Linux Integrity
[Prev Page][Next Page]
- Re: [PATCH v3] evm: Correct inode_init_security hooks behaviors, (continued)
- [PATCH] ima: fix a possible null pointer dereference, Gaosheng Cui
- [PATCH 5/8] ima: use type safe idmapping helpers, Christian Brauner
- Re: [RFC][PATCH] bpf: Check xattr name/value pair from bpf_lsm_inode_init_security(),
Roberto Sassu
- Expected appraisal behavior after script modification,
Ken Williams
- [PATCH v2] evm: Correct inode_init_security hooks behaviors,
Nicolas Bouchinet
- [PATCH] tpm: Avoid function type cast of put_device(),
Ard Biesheuvel
- [PATCH] evm: Correct inode_init_security hooks behaviors,
Nicolas Bouchinet
- [PATCH v6] KEYS: encrypted: fix key instantiation with user-provided data,
Nikolaus Voss
- [PATCH v5] KEYS: encrypted: fix key instantiation with user-provided data,
Nikolaus Voss
- [PATCH v5 00/30] acl: add vfs posix acl api,
Christian Brauner
- [PATCH] integrity: iint: Optimize integrity_iintcache_init and integrity_inode_free function, Li zeming
- [PATCH v8 00/11] TPM IRQ fixes,
Lino Sanfilippo
- [PATCH v8 05/11] tpm, tpm_tis: Only handle supported interrupts, Lino Sanfilippo
- [PATCH v8 10/11] tpm, tpm_tis: Claim locality in interrupt handler, Lino Sanfilippo
- [PATCH v8 04/11] tpm, tmp_tis: Claim locality before writing interrupt registers, Lino Sanfilippo
- [PATCH v8 07/11] tpm, tpm_tis: do not check for the active locality in interrupt handler, Lino Sanfilippo
- [PATCH v8 01/11] tpm, tpm_tis: Avoid cache incoherency in test for interrupts, Lino Sanfilippo
- [PATCH v8 03/11] tpm, tpm_tis: Disable interrupts if tpm_tis_probe_irq() failed, Lino Sanfilippo
- [PATCH v8 11/11] tpm, tpm_tis: Enable interrupt test, Lino Sanfilippo
- [PATCH v8 08/11] tpm, tpm: Implement usage counter for locality, Lino Sanfilippo
- [PATCH v8 06/11] tpm, tpm_tis: Move interrupt mask checks into own function, Lino Sanfilippo
- [PATCH v8 09/11] tpm, tpm_tis: Request threaded interrupt handler, Lino Sanfilippo
- [PATCH v8 02/11] tpm, tpm_tis: Claim locality before writing TPM_INT_ENABLE register, Lino Sanfilippo
- [PATCH] ima: Fix a potential null pointer access problem in ima_restore_measurement_list,
luhuaxin1
- [PATCH 0/9] integrity: Move hooks into LSM,
Kees Cook
- [PATCH 1/9] integrity: Prepare for having "ima" and "evm" available in "integrity" LSM, Kees Cook
- [PATCH 3/9] ima: Move xattr hooks into LSM, Kees Cook
- [PATCH 2/9] security: Move trivial IMA hooks into LSM, Kees Cook
- [PATCH 4/9] ima: Move ima_file_free() into LSM, Kees Cook
- [PATCH 6/9] fs: Introduce file_to_perms() helper, Kees Cook
- [PATCH 8/9] integrity: Move trivial hooks into LSM, Kees Cook
- [PATCH 5/9] LSM: Introduce inode_post_setattr hook, Kees Cook
- [PATCH 9/9] integrity: Move integrity_inode_get() out of global header, Kees Cook
- [PATCH 7/9] ima: Move ima_file_check() into LSM, Kees Cook
- Re: [PATCH 0/9] integrity: Move hooks into LSM, Paul Moore
- Re: [PATCH 0/9] integrity: Move hooks into LSM, Mickaël Salaün
