Linux Integrity
[Prev Page][Next Page]
- Re: [PATCH v14 4/5] security: keys: trusted: use ASN.1 TPM2 key format for the blobs, (continued)
- [PATCH v3 00/38] idmapped mounts,
Christian Brauner
- [PATCH v3 32/38] fat: handle idmapped mounts, Christian Brauner
- [PATCH v3 25/38] init: handle idmapped mounts, Christian Brauner
- [PATCH v3 37/38] tests: extend mount_setattr tests, Christian Brauner
- [PATCH v3 30/38] apparmor: handle idmapped mounts, Christian Brauner
- [PATCH v3 35/38] overlayfs: do not mount on top of idmapped mounts, Christian Brauner
- [PATCH v3 23/38] fcntl: handle idmapped mounts, Christian Brauner
- [PATCH v3 21/38] af_unix: handle idmapped mounts, Christian Brauner
- [PATCH v3 34/38] ecryptfs: do not mount on top of idmapped mounts, Christian Brauner
- [PATCH v3 36/38] fs: introduce MOUNT_ATTR_IDMAP, Christian Brauner
- [PATCH v3 31/38] ima: handle idmapped mounts, Christian Brauner
- [PATCH v3 22/38] utimes: handle idmapped mounts, Christian Brauner
- [PATCH v3 26/38] ioctl: handle idmapped mounts, Christian Brauner
- [PATCH v3 28/38] exec: handle idmapped mounts, Christian Brauner
- [PATCH v3 20/38] open: handle idmapped mounts, Christian Brauner
- [PATCH v3 33/38] ext4: support idmapped mounts, Christian Brauner
- [PATCH v3 27/38] would_dump: handle idmapped mounts, Christian Brauner
- [PATCH v3 24/38] notify: handle idmapped mounts, Christian Brauner
- [PATCH v3 16/38] namei: handle idmapped mounts in may_*() helpers, Christian Brauner
- [PATCH v3 02/38] mount: make {lock,unlock}_mount_hash() static, Christian Brauner
- [PATCH v3 03/38] namespace: only take read lock in do_reconfigure_mnt(), Christian Brauner
- [PATCH v3 01/38] namespace: take lock_mount_hash() directly when changing flags, Christian Brauner
- [PATCH v3 15/38] stat: handle idmapped mounts, Christian Brauner
- [PATCH v3 12/38] acl: handle idmapped mounts, Christian Brauner
- [PATCH v3 17/38] namei: introduce struct renamedata, Christian Brauner
- [PATCH v3 19/38] open: handle idmapped mounts in do_truncate(), Christian Brauner
- [PATCH v3 11/38] attr: handle idmapped mounts, Christian Brauner
- [PATCH v3 14/38] commoncap: handle idmapped mounts, Christian Brauner
- [PATCH v3 13/38] xattr: handle idmapped mounts, Christian Brauner
- [PATCH v3 06/38] fs: add id translation helpers, Christian Brauner
- [PATCH v3 04/38] fs: add mount_setattr(), Christian Brauner
- [PATCH v3 07/38] mount: attach mappings to mounts, Christian Brauner
- [PATCH v3 05/38] tests: add mount_setattr() selftests, Christian Brauner
- [PATCH v3 08/38] capability: handle idmapped mounts, Christian Brauner
- [PATCH v3 09/38] namei: add idmapped mount aware permission helpers, Christian Brauner
- [PATCH v3 10/38] inode: add idmapped mount aware init and permission helpers, Christian Brauner
- [PATCH v3 18/38] namei: prepare for idmapped mounts, Christian Brauner
- Re: [PATCH v3 00/38] idmapped mounts, Serge E. Hallyn
- [PATCH v3] char: tpm: add i2c driver for cr50,
Adrian Ratiu
- [PATCH] ima: Don't modify file descriptor mode on the fly,
Roberto Sassu
- [PATCH] tpm: ibmvtpm: fix error return code in tpm_ibmvtpm_probe(),
Wang Hai
- [PATCH v23 13/23] LSM: Ensure the correct LSM context releaser, Casey Schaufler
