Linux Integrity
[Prev Page][Next Page]
Migration to trusted keys: sealing user-provided key?,
Ahmad Fatoum
[PATCH] vio: make remove callback return void,
Uwe Kleine-König
Re: [PATCH] vio: make remove callback return void, Tyrel Datwyler
Re: [PATCH] vio: make remove callback return void, Lijun Pan
Re: [PATCH] vio: make remove callback return void, Greg Kroah-Hartman
[PATCH v15 0/5] TPM 2.0 trusted key rework,
James Bottomley
Re: [PATCH v4] certs: Add EFI_CERT_X509_GUID support for dbx entries,
Mimi Zohar
[PATCH v24 10/25] LSM: Use lsmblob in security_task_getsecid, Casey Schaufler
[PATCH v4] IMA: Measure kernel version in early boot, Raphael Gianotti
[PATCH v24 15/25] LSM: Ensure the correct LSM context releaser, Casey Schaufler
[PATCH v24 11/25] LSM: Use lsmblob in security_inode_getsecid, Casey Schaufler
[PATCH v2] tpm: ibmvtpm: fix error return code in tpm_ibmvtpm_probe(),
Stefan Berger
[PATCH v3] IMA: Measure kernel version in early boot,
Raphael Gianotti
[PATCH v24 05/25] LSM: Use lsmblob in security_audit_rule_match, Casey Schaufler
[PATCH v24 13/25] IMA: Change internal interfaces to use lsmblobs, Casey Schaufler
[PATCH v24 12/25] LSM: Use lsmblob in security_cred_getsecid, Casey Schaufler
Bug: TPM returned invalid status,
Tj (Elloe Linux)
[PATCH] tpm_tis: Add missing start/stop_tpm_chip calls,
Lukasz Majczak
[PATCH v2] IMA: Measure kernel version in early boot,
Raphael Gianotti
[PATCH 2/2] dm crypt: support using trusted keys,
Ahmad Fatoum
[PATCH] selinux: measure state and policy capabilities,
Lakshmi Ramasubramanian
[PATCH 1/2] ima: Free IMA measurement buffer on error,
Lakshmi Ramasubramanian
[PATCH v4 00/10] Enable root to update the blacklist keyring,
Mickaël Salaün
- [PATCH v4 02/10] certs: Check that builtin blacklist hashes are valid, Mickaël Salaün
- [PATCH v4 09/10] PKCS#7: Fix missing include, Mickaël Salaün
- [PATCH v4 10/10] certs: Allow root user to append signed hashes to the blacklist keyring, Mickaël Salaün
- [PATCH v4 01/10] tools/certs: Add print-cert-tbs-hash.sh, Mickaël Salaün
- [PATCH v4 08/10] certs: Factor out the blacklist hash creation, Mickaël Salaün
- [PATCH v4 06/10] certs: Make blacklist_vet_description() more strict, Mickaël Salaün
- [PATCH v4 07/10] certs/blacklist: fix kernel doc interface issue, Mickaël Salaün
- [PATCH v4 03/10] certs: Fix blacklisted hexadecimal hash string check, Mickaël Salaün
- [PATCH v4 05/10] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID, Mickaël Salaün
- [PATCH v4 04/10] certs: Fix blacklist flag type confusion, Mickaël Salaün
- Re: [PATCH v4 00/10] Enable root to update the blacklist keyring, David Howells
[PATCH v6 00/40] idmapped mounts,
Christian Brauner
- [PATCH v6 08/40] acl: handle idmapped mounts, Christian Brauner
- [PATCH v6 10/40] commoncap: handle idmapped mounts, Christian Brauner
- [PATCH v6 11/40] stat: handle idmapped mounts, Christian Brauner
- [PATCH v6 17/40] af_unix: handle idmapped mounts, Christian Brauner
- [PATCH v6 14/40] namei: prepare for idmapped mounts, Christian Brauner
- [PATCH v6 19/40] fcntl: handle idmapped mounts, Christian Brauner
- [PATCH v6 18/40] utimes: handle idmapped mounts, Christian Brauner
- [PATCH v6 27/40] ecryptfs: do not mount on top of idmapped mounts, Christian Brauner
