repo.or.cz
/
linux-2.6
/
verdex.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
SELinux: inline selinux_is_enabled in !CONFIG_SECURITY_SELINUX
2009-09-15
Eric Paris
S
ELinux: inline
s
e
linux_is_
e
n
a
bled in !CONFIG_SEC
U
RI
T
Y
_
SELINUX
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-09-14
Eri
c
Paris
SELinux: flush the avc b
e
fore disabling SELinux
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-09-14
Er
i
c
Paris
SEL
i
n
ux
:
seperate
avc_cache flushing
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-09-14
Eric Paris
C
r
eds:
creds->security c
a
n
b
e
N
ULL is selinux is dis
a
b
led
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-28
Eric P
a
ri
s
inot
i
fy
:
up
d
a
t
e t
h
e g
r
oup
m
ask on mark a
d
dition
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-28
Eri
c
Paris
inot
i
fy: fix length reporting and si
z
e checking
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-27
Eric Paris
i
noti
f
y: fix loc
k
i
n
g arou
n
d i
n
otify watch
i
ng in th
e
idr
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-27
Eric Par
i
s
inotify: do
n
ot BUG on
idr entries a
t
inotify des
t
ructi
o
n
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-27
E
ric Pa
r
i
s
i
notify
:
se
p
erate n
e
w watch creation updating
e
xisting
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-27
Eric
Paris
IMA
:
iint put in ima_counts_g
e
t and put
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-17
Eric Paris
inotify
:
s
t
art w
a
tc
h
desc
r
i
ptor count at 1
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-17
Eric Pa
r
is
inotify: tail
d
rop inotify q_overf
l
ow events
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-17
E
ric
P
aris
notify: unused
e
vent
p
r
ivat
e
r
ace
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-17
Eric
P
a
r
is
s
ecurit
y
: defi
n
e rou
n
d_hin
t
_to_min in
!
CONF
I
G_SEC
U
RITY
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-17
Eric P
a
ris
Sec
u
rity/SELinux: seperat
e
lsm specifi
c
mmap_min_addr
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-17
Eric Paris
S
E
Lin
u
x:
c
all c
a
p
_
file_mmap in selinux_file_mma
p
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-17
Eri
c
Paris
Cap
a
biliti
e
s:
m
o
ve cap_file_
m
map to commoncap
.
c
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-14
Eric Paris
SELinu
x
: ad
d
selinux_kernel_module_request
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-14
Eric Pa
r
is
security: intr
o
ducing secu
r
ity_
r
eque
s
t_m
o
d
u
l
e
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-14
E
r
ic Paris
Networking: use
CAP_NET_AD
M
IN
when decidin
g
to call
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-10
Eric Par
i
s
security: define round_hint_
t
o_min
i
n !C
O
NFIG_SEC
U
R
ITY
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-05
Er
i
c P
a
r
i
s
Security/SELinux:
sepe
r
a
te lsm spe
c
ific mmap_m
i
n_addr
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-05
Eric Paris
SEL
i
nux: c
a
ll cap
_
file_mmap in selinux_file_mmap
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-08-05
Eri
c
Paris
C
a
p
a
bilities: move c
a
p
_file_mmap to commoncap
.