- [PATCH v23 11/23] IMA: Change internal interfaces to use lsmblobs, Casey Schaufler
- [PATCH v23 10/23] LSM: Use lsmblob in security_cred_getsecid, Casey Schaufler
- [PATCH v23 09/23] LSM: Use lsmblob in security_inode_getsecid, Casey Schaufler
- [PATCH v23 08/23] LSM: Use lsmblob in security_task_getsecid, Casey Schaufler
- [PATCH v23 03/23] LSM: Use lsmblob in security_audit_rule_match, Casey Schaufler
- [PATCH 000/141] Fix fall-through warnings for Clang,
Gustavo A. R. Silva
- Re: [PATCH 000/141] Fix fall-through warnings for Clang, Martin K. Petersen
- Re: (subset) [PATCH 000/141] Fix fall-through warnings for Clang, Martin K. Petersen
[PATCH v1 0/9] Enable root to update the blacklist keyring,
Mickaël Salaün
- [PATCH v1 4/9] certs: Check that builtin blacklist hashes are valid, Mickaël Salaün
- [PATCH v1 8/9] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID, Mickaël Salaün
- [PATCH v1 9/9] tools/certs: Add print-cert-tbs-hash.sh, Mickaël Salaün
- [PATCH v1 7/9] certs: Allow root user to append signed hashes to the blacklist keyring, Mickaël Salaün
- [PATCH v1 5/9] PKCS#7: Fix missing include, Mickaël Salaün
- [PATCH v1 6/9] certs: Fix blacklist flag type confusion, Mickaël Salaün
- [PATCH v1 2/9] certs: Make blacklist_vet_description() more strict, Mickaël Salaün
- [PATCH v1 3/9] certs: Factor out the blacklist hash creation, Mickaël Salaün
- [PATCH v1 1/9] certs: Fix blacklisted hexadecimal hash string check, Mickaël Salaün
- Re: [PATCH v1 0/9] Enable root to update the blacklist keyring, Jarkko Sakkinen
- Re: [PATCH v1 1/9] certs: Fix blacklisted hexadecimal hash string check, David Howells
- Re: [PATCH v1 5/9] PKCS#7: Fix missing include, David Howells
- Re: [PATCH v1 2/9] certs: Make blacklist_vet_description() more strict, David Howells
- Re: [PATCH v1 8/9] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID, David Howells
- Re: [PATCH v1 4/9] certs: Check that builtin blacklist hashes are valid, David Howells
[PATCH v2] char: tpm: add i2c driver for cr50,
Adrian Ratiu
[PATCH v6 0/8] IMA: support for measuring kernel integrity critical data,
Tushar Sugandhi
Re: Re: [PATCH v3 1/2] tpm_tis_core: add optional max xfer size check,
Dafna Hirschfeld
[PATCH v2 00/39] fs: idmapped mounts,
Christian Brauner
- [PATCH v2 03/39] namespace: only take read lock in do_reconfigure_mnt(), Christian Brauner
- [PATCH v2 01/39] namespace: take lock_mount_hash() directly when changing flags, Christian Brauner
- [PATCH v2 02/39] mount: make {lock,unlock}_mount_hash() static, Christian Brauner
- [PATCH v2 04/39] fs: add mount_setattr(), Christian Brauner
- [PATCH v2 06/39] fs: add id translation helpers, Christian Brauner
- [PATCH v2 08/39] capability: handle idmapped mounts, Christian Brauner
- [PATCH v2 05/39] tests: add mount_setattr() selftests, Christian Brauner
- [PATCH v2 07/39] mount: attach mappings to mounts, Christian Brauner
- [PATCH v2 09/39] namei: add idmapped mount aware permission helpers, Christian Brauner
- [PATCH v2 10/39] inode: add idmapped mount aware init and permission helpers, Christian Brauner
- [PATCH v2 11/39] attr: handle idmapped mounts, Christian Brauner