- [PATCH v6 32/40] fs: split out functions to hold writers, Christian Brauner
- [PATCH v6 37/40] fat: handle idmapped mounts, Christian Brauner
- [PATCH v6 36/40] tests: add mount_setattr() selftests, Christian Brauner
- [PATCH v6 29/40] namespace: take lock_mount_hash() directly when changing flags, Christian Brauner
- [PATCH v6 35/40] fs: introduce MOUNT_ATTR_IDMAP, Christian Brauner
- [PATCH v6 22/40] would_dump: handle idmapped mounts, Christian Brauner
- [PATCH v6 23/40] exec: handle idmapped mounts, Christian Brauner
- [PATCH v6 34/40] fs: add mount_setattr(), Christian Brauner
- [PATCH v6 39/40] xfs: support idmapped mounts, Christian Brauner
- [PATCH v6 21/40] ioctl: handle idmapped mounts, Christian Brauner
- [PATCH v6 25/40] apparmor: handle idmapped mounts, Christian Brauner
- [PATCH v6 31/40] namespace: only take read lock in do_reconfigure_mnt(), Christian Brauner
- [PATCH v6 28/40] overlayfs: do not mount on top of idmapped mounts, Christian Brauner
- [PATCH v6 33/40] fs: add attr_flags_to_mnt_flags helper, Christian Brauner
- [PATCH v6 26/39] ima: handle idmapped mounts, Christian Brauner
- [PATCH v6 20/40] init: handle idmapped mounts, Christian Brauner
- [PATCH v6 38/40] ext4: support idmapped mounts, Christian Brauner
- [PATCH v6 13/40] namei: introduce struct renamedata, Christian Brauner
- [PATCH v6 12/40] namei: handle idmapped mounts in may_*() helpers, Christian Brauner
- [PATCH v6 30/40] mount: make {lock,unlock}_mount_hash() static, Christian Brauner
- [PATCH v6 15/40] open: handle idmapped mounts in do_truncate(), Christian Brauner
- [PATCH v6 16/40] open: handle idmapped mounts, Christian Brauner
- [PATCH v6 07/40] attr: handle idmapped mounts, Christian Brauner
- [PATCH v6 06/40] inode: make init and permission helpers idmapped mount aware, Christian Brauner
- [PATCH v6 09/40] xattr: handle idmapped mounts, Christian Brauner
- [PATCH v6 04/40] capability: handle idmapped mounts, Christian Brauner
- [PATCH v6 03/40] fs: add file and path permissions helpers, Christian Brauner
- [PATCH v6 01/40] mount: attach mappings to mounts, Christian Brauner
- [PATCH v6 02/40] fs: add id translation helpers, Christian Brauner
- [PATCH v6 05/39] namei: make permission helpers idmapped mount aware, Christian Brauner
- Re: [PATCH v6 00/40] idmapped mounts, Serge E. Hallyn
[PATCH 0/4] TPM fixes,
Lino Sanfilippo
[PATCH v15 00/10] Carry forward IMA measurement log on kexec on ARM64,
Lakshmi Ramasubramanian
- [PATCH v15 01/10] powerpc: Rename kexec elfcorehdr_addr to elf_headers_mem, Lakshmi Ramasubramanian
- [PATCH v15 03/10] arm64: Use common of_kexec_setup_new_fdt(), Lakshmi Ramasubramanian
- [PATCH v15 04/10] powerpc: Use common of_kexec_setup_new_fdt(), Lakshmi Ramasubramanian
- [PATCH v15 02/10] of: Add a common kexec FDT setup function, Lakshmi Ramasubramanian
- [PATCH v15 09/10] arm64: Call kmalloc() to allocate DTB buffer, Lakshmi Ramasubramanian
- [PATCH v15 08/10] powerpc: Delete unused function delete_fdt_mem_rsv(), Lakshmi Ramasubramanian
- [PATCH v15 10/10] arm64: Add IMA log information in kimage used for kexec, Lakshmi Ramasubramanian
- [PATCH v15 06/10] powerpc: Move arch independent ima kexec functions to drivers/of/kexec.c, Lakshmi Ramasubramanian