- Re: [PATCH 0/9] integrity: Move hooks into LSM, Casey Schaufler
- [PATCH v4] KEYS: encrypted: fix key instantiation with user-provided data,
Nikolaus Voss
- [PATCH v3] KEYS: encrypted: fix key instantiation with user-provided data, Nikolaus Voss
- [PATCH v2] KEYS: encrypted: fix key instantiation with user-provided data,
Nikolaus Voss
- User question / Policy file, Ken Williams
- [PATCH v0 0/8] Hardware Bound key added to Trusted Key-Ring,
Pankaj Gupta
- [GIT PULL] tpmdd updates for Linux v6.1-rc1,
Jarkko Sakkinen
- [GIT PULL] integrity: susbsytem updates for v6.1,
Mimi Zohar
- [PATCH v2 1/3] tpm: st33zp24: drop support for platform data,
Dmitry Torokhov
- [PATCH 5/7] dt-bindings: tpm: Document previously undocumented compatibles,
Alexander Steffen
- [PATCH 0/7] Clean up TPM compatibles,
Alexander Steffen
- [PATCH v4 00/30] acl: add vfs posix acl api,
Christian Brauner
- [PATCHv2 RESEND] efi: Correct Macmini DMI match in uefi cert quirk,
Orlando Chamberlain
- [PATCH v3 00/29] acl: add vfs posix acl api,
Christian Brauner
- [PATCH v2 0/3] tpm: tsi-i2c: Add compatible strings,
Joel Stanley
- [GIT PULL] linux-tpmdd updates for v6.0-rc1,
Jarkko Sakkinen
- [PATCH v38 21/39] LSM: Ensure the correct LSM context releaser, Casey Schaufler
- [PATCH v38 18/39] LSM: Use lsmblob in security_inode_getsecid, Casey Schaufler
- [PATCH v38 19/39] LSM: Use lsmblob in security_cred_getsecid, Casey Schaufler
- [PATCH v38 17/39] LSM: Use lsmblob in security_current_getsecid, Casey Schaufler
- [PATCH v38 07/39] integrity: disassociate ima_filter_rule from security_audit_rule, Casey Schaufler
- [PATCH v3 00/11] Encrypted Hibernation,
Evan Green
- [PATCH v3 03/11] tpm: Allow PCR 23 to be restricted to kernel-only use, Evan Green
- [PATCH v3 02/11] tpm: Export and rename tpm2_find_and_validate_cc(), Evan Green
- [PATCH v3 01/11] tpm: Add support for in-kernel resetting of PCRs, Evan Green
- [PATCH v3 05/11] security: keys: trusted: Allow storage of PCR values in creation data, Evan Green
- [PATCH v3 10/11] PM: hibernate: Verify the digest encryption key, Evan Green
- [PATCH v3 04/11] security: keys: trusted: Include TPM2 creation data, Evan Green
- [PATCH v3 06/11] security: keys: trusted: Verify creation data, Evan Green
- [PATCH v3 07/11] PM: hibernate: Add kernel-based encryption, Evan Green
- [PATCH v3 09/11] PM: hibernate: Mix user key in encrypted hibernate, Evan Green
- [PATCH v3 11/11] PM: hibernate: seal the encryption key with a PCR policy, Evan Green
- [PATCH v3 08/11] PM: hibernate: Use TPM-backed keys to encrypt image, Evan Green
- [PATCH v2 00/30] acl: add vfs posix acl api,
Christian Brauner
- Re: [PATCH 3/3] ima_setup.sh: Use tst_supported_fs instead of df, Petr Vorel
- [PATCH 1/3] tpm: st33zp24: drop support for platform data,
Dmitry Torokhov
- [RFC PATCH 00/29] acl: add vfs posix acl api,
Christian Brauner
- [PATCH v5 0/2] ima: Handle -ESTALE returned by ima_filter_rule_match(),
GUO Zihua