- [PATCH v2 14/39] commoncap: handle idmapped mounts, Christian Brauner
- [PATCH v2 12/39] acl: handle idmapped mounts, Christian Brauner
- [PATCH v2 17/39] namei: introduce struct renamedata, Christian Brauner
- [PATCH v2 16/39] namei: handle idmapped mounts in may_*() helpers, Christian Brauner
- [PATCH v2 18/39] namei: prepare for idmapped mounts, Christian Brauner
- [PATCH v2 19/39] open: handle idmapped mounts in do_truncate(), Christian Brauner
- [PATCH v2 13/39] xattr: handle idmapped mounts, Christian Brauner
- [PATCH v2 15/39] stat: handle idmapped mounts, Christian Brauner
- [PATCH v2 36/39] overlayfs: do not mount on top of idmapped mounts, Christian Brauner
- [PATCH v2 31/39] audit: handle idmapped mounts, Christian Brauner
- [PATCH v2 33/39] fat: handle idmapped mounts, Christian Brauner
- [PATCH v2 37/39] fs: introduce MOUNT_ATTR_IDMAP, Christian Brauner
- [PATCH v2 24/39] notify: handle idmapped mounts, Christian Brauner
- [PATCH v2 38/39] selftests: add idmapped mounts xattr selftest, Christian Brauner
- [PATCH v2 28/39] exec: handle idmapped mounts, Christian Brauner
- [PATCH v2 32/39] ima: handle idmapped mounts, Christian Brauner
- [PATCH v2 25/39] init: handle idmapped mounts, Christian Brauner
- [PATCH v2 22/39] utimes: handle idmapped mounts, Christian Brauner
- [PATCH v2 20/39] open: handle idmapped mounts, Christian Brauner
- [PATCH v2 30/39] apparmor: handle idmapped mounts, Christian Brauner
- [PATCH v2 23/39] fcntl: handle idmapped mounts, Christian Brauner
- [PATCH v2 26/39] ioctl: handle idmapped mounts, Christian Brauner
- [PATCH v2 34/39] ext4: support idmapped mounts, Christian Brauner
- [PATCH v2 27/39] would_dump: handle idmapped mounts, Christian Brauner
- [PATCH v2 21/39] af_unix: handle idmapped mounts, Christian Brauner
- [PATCH v2 35/39] ecryptfs: do not mount on top of idmapped mounts, Christian Brauner
- Re: [PATCH v2 00/39] fs: idmapped mounts, Jonathan Corbet
- Re: [PATCH v2 00/39] fs: idmapped mounts, Stephen Barber
- Re: [PATCH v2 00/39] fs: idmapped mounts, Darrick J. Wong
- Message not available
[PATCH v9 0/8] Carry forward IMA measurement log on kexec on ARM64,
Lakshmi Ramasubramanian
[PATCH v2 00/13] Introduce seqnum_ops,
Shuah Khan
[RESEND][PATCH] ima: Set and clear FMODE_CAN_READ in ima_calc_file_hash(),
Roberto Sassu
[PATCH v2] ima: select ima-buf template for buffer measurement,
Lakshmi Ramasubramanian
[PATCH] ima: Set and clear FMODE_CAN_READ in ima_calc_file_hash(), Roberto Sassu
[PATCH] ima: select ima-buf template for buffer measurement,
Lakshmi Ramasubramanian
[PATCH v3 00/11] evm: Improve usability of portable signatures,
Roberto Sassu
- [PATCH v3 04/11] ima: Move ima_reset_appraise_flags() call to post hooks, Roberto Sassu
- [PATCH v3 03/11] evm: Refuse EVM_ALLOW_METADATA_WRITES only if an HMAC key is loaded, Roberto Sassu
- [PATCH v3 01/11] evm: Execute evm_inode_init_security() only when an HMAC key is loaded, Roberto Sassu
- [PATCH v3 02/11] evm: Load EVM key in ima_load_x509() to avoid appraisal, Roberto Sassu
- [PATCH v3 07/11] evm: Allow xattr/attr operations for portable signatures, Roberto Sassu
- [PATCH v3 06/11] evm: Ignore INTEGRITY_NOLABEL if no HMAC key is loaded, Roberto Sassu