- [PATCH v15 05/10] ima: Move arch_ima_add_kexec_buffer() to ima, Lakshmi Ramasubramanian
- [PATCH v15 07/10] kexec: Use fdt_appendprop_addrrange() to add ima buffer to FDT, Lakshmi Ramasubramanian
AW: TPM V2: kernel panic on linux reboot,
florian.manoel@xxxxxxxxxxx
[PATCH] selinux: include a consumer of the new IMA critical data hook,
Lakshmi Ramasubramanian
[PATCH v3 00/10] Enable root to update the blacklist keyring,
Mickaël Salaün
- [PATCH v3 08/10] certs: Check that builtin blacklist hashes are valid, Mickaël Salaün
- [PATCH v3 10/10] tools/certs: Add print-cert-tbs-hash.sh, Mickaël Salaün
- [PATCH v3 02/10] certs: Fix blacklisted hexadecimal hash string check, Mickaël Salaün
- [PATCH v3 04/10] certs: Fix blacklist flag type confusion, Mickaël Salaün
- [PATCH v3 06/10] certs: Make blacklist_vet_description() more strict, Mickaël Salaün
- [PATCH v3 07/10] certs: Factor out the blacklist hash creation, Mickaël Salaün
- [PATCH v3 09/10] certs: Allow root user to append signed hashes to the blacklist keyring, Mickaël Salaün
- [PATCH v3 01/10] certs/blacklist: fix kernel doc interface issue, Mickaël Salaün
- [PATCH v3 03/10] PKCS#7: Fix missing include, Mickaël Salaün
- [PATCH v3 05/10] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID, Mickaël Salaün
- Re: [PATCH v3 00/10] Enable root to update the blacklist keyring, Jarkko Sakkinen
[PATCH v5 0/2] add sysfs exports for TPM 2 PCR registers,
James Bottomley
evmctl import -EPERM in initrd (dracut), but works after system boot,
Mikhail Novosyolov
[PATCH] tpm/tpm_tis: Fix variable reset during IRQ probing,
Tianjia Zhang
[PATCH v5 0/1] add sysfs exports for TPM 2 PCR registers,
James Bottomley
[PATCH v5 00/42] idmapped mounts,
Christian Brauner
- [PATCH v5 03/42] namespace: only take read lock in do_reconfigure_mnt(), Christian Brauner
- [PATCH v5 05/42] fs: add attr_flags_to_mnt_flags helper, Christian Brauner
- [PATCH v5 04/42] fs: split out functions to hold writers, Christian Brauner
- [PATCH v5 09/42] mount: attach mappings to mounts, Christian Brauner
- [PATCH v5 07/42] tests: add mount_setattr() selftests, Christian Brauner
- [PATCH v5 10/42] capability: handle idmapped mounts, Christian Brauner
- [PATCH v5 06/42] fs: add mount_setattr(), Christian Brauner
- [PATCH v5 08/42] fs: add id translation helpers, Christian Brauner
- [PATCH v5 11/42] namei: make permission helpers idmapped mount aware, Christian Brauner
- [PATCH v5 12/42] inode: make init and permission helpers idmapped mount aware, Christian Brauner
- [PATCH v5 17/42] commoncap: handle idmapped mounts, Christian Brauner
- [PATCH v5 14/42] acl: handle idmapped mounts, Christian Brauner
- [PATCH v5 19/42] namei: handle idmapped mounts in may_*() helpers, Christian Brauner
- [PATCH v5 02/42] mount: make {lock,unlock}_mount_hash() static, Christian Brauner
- [PATCH v5 28/42] init: handle idmapped mounts, Christian Brauner
- [PATCH v5 16/42] xattr: handle idmapped mounts, Christian Brauner
- [PATCH v5 25/42] utimes: handle idmapped mounts, Christian Brauner
- [PATCH v5 18/42] stat: handle idmapped mounts, Christian Brauner
- [PATCH v5 31/42] exec: handle idmapped mounts, Christian Brauner
- [PATCH v5 37/42] xfs: support idmapped mounts, Christian Brauner