- [PATCH v2] selftest: tpm2: Add Client.__del__() to close /dev/tpm* handle,
Stefan Berger
- [PATCH] KEYS: encrypted: fix key instantiation with user-provided data,
Nikolaus Voss
- [PATCHv2 1/1] efi: Correct Macmini DMI match in uefi cert quirk, Orlando Chamberlain
- User questions,
Ken Williams
- [PATCH v14 00/26] ima: Namespace IMA with audit support in IMA-ns,
Stefan Berger
- [PATCH v14 12/26] ima: Only accept AUDIT rules for non-init_ima_ns namespaces for now, Stefan Berger
- [PATCH v14 24/26] ima: Limit number of policy rules in non-init_ima_ns, Stefan Berger
- [PATCH v14 11/26] ima: Define mac_admin_ns_capable() as a wrapper for ns_capable(), Stefan Berger
- [PATCH v14 16/26] ima: Add functions for creating and freeing of an ima_namespace, Stefan Berger
- [PATCH v14 21/26] ima: Setup securityfs for IMA namespace, Stefan Berger
- [PATCH v14 14/26] ima: Implement hierarchical processing of file accesses, Stefan Berger
- [PATCH v14 06/26] ima: Move measurement list related variables into ima_namespace, Stefan Berger
- [PATCH v14 04/26] ima: Move arch_policy_entry into ima_namespace, Stefan Berger
- [PATCH v14 02/26] securityfs: Extend securityfs with namespacing support, Stefan Berger
- [PATCH v14 13/26] userns: Add pointer to ima_namespace to user_namespace, Stefan Berger
- [PATCH v14 09/26] ima: Move ima_lsm_policy_notifier into ima_namespace, Stefan Berger
- [PATCH v14 19/26] ima: Namespace audit status flags, Stefan Berger
- [PATCH v14 22/26] ima: Introduce securityfs file to activate an IMA namespace, Stefan Berger
- [PATCH v14 08/26] ima: Move IMA securityfs files into ima_namespace or onto stack, Stefan Berger
- [PATCH v14 15/26] ima: Implement ima_free_policy_rules() for freeing of an ima_namespace, Stefan Berger
- [PATCH v14 20/26] ima: Remove unused iints from the integrity_iint_cache, Stefan Berger
- [PATCH v14 18/26] integrity: Add optional callback function to integrity_inode_free(), Stefan Berger
- [PATCH v14 25/26] ima: Restrict informational audit messages to init_ima_ns, Stefan Berger
- [PATCH v14 23/26] ima: Show owning user namespace's uid and gid when displaying policy, Stefan Berger
- [PATCH v14 10/26] ima: Switch to lazy lsm policy updates for better performance, Stefan Berger
- [PATCH v14 07/26] ima: Move some IMA policy and filesystem related variables into ima_namespace, Stefan Berger
- [PATCH v14 17/26] integrity/ima: Define ns_status for storing namespaced iint data, Stefan Berger
- [PATCH v14 26/26] ima: Enable IMA namespaces, Stefan Berger
- [PATCH v14 05/26] ima: Move ima_htable into ima_namespace, Stefan Berger
- [PATCH v14 03/26] ima: Define ima_namespace struct and start moving variables into it, Stefan Berger
- [PATCH v14 01/26] securityfs: rework dentry creation, Stefan Berger
- Re: [PATCH v14 00/26] ima: Namespace IMA with audit support in IMA-ns, Casey Schaufler
- Re: [PATCH v14 00/26] ima: Namespace IMA with audit support in IMA-ns, Stefan Berger