c
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-07-21
Eric Pari
s
inotify: use GFP_NOFS under pote
n
tial memory pressure
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-07-21
Eric Pa
r
is
fs
n
otify: fix
inotify tail drop c
h
eck
w
ith
p
ath
e
ntr
i
es
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-07-21
Eric
P
a
r
is
in
o
t
i
f
y
:
c
hec
k
fil
e
name
b
efore dro
p
ping repea
t
events
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-07-21
Eric P
a
ris
fsnotify: use def_bo
o
l in
kconfig in
s
tead
of letti
n
g
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-07-21
E
r
i
c Paris
inotif
y
:
fix erro
r
paths in inotify
_
update_watch
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-07-21
Eric
P
ari
s
inotify: d
o
not l
e
ak
i
no
d
e marks in
inot
i
f
y
_add_watch
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-07-21
Eric Paris
inotify:
drop user watch count
w
hen a watc
h
is removed
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eri
c
Paris
audit: i
n
ode watc
h
es depend
o
n CONFIG_AUDIT no
t
C
ON
F
IG_
A
UDIT
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
Audit: clean up all
op
=
output
t
o include string quoting
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eric Pa
r
is
Audit: move audit_
g
et_nd c
o
mpletely into audit_wa
t
ch
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eric Pa
r
i
s
audit: sep
e
rate audit
i
node watche
s
into
a
subfile
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
E
r
ic Paris
Au
d
it: cle
a
n
u
p audit_receive_
s
k
b
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
Audit: clea
n
u
p
netl
i
nk mesg hand
l
ing
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
E
r
ic
P
aris
Au
d
it:
unify the p
r
i
n
tk of an skb when auditd no
t
a
r
oun
d
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eric
P
aris
Audit: dere
f
e
r
enc
i
ng krule
as
if it were
a
n audit_watch
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
A
udit: better est
i
mat
i
on of execve record length
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-24
Eric Paris
Audi
t
:
fix au
d
it watch use aft
e
r free
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-19
Eric Pa
r
is
i
not
i
fy: in
o
tify_destroy_mark
_
entry
could get ca
l
led
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
fsnotify:
a
llow groups to set freeing
_
mark to nu
l
l
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
E
r
ic Paris
i
n
oti
f
y/dnotif
y
: should_send_eve
n
t shouldn't ma
t
ch
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Pa
r
is
dnotify: d
o
not both
e
r to lock e
n
try->lock
w
hen rea
d
i
ng
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
d
noti
f
y: do not
u
se
?
t
rue:false wh
e
n ass
i
gning
t
o
a
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric
P
a
r
i
s
fsno
t
ify: move even
t
s
should indic
a
te the
e
vent was
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Pari
s
inot
i
f
y
: reimpleme
n
t inotify using fsnotify
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Pa
r
is
fsnotify: handle fil
e
system
u
nmounts wi
t
h fsnotify
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Paris
fs
n
otify: fs
n
otify
m
arks on i
n
odes pi
n
them
i
n
core
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Pari
s
fsnotify: all
o
w groups t
o
add pri
v
ate data t
o
events
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eri
c
Pa
r
is
fsnoti
f
y: add correlations b
e
tween
e
vents
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Er
i
c
Par
i
s
fsnotify:
i
nclude p
a
thnames
w
ith entri
e
s
w
he
n
possible
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
E
ric Paris
fsnotify: gene
r
ic notificat
i
on q
u
eu
e
and waitq
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric Pari
s
dn
o
t
i
fy: rei
m
plement dnotify using fsnotify
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Eric P
a
r
is
fsnotify: pare
n
t event notificati
o
n
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
Er
i
c Paris
fs
n
otify: add
marks to inodes so groups c
a
n interpret
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-11
E
ric Paris
f
s
n
otify:
unif
i
ed
f
i
les
y
stem notif
i
ca
t
io
n
backend
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-06-02
E
r
ic P
a
r
i
s
S
E
Linux: define au
d
it permi
s
sions for audi
t
tr
e
e
netlink
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-21
E
ri
c
Paris
IMA: Add __init n
o
tation to ima
f
unc
t
ions
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-21
Eric Par
i
s
IMA: Minimal IMA pol
i
cy and boo
t
param for
T
C
B
I
M
A
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-19
E
r
i
c Paris
T
PM: get
_
even
t
_
name stac
k
corruption
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-18
Eric
P
a
ris
SELinux
:
move SELINUX_MAGIC into magic
.