- [PATCH v5 01/42] namespace: take lock_mount_hash() directly when changing flags, Christian Brauner
- [PATCH v5 36/42] ext4: support idmapped mounts, Christian Brauner
- [PATCH v5 15/42] fs: add file_user_ns() helper, Christian Brauner
- [PATCH v5 13/42] attr: handle idmapped mounts, Christian Brauner
- [PATCH v5 40/42] fs: introduce MOUNT_ATTR_IDMAP, Christian Brauner
- [PATCH v5 24/42] af_unix: handle idmapped mounts, Christian Brauner
- [PATCH v5 20/42] namei: introduce struct renamedata, Christian Brauner
- [PATCH v5 27/42] notify: handle idmapped mounts, Christian Brauner
- [PATCH v5 39/42] overlayfs: do not mount on top of idmapped mounts, Christian Brauner
- [PATCH v5 41/42] tests: extend mount_setattr tests, Christian Brauner
- [PATCH v5 21/42] namei: prepare for idmapped mounts, Christian Brauner
- [PATCH v5 34/42] ima: handle idmapped mounts, Christian Brauner
- [PATCH v5 30/42] would_dump: handle idmapped mounts, Christian Brauner
- [PATCH v5 35/42] fat: handle idmapped mounts, Christian Brauner
- [PATCH v5 38/42] ecryptfs: do not mount on top of idmapped mounts, Christian Brauner
- [PATCH v5 22/42] open: handle idmapped mounts in do_truncate(), Christian Brauner
- [PATCH v5 23/42] open: handle idmapped mounts, Christian Brauner
- [PATCH v5 33/42] apparmor: handle idmapped mounts, Christian Brauner
- [PATCH v5 26/42] fcntl: handle idmapped mounts, Christian Brauner
- [PATCH v5 29/42] ioctl: handle idmapped mounts, Christian Brauner
- Re: [PATCH v5 00/42] idmapped mounts, Darrick J. Wong
- Message not available
evmctl and pkcs#11, Christian Schaubschläger
[PATCH] [v2] evm: Fix memleak in init_desc,
Dinghao Liu
Re: [PATCH] [v2] evm: Fix memleak in init_desc, Mimi Zohar
[PATCH] evm: Fix memleak in init_desc,
Dinghao Liu
[PATCH v10 0/8] IMA: support for measuring kernel integrity critical data,
Tushar Sugandhi
IMA appraisal with TPMv2?,
Chang, Clay (HPS OE-Linux TDC)
[PATCH 0/2] ima-evm-utils: Fix use of sign_hash via API,
Patrick Uiterwijk
[RFC] Persist ima logs to disk,
Raphael Gianotti
[PATCH ima-evm-utils] travis: Use Ubuntu 20.10 groovy,
Petr Vorel
[PATCH v14 0/6] Carry forward IMA measurement log on kexec on ARM64,
Lakshmi Ramasubramanian
[PATCH -next] tpm: Use kzalloc for allocating only one thing,
Zheng Yongjun
[PATCH v2] security: ima: delete a repeated word in comments, Randy Dunlap
[PATCH v13 0/6] Carry forward IMA measurement log on kexec on ARM64,
Lakshmi Ramasubramanian
[PATCH v12 0/4] Carry forward IMA measurement log on kexec on ARM64,
Lakshmi Ramasubramanian
Security module stacking patches review,
Casey Schaufler
[PATCH v2] tpm: Rework open/close/shutdown to avoid races,
Sergey Temerkhanov
[GIT PULL] integrity subsystem updates for v5.11,
Mimi Zohar
[PATCH v5 0/4] TPM 2.0 fixes in IMA tests,
Petr Vorel
[PATCH v11 0/8] Carry forward IMA measurement log on kexec on ARM64,
Lakshmi Ramasubramanian
[PATCH ima-evm-utils] pcr_tsspcrread: Add missing new line, Petr Vorel
[PATCH v9 0/8] IMA: support for measuring kernel integrity critical data,
Tushar Sugandhi
[PATCH v8 0/8] IMA: support for measuring kernel integrity critical data,
Tushar Sugandhi
[Index of Archives]
[Linux Kernel]
[Linux Kernel Hardening]
[Linux NFS]
[Linux NILFS]
[Linux USB Devel]
[Video for Linux]
[Linux SCSI]
[Yosemite Forum]