- [PATCH v1 1/1] ima: fix possible memory leak in cache allocating for namespace, Denis Semakin
- [PATCH ima-evm-utils 0/4] misc bug and other fixes,
Mimi Zohar
- [PATCH ima-evm-utils v3 00/15] address deprecated warnings,
Mimi Zohar
- [PATCH ima-evm-utils v3 01/15] travis: update dist=focal, Mimi Zohar
- [PATCH ima-evm-utils v3 02/15] Update configure.ac to address a couple of obsolete warnings, Mimi Zohar
- [PATCH ima-evm-utils v3 05/15] Replace the low level HMAC calls when calculating the EVM HMAC, Mimi Zohar
- [PATCH ima-evm-utils v3 04/15] Replace the low level SHA1 calls when calculating the TPM 1.2 PCRs, Mimi Zohar
- [PATCH ima-evm-utils v3 03/15] Deprecate IMA signature version 1, Mimi Zohar
- [PATCH ima-evm-utils v3 08/15] Fix potential use after free in read_tpm_banks(), Mimi Zohar
- [PATCH ima-evm-utils v3 06/15] Add missing EVP_MD_CTX_free() call in calc_evm_hash(), Mimi Zohar
- [PATCH ima-evm-utils v3 07/15] Disable use of OpenSSL "engine" support, Mimi Zohar
- [PATCH ima-evm-utils v3 09/15] Limit the file hash algorithm name length, Mimi Zohar
- [PATCH ima-evm-utils v3 10/15] Missing template data size lower bounds checking, Mimi Zohar
- [PATCH ima-evm-utils v3 11/15] Limit configuring OpenSSL engine support, Mimi Zohar
- [PATCH ima-evm-utils v3 12/15] Base sm2/sm3 test on openssl version installed, Mimi Zohar
- [PATCH ima-evm-utils v3 13/15] Compile a newer version of OpenSSL, Mimi Zohar
- [PATCH ima-evm-utils v3 15/15] Fix d2i_x509_fp failure, Mimi Zohar
- [PATCH ima-evm-utils v3 14/15] Build OpenSSL without engine support, Mimi Zohar
- [PATCH 0/2] tpm: tsi-i2c: Add compatible strings,
Joel Stanley
- [PATCH] selftests: tpm2: Implement class desstructor to close file descriptor,
Stefan Berger
- [PATCH v4 0/2] ima: Handle -ESTALE returned by ima_filter_rule_match(),
GUO Zihua
- [PATCH ima-evm-utils v2] add support for reading per bank TPM 2.0 PCRs via sysfs,
Tergel Myanganbayar
- [PATCH] tpm: Add flag to use default cancellation policy,
Eddie James
- [PATCH ima-evm-utils v2 00/12] address deprecated warnings,
Mimi Zohar
- [PATCH ima-evm-utils v2 03/12] Update configure.ac to address a couple of obsolete warnings, Mimi Zohar
- [PATCH ima-evm-utils v2 06/12] Replace the low level HMAC calls when calculating the EVM HMAC, Mimi Zohar
- [PATCH ima-evm-utils v2 04/12] Deprecate IMA signature version 1, Mimi Zohar
- [PATCH ima-evm-utils v2 09/12] Fix potential use after free in read_tpm_banks(), Mimi Zohar
- [PATCH ima-evm-utils v2 05/12] Replace the low level SHA1 calls when calculating the TPM 1.2 PCRs, Mimi Zohar
- [PATCH ima-evm-utils v2 01/12] travis: use the distro OpenSSL version on jammy, Mimi Zohar
- [PATCH ima-evm-utils v2 07/12] Add missing EVP_MD_CTX_free() call in calc_evm_hash(), Mimi Zohar
- [PATCH ima-evm-utils v2 08/12] Disable use of OpenSSL "engine" support, Mimi Zohar
- [PATCH ima-evm-utils v2 02/12] travis: update dist=focal, Mimi Zohar
- [PATCH ima-evm-utils v2 11/12] Missing template data size lower bounds checking, Mimi Zohar