h
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-14
Eric Pa
r
is
I
M
A
:
do
n
ot measure eve
r
ything
opened
b
y roo
t
by default
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-14
E
ric Par
i
s
IMA: r
e
move
r
e
a
d permission
s
on the ima
pol
i
cy fil
e
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-13
Eric
P
aris
TPM: get_event_
n
a
me stack corruption
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-12
Eric P
a
ris
se
c
u
r
i
t
yfs: securi
t
y
fs_remove should h
a
ndle IS_ERR
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-12
Eric Paris
I
MA: open all
files
O_LARGEFILE
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-12
Eric Paris
IM
A
:
Hand
l
e dentry_open
f
ailures
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-05-12
Eric Paris
IMA:
use
c
urre
n
t
_
c
r
e
d
(
)
ins
t
ea
d
of curr
e
n
t
->cred
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-04-29
Eric Par
i
s
SELinux: drop
secondary_ops->sysctl
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-04-29
E
r
i
c Par
i
s
m
u
tex: add a
t
omic_de
c
_and_mutex_lock()
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-04-06
Eric Pa
r
i
s
mutex: ad
d
a
t
o
m
i
c
_dec_and_mute
x
_lock()
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-04-05
Eric Paris
Audit: remove spaces from audit_log_d_pa
t
h
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-04-05
Eric Paris
audit
:
a
u
di
t
_set_auditable
defined but not used
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-04-05
Er
i
c Pa
r
is
a
u
dit: i
n
co
r
rect ref co
u
nting in audit t
r
ee tag_ch
u
nk
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-04-02
Eric Pa
r
is
Btrf
s
: introduce b
t
rfs
_
show_option
s
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-03-09
E
ric
Par
i
s
SELinux: inode_doinit_with_de
n
try
d
r
o
p no
dentry pr
i
ntk
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-03-05
E
r
ic Paris
SEL
i
nux
:
new permis
s
ion bet
w
ee
n
tty a
u
dit and audit
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-03-05
Er
i
c Pa
r
is
SELinux: open perm for sock files
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
E
r
i
c Paris
SELinux: convert
t
he a
v
c c
a
che ha
s
h list to an hl
i
st
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
Eric Pa
r
is
S
E
Linux: code
r
eadability wit
h
avc_cache
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
Eric P
a
ris
SELin
u
x: remove un
u
sed av
.
decided field
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
Eric Paris
SEL
i
nux: more carefu
l
use of avd in avc
_
h
a
s_perm_no
a
u
dit
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
Eric
Paris
SEL
i
nux: re
m
ove the unused ae
.
use
d
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
E
r
ic Pa
r
i
s
SELinux: check seqno w
h
en updating an avc_node
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
Eric Paris
SELinux: NULL terminate
a
l c
o
n
texts
f
rom disk
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
Eric Paris
S
E
Linux: bet
t
er pr
i
ntk
whe
n
fil
e
with invalid la
b
e
l
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-02-13
Eri
c
Paris
S
ELinux: call capabilities code dire
c
t
ory
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-01-27
Eri
c
Par
i
s
t
ty_open can return to u
s
erspace holdin
g
tty_mutex
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-01-05
Eric Par
i
s
sys_execve
and sys_uselib do not call in
t
o
fsnotify
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2009-01-05
Eric Paris
S
E
L
in
u
x: s
h
rink sizeof av_inhert seli
n
ux_class_perm
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-12-31
Er
i
c Paris
filesystem notif
i
cation: create
fs/not
i
fy
t
o con
t
ain
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-12-09
E
r
i
c
Paris
[P
A
TCH] Audit: make
audit=0 actually
t
urn off audit
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-11-14
Eric Paris
capabilities:
d
efin
e
get
_
vf
s
_c
a
ps_from_d
i
s
k
wh
e
n fi
l
e
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-11-11
E
r
ic P
a
ris
Currently SELinux jumps t
h
roug
h
some ugly hoops to
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-11-11
Eric
P
aris
The oo
m
kil
l
er calculations make d
e
cisions based on
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-11-11
Er
i
c
Paris
Ad
d
a new capable
i
n
t
erface that will
b
e
used
by syst
e
ms
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-11-11
E
r
i
c Pari
s
C
a
pabilities: BUG
w
hen an invalid capability is request
e
d
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
2008-11-11
Eric
P
aris
When the capse
t
sy
s
call is used it
i
s n
o
t possibl
e
.
.
.
Signed-off-by: Eric Paris <
eparis@redhat.com
>
commit
|
commitdiff
|
tree
next