after free
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-19
Eric Paris
inotify: inotify
_
destroy_ma
r
k_entry
could ge
t
called
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
E
r
ic Paris
fs
n
otify: allow groups to set
f
reeing_mark to null
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
inotify/dn
o
t
i
fy: should_se
n
d_event shouldn't m
a
t
c
h
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
dnotify:
d
o not b
o
ther to lo
c
k en
t
ry->l
o
c
k
when reading
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
dnotify: do not use ?t
r
ue:false
w
h
e
n assigning to a
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric P
a
ris
fsnoti
f
y: move e
v
ents should indicate t
h
e event was
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
E
ric Pa
r
is
inoti
f
y: re
i
mplement in
o
tify using
f
snotify
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
fs
n
otify:
handle filesystem un
m
ounts with fs
n
o
t
ify
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
f
snotify: fsn
o
ti
f
y
m
a
r
ks
o
n inodes
pin them i
n
core
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Er
i
c P
a
ris
fsnot
i
fy: allo
w
groups to add private data to events
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eri
c
Pari
s
fsnotify: add correla
t
ions between event
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric
P
aris
fsnotify:
i
n
clud
e
pathname
s
with entr
i
es when possibl
e
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
E
ric Paris
fsnotify: g
e
n
eric notificati
o
n queue an
d
waitq
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
E
r
ic Paris
dno
t
i
fy:
r
e
impleme
n
t dnotify using
fsn
o
tify
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
E
r
i
c
Paris
fsnotify: pare
n
t event noti
f
i
ca
t
i
on
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
E
r
ic Paris
fsnotify: ad
d
marks
t
o inodes so group
s
can interpret
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
f
snotif
y
: uni
f
ied filesyst
e
m notificati
o
n ba
c
kend
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-06-02
Eric
Paris
SELinux
:
defin
e
a
u
dit pe
r
m
i
ssions fo
r
audit tree netlink
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-21
Eric Paris
I
MA: A
d
d __init
n
otation t
o
ima
fun
c
t
ions
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-21
Eric Par
i
s
IMA: Minimal IMA po
l
ic
y
and b
o
ot par
a
m
f
o
r
TC
B
I
M
A
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-19
Eric Par
i
s
TPM: get_event_name stack corruption
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-18
Eric P
a
r
i
s
SELinux
:
move SELINUX_MAGIC into mag
i
c
.
h
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-14
Eric Paris
IMA: do not mea
s
ure everything
o
pened by
r
oot by default
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-14
Eric Par
i
s
IMA:
r
emov
e
r
e
a
d permissi
o
ns on the ima policy f
i
l
e
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-13
Eric Paris
T
P
M: get_event_name s
t
a
ck corr
u
ption
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-12
Eric Paris
securityfs: securityfs_
r
emove sho
u
l
d
handle IS_ER
R
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-12
Eric Paris
IMA: open al
l
files O_LARGEFILE
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-12
E
r
ic Paris
IMA: Ha
n
dle dentry_open failu
r
es
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-05-12
E
r
ic Par
i
s
IMA
:
use curr
e
nt_cred()
i
nstead of current-
>
cred
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-04-29
Eric Paris
SELinux: drop s
e
condary
_
op
s
->sysctl
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-04-29
E
ric Pa
r
is
mutex
:
add a
t
omic_dec_and_mu
t
ex
_
lock()
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-04-21
Eric
P
aris
s
c
si:
m
pt: suppr
e
ss
d
ebugobj
e
c
ts warning
commit
|
commitdiff
|
tree
2009-04-06
E
r
ic Paris
mutex: a
d
d atomic_dec_an
d
_mutex_lock()
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-04-05
Er
i
c Paris
Audit: remove spaces from audit
_
log_
d
_path
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-04-05
Eric Paris
audit:
a
udit_set_
a
uditable defined but n
o
t used
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-04-05
Eric Paris
audit:
inco
r
rect ref cou
n
t
in
g
in aud
i
t tr
e
e tag
_
chunk
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-04-02
Eric Paris
Btrfs: introduce btr
f
s
_sh
o
w_options
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-03-09
Eric Pari
s
SELinux: inode_do
i
ni
t
_with_dentry drop no de
n
try p
r
intk
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-03-05
E
r
ic
Pa
r
is
SEL
i
nu
x
: new
permissio
n
between tt
y
audit
a
nd au
d
i
t
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-03-05
E
r
ic
Par
i
s
SELinux
:
open pe
r
m for
soc
k
files
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2009-02-13
Er
i
c P
a
ri
s
SELinux: conv
e
r
t
the avc cache
h
ash
lis
t
to an hlist
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
next