- [PATCH v3 05/11] evm: Introduce evm_status_revalidate(), Roberto Sassu
- [PATCH v3 09/11] ima: Allow imasig requirement to be satisfied by EVM portable signatures, Roberto Sassu
- [PATCH v3 08/11] evm: Allow setxattr() and setattr() for unmodified metadata, Roberto Sassu
- [PATCH v3 10/11] ima: Introduce template field evmsig and write to field sig as fallback, Roberto Sassu
- [PATCH v3 11/11] ima: Don't remove security.ima if file must not be appraised, Roberto Sassu
- Re: [PATCH v3 00/11] evm: Improve usability of portable signatures, Mimi Zohar
[PATCH 00/13] Introduce seqnum_ops,
Shuah Khan
[PATCH AUTOSEL 5.9 52/55] tpm_tis: Disable interrupts on ThinkPad T490s, Sasha Levin
[PATCH AUTOSEL 5.4 40/42] tpm_tis: Disable interrupts on ThinkPad T490s, Sasha Levin
[PATCH AUTOSEL 4.19 20/21] tpm_tis: Disable interrupts on ThinkPad T490s, Sasha Levin
[GIT PULL] tpmdd updates for v5.10-rc4,
Jarkko Sakkinen
Selinux policy for x509_ima.der public certificate loaded by kernel during boot,
rishi gupta
[PATCH 1/1] ima: Update doc for TPM 2.0 for calculating boot_aggregate, Petr Vorel
[PATCH v22 13/23] LSM: Ensure the correct LSM context releaser,
Casey Schaufler
[PATCH v22 11/23] IMA: Change internal interfaces to use lsmblobs,
Casey Schaufler
[PATCH v22 10/23] LSM: Use lsmblob in security_cred_getsecid,
Casey Schaufler
[PATCH v22 08/23] LSM: Use lsmblob in security_task_getsecid,
Casey Schaufler
[PATCH v22 09/23] LSM: Use lsmblob in security_inode_getsecid,
Casey Schaufler
[PATCH v4 0/3,RESEND 2] KEYS, trusted: a bunch of bug fixes, Jarkko Sakkinen
[PATCH v8 0/4] Introduce TEE based Trusted Keys support,
Sumit Garg
Re: [PATCH v8 2/4] KEYS: trusted: Introduce TEE based Trusted Keys, Ahmad Fatoum
[PATCH v8 3/4] doc: trusted-encrypted: updates with TEE as a new trust source, Sumit Garg
[PATCH v8 4/4] MAINTAINERS: Add myself as Trusted Keys co-maintainer, Sumit Garg
Re: [PATCH v8 0/4] Introduce TEE based Trusted Keys support, Jarkko Sakkinen
[PATCH v4 0/3] wire up IMA secure boot for arm64,
Ard Biesheuvel
[PATCH v5 0/7] IMA: Infrastructure for measurement of critical kernel data,
Tushar Sugandhi
[RFC PATCH 0/4] Secure Launch early PCR extend support,
Daniel P. Smith
[PATCH v8 0/4] Carry forward IMA measurement log on kexec on ARM64,
Lakshmi Ramasubramanian
[PATCH v4 0/3,RESEND] KEYS, trusted: a bunch of bug fixes,
Jarkko Sakkinen
[PATCH v3 0/3] add ima_arch support for ARM64,
Chester Lin
[RFC] Finding the right target branch for patches that span IMA and SeLinux,
Tushar Sugandhi
ima-evm-utils: version 1.3.2 released,
Mimi Zohar
[PATCH 00/34] fs: idmapped mounts,
Christian Brauner
- [PATCH 02/34] namespace: only take read lock in do_reconfigure_mnt(), Christian Brauner
- [PATCH 05/34] fs: introduce MOUNT_ATTR_IDMAP, Christian Brauner
- [PATCH 11/34] acl: handle idmapped mounts, Christian Brauner
- [PATCH 04/34] tests: add mount_setattr() selftests, Christian Brauner
- [PATCH 10/34] attr: handle idmapped mounts, Christian Brauner
- [PATCH 13/34] selftests: add idmapped mounts xattr selftest, Christian Brauner
- [PATCH 22/34] af_unix: handle idmapped mounts, Christian Brauner
- [PATCH 31/34] expfs: handle idmapped mounts, Christian Brauner
- [PATCH 25/34] exec: handle idmapped mounts, Christian Brauner