- [RFC PATCH ima-evm-utils v2 12/12] Limit configuring OpenSSL engine support, Mimi Zohar
- [PATCH ima-evm-utils v2 10/12] Limit the file hash algorithm name length, Mimi Zohar
- [RFC PATCH HBK: 0/8] HW BOUND KEY as TRUSTED KEY,
Pankaj Gupta
- [RFC PATCH HBK: 3/8] sk_cipher: checking for hw bound operation, Pankaj Gupta
- [RFC PATCH HBK: 1/8] keys-trusted: new cmd line option added, Pankaj Gupta
- [RFC PATCH HBK: 2/8] hw-bound-key: flag-is_hbk added to the tfm, Pankaj Gupta
- [RFC PATCH HBK: 6/8] KEYS: trusted: caam based black key, Pankaj Gupta
- [RFC PATCH HBK: 4/8] keys-trusted: re-factored caam based trusted key, Pankaj Gupta
- [RFC PATCH HBK: 5/8] caam blob-gen: moving blob_priv to caam_drv_private, Pankaj Gupta
- [RFC PATCH HBK: 7/8] caam alg: symmetric key ciphers are updated, Pankaj Gupta
- [RFC PATCH HBK: 8/8] dm-crypt: consumer-app setting the flag-is_hbk, Pankaj Gupta
- Re: [RFC PATCH HBK: 0/8] HW BOUND KEY as TRUSTED KEY, Michael Walle
- Re: [RFC PATCH HBK: 0/8] HW BOUND KEY as TRUSTED KEY, Jarkko Sakkinen
- [PATCH -next] security: Fix some kernel-doc comments, Yang Li
- [PATCH -next 0/4] Use DECLARE_FLEX_ARRAY() helper for ima,
Gaosheng Cui
- [PATCH ima-evm-utils] add support for reading per bank TPM 2.0 PCRs via sysfs,
Tergel Myanganbayar
- [PATCH ima-evm-utils 00/11] address deprecated warnings,
Mimi Zohar
- [PATCH ima-evm-utils 10/11] Limit the file hash algorithm name length, Mimi Zohar
- [PATCH ima-evm-utils 07/11] Add missing EVP_MD_CTX_free() call in calc_evm_hash(), Mimi Zohar
- [PATCH ima-evm-utils 01/11] travis: use the distro OpenSSL version on jammy, Mimi Zohar
- [PATCH ima-evm-utils 02/11] travis: update dist=focal, Mimi Zohar
- [PATCH ima-evm-utils 09/11] Fix potential use after free in read_tpm_banks(), Mimi Zohar
- [PATCH ima-evm-utils 08/11] Deprecate use of OpenSSL v3 "engine" support, Mimi Zohar
- [PATCH ima-evm-utils 05/11] Replace the low level SHA1 calls when calculating the TPM 1.2 PCRs, Mimi Zohar
- [PATCH ima-evm-utils 11/11] Missing template data size lower bounds checking, Mimi Zohar
- [PATCH ima-evm-utils 03/11] Update configure.ac to address a couple of obsolete warnings, Mimi Zohar
- [PATCH ima-evm-utils 06/11] Replace the low level HMAC calls when calculating the EVM HMAC, Mimi Zohar
- [PATCH ima-evm-utils 04/11] Deprecate IMA signature version 1, Mimi Zohar
- [PATCH v8 0/4] tpm: Preserve TPM measurement log across kexec (ppc64),
Stefan Berger
- [PATCH v3] ima: Handle -ESTALE returned by ima_filter_rule_match(),
GUO Zihua
- [RFC PATCH ima-evm-utils 00/11] address deprecated warnings,
Mimi Zohar
- [RFC PATCH ima-evm-utils 01/11] travis: use the distro OpenSSL version on jammy, Mimi Zohar
- [RFC PATCH ima-evm-utils 05/11] Replace the low level SHA1 calls when calculating the TPM 1.2 PCRs, Mimi Zohar
- [RFC PATCH ima-evm-utils 02/11] travis: update dist=focal, Mimi Zohar
- [RFC PATCH ima-evm-utils 04/11] Deprecate IMA signature version 1, Mimi Zohar
- [RFC PATCH ima-evm-utils 03/11] Update configure.ac to address a couple of obsolete warnings, Mimi Zohar
- [RFC PATCH ima-evm-utils 09/11] Fix potential use after free in read_tpm_banks(), Mimi Zohar
- [RFC PATCH ima-evm-utils 08/11] Deprecate use of OpenSSL 3 "engine" support, Mimi Zohar
- [RFC PATCH ima-evm-utils 10/11] Limit the file hash algorithm name length, Mimi Zohar
- [RFC PATCH ima-evm-utils 11/11] Missing template data size lower bounds checking, Mimi Zohar
- [RFC PATCH ima-evm-utils 06/11] Replace the low level HMAC calls when calculating the EVM HMAC, Mimi Zohar
- [RFC PATCH ima-evm-utils 07/11] Add missing EVP_MD_CTX_free() call in calc_evm_hash(), Mimi Zohar
- [RFC PATCH v1 4/4] ima: Extend the real PCR12 with tempPCR value.,
Denis Semakin
- [RFC PATCH v1 3/4] ima: Create vpcr file on securityfs., Denis Semakin
- [RFC PATCH v1 2/4] ima: Use tpm_chip from init IMA namespace., Denis Semakin
- [RFC PATCH v1 1/4] ima: Introduce PCR virtualization for IMA namespace., Denis Semakin
- [RFC PATCH v1 0/4] Virtualize PCR for Container-IMA,
Denis Semakin
- [PATCH v2 00/10] Encrypted Hibernation,
Evan Green
- [PATCH v2 01/10] tpm: Add support for in-kernel resetting of PCRs, Evan Green
- [PATCH v2 02/10] tpm: Allow PCR 23 to be restricted to kernel-only use, Evan Green
- [PATCH v2 03/10] security: keys: trusted: Include TPM2 creation data, Evan Green
- [PATCH v2 04/10] security: keys: trusted: Allow storage of PCR values in creation data, Evan Green
- [PATCH v2 05/10] security: keys: trusted: Verify creation data, Evan Green
- [PATCH v2 06/10] PM: hibernate: Add kernel-based encryption, Evan Green
- [PATCH v2 07/10] PM: hibernate: Use TPM-backed keys to encrypt image, Evan Green
- [PATCH v2 09/10] PM: hibernate: Verify the digest encryption key, Evan Green
- [PATCH v2 08/10] PM: hibernate: Mix user key in encrypted hibernate, Evan Green
- [PATCH v2 10/10] PM: hibernate: seal the encryption key with a PCR policy, Evan Green
- Re: [PATCH v2 00/10] Encrypted Hibernation, Limonciello, Mario
- Re: [PATCH v2 00/10] Encrypted Hibernation, Pavel Machek
- Re: [PATCH v2 00/10] Encrypted Hibernation, Kees Cook
- [PATCH v2] ima: Handle -ESTALE returned by ima_filter_rule_match(), GUO Zihua
- [PATCH] ima: fix blocking of security.ima xattrs of unsupported algorithms,
Mimi Zohar
- [PATCH v2] xfs: don't bump the i_version on an atime update in xfs_vn_update_time,
Jeff Layton
- [PATCH] iversion: update comments with info about atime updates,
Jeff Layton
- [PATCH] ext4: fix i_version handling in ext4,
Jeff Layton
- [PATCH] xfs: don't bump the i_version on an atime update in xfs_vn_update_time,
Jeff Layton
- [PATCH] char: move from strlcpy with unused retval to strscpy,
Wolfram Sang
- [PATCH] ima: Handle -ESTALE returned by ima_filter_rule_match(),
GUO Zihua
[Index of Archives]
[Linux Kernel]
[Linux Kernel Hardening]
[Linux NFS]
[Linux NILFS]
[Linux USB Devel]
[Video for Linux]
[Linux SCSI]
[Yosemite Forum]