- [PATCH 19/34] namei: add lookup helpers with idmapped mounts aware permission checking, Christian Brauner
- [PATCH 18/34] namei: prepare for idmapped mounts, Christian Brauner
- [PATCH 24/34] would_dump: handle idmapped mounts, Christian Brauner
- [PATCH 23/34] utimes: handle idmapped mounts, Christian Brauner
- [PATCH 28/34] audit: handle idmapped mounts, Christian Brauner
- [PATCH 20/34] open: handle idmapped mounts in do_truncate(), Christian Brauner
- [PATCH 17/34] namei: introduce struct renamedata, Christian Brauner
- [PATCH 32/34] overlayfs: handle idmapped lower directories, Christian Brauner
- [PATCH 27/34] apparmor: handle idmapped mounts, Christian Brauner
- [PATCH 16/34] namei: handle idmapped mounts in may_*() helpers, Christian Brauner
- [PATCH 21/34] open: handle idmapped mounts, Christian Brauner
- [PATCH 34/34] fat: handle idmapped mounts, Christian Brauner
- [PATCH 26/34] fs: add helpers for idmap mounts, Christian Brauner
- [PATCH 29/34] ima: handle idmapped mounts, Christian Brauner
- [PATCH 33/34] overlayfs: handle idmapped merged mounts, Christian Brauner
- [PATCH 30/34] ext4: support idmapped mounts, Christian Brauner
- [PATCH 14/34] commoncap: handle idmapped mounts, Christian Brauner
- [PATCH 15/34] stat: add mapped_generic_fillattr(), Christian Brauner
- [PATCH 12/34] xattr: handle idmapped mounts, Christian Brauner
- [PATCH 03/34] fs: add mount_setattr(), Christian Brauner
- [PATCH 08/34] namei: add idmapped mount aware permission helpers, Christian Brauner
- [PATCH 09/34] inode: add idmapped mount aware init and permission helpers, Christian Brauner
- [PATCH 07/34] capability: handle idmapped mounts, Christian Brauner
- [PATCH 06/34] fs: add id translation helpers, Christian Brauner
- [PATCH 01/34] namespace: take lock_mount_hash() directly when changing flags, Christian Brauner
- Re: [PATCH 00/34] fs: idmapped mounts, Sargun Dhillon
- Re: [PATCH 00/34] fs: idmapped mounts, Dave Chinner
- Re: [PATCH 00/34] fs: idmapped mounts, Eric W. Biederman
- Message not available
Re: [PATCH 00/34] fs: idmapped mounts, Andy Lutomirski
evmctl argument parsing, HMAC algorithm, HMAC replacement, Ahmed, Safayet (GE Research, US)
[PATCH] tpm_tis_core: Add the error log when the chip startup failed, Tian Tao
[PATCH] IMA: Measure kernel version in early boot, Raphael Gianotti
[PATCH v3] dm verity: Add support for signature verification with 2nd keyring, Mickaël Salaün
[PATCH ima-evm-utils] boot_aggregate.test: Skip if CONFIG_IMA not enabled,
Petr Vorel
[PATCH] file2bin: Pass the right values to size and count parameters for fread(),
Lakshmi Ramasubramanian
[PATCH] security: remove unneeded break,
trix
[PATCH v4 0/2] dm-devel:dm-crypt: infrastructure for measurement of DM target data using IMA,
Tushar Sugandhi
[RESEND PATCH v11 0/3] Add trusted_for(2) (was O_MAYEXEC),
Mickaël Salaün
Measuring kernel modules with IMA,
Stephen Smalley
[RFC] treewide: cleanup unreachable breaks,
trix
[ima-evm-utils][PATCH 0/3] travis: misc software TPM changes,
Mimi Zohar
[Index of Archives]
[Linux Kernel]
[Linux Kernel Hardening]
[Linux NFS]
[Linux NILFS]
[Linux USB Devel]
[Video for Linux]
[Linux SCSI]
[Yosemite Forum]