Security Enhanced Linux (SELINUX)
[Prev Page][Next Page]
- Re: [PATCH v6 1/4] IMA: Add func to measure LSM state and policy, (continued)
- [RFC PATCH] selinux: move policy commit after updating selinuxfs,
Stephen Smalley
- mcstransd does not translate raw to trans context unless in cache, bauen1
- [RFC,selinux-notebook PATCH 00/18] markdown conversions and cleanups,
Paul Moore
- [RFC,selinux-notebook PATCH 01/18] build: explicitly enable pandoc pipe_tables, Paul Moore
- [RFC,selinux-notebook PATCH 02/18] css: identify table layout hacks, Paul Moore
- [RFC,selinux-notebook PATCH 03/18] css: style improvements, Paul Moore
- [RFC,selinux-notebook PATCH 04/18] x_windows: fully convert to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 05/18] xperm_rules: fully convert to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 06/18] xen_statements: fully convert to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 07/18] vm_support: fully convert to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 08/18] user_statements: fully convert to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 09/18] userspace_libraries: fully convert to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 10/18] type_statements: fully convert to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 11/18] postgresql: update PostgreSQL SELinux Support section, Paul Moore
- [RFC,selinux-notebook PATCH 12/18] all: remove all the <br> tags we haven't gotten to yet, Paul Moore
- [RFC,selinux-notebook PATCH 13/18] all: unify example formatting (scripts, code, policy, etc) in markdown, Paul Moore
- [RFC,selinux-notebook PATCH 15/18] all: consolidate multiple blank lines into one, Paul Moore
- [RFC,selinux-notebook PATCH 16/18] kernel_policy_language: convert the footnotes to markdown, Paul Moore
- [RFC,selinux-notebook PATCH 17/18] title: assorted updates, Paul Moore
- [RFC,selinux-notebook PATCH 18/18] x_windows: don't call table 12 a table, Paul Moore
- Re: [RFC,selinux-notebook PATCH 00/18] markdown conversions and cleanups, Richard Haines
- [GIT PULL] SELinux patches for v5.9,
Paul Moore
- [RFC PATCH v3] selinux: encapsulate policy state, refactor policy load,
Stephen Smalley
- Label files under HOME_DIR with a range by default,
bauen1
- [PATCH v3] Improve network_support.md,
Topi Miettinen
- [PATCH v5] libselinux: use kernel status page by default,
Mike Palmiotto
- License of userspace CI scripts?,
Ondrej Mosnacek
- [PATCH v6 0/2] userspace: Implement new format of filename trans rules,
Ondrej Mosnacek
- lnk_file read permission,
Gionatan Danti
- [RFC PATCH] selinux: encapsulate policy state, refactor policy load,
Stephen Smalley
- [PATCH] secilc/docs: document expandtypeattribute,
Dominick Grift
- [SELinux-notebook PATCH] type_statements: document expandattribute,
Dominick Grift
- [PATCH v5 0/4] LSM: Measure security module data,
Lakshmi Ramasubramanian
- Invalid output by secilc with constraints containing 4 nested OR and a single AND,
bauen1
- [PATCH v4 00/17] Introduce partial kernel_read_file() support,
Kees Cook
- [PATCH v4 01/17] test_firmware: Test platform fw loading on non-EFI systems, Kees Cook
- [PATCH v4 08/17] fs/kernel_read_file: Add file_size output argument, Kees Cook
- [PATCH v4 13/17] IMA: Add support for file reads without contents, Kees Cook
- [PATCH v4 15/17] firmware: Store opt_flags in fw_priv, Kees Cook
- [PATCH v4 14/17] fs/kernel_file_read: Add "offset" arg for partial reads, Kees Cook
- [PATCH v4 16/17] firmware: Add request_partial_firmware_into_buf(), Kees Cook
- [PATCH v4 11/17] module: Call security_kernel_post_load_data(), Kees Cook
- [PATCH v4 09/17] LSM: Introduce kernel_post_load_data() hook, Kees Cook
- [PATCH v4 12/17] LSM: Add "contents" flag to kernel_read_file hook, Kees Cook
- [PATCH v4 10/17] firmware_loader: Use security_post_load_data(), Kees Cook
- [PATCH v4 07/17] fs/kernel_read_file: Switch buffer size arg to size_t, Kees Cook
- [PATCH v4 06/17] fs/kernel_read_file: Remove redundant size argument, Kees Cook
- [PATCH v4 05/17] fs/kernel_read_file: Split into separate source file, Kees Cook
- [PATCH v4 04/17] fs/kernel_read_file: Split into separate include file, Kees Cook
- [PATCH v4 02/17] fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum, Kees Cook
- [PATCH v4 03/17] fs/kernel_read_file: Remove FIRMWARE_EFI_EMBEDDED enum, Kees Cook
- [PATCH v4 17/17] test_firmware: Test partial read support, Kees Cook
- [PATCH] selinux: encapsulate policy-dependent state,
Stephen Smalley
- [PATCH v2] selinux: add tracepoint on denials, Thiébaud Weksteen
- [PATCH v2] Improve network_support.md,
Topi Miettinen
- File context rule not working,
Ian Pilcher
- [PATCH] Improve network_support.md,
Topi Miettinen
- [PATCH v3 00/19] Introduce partial kernel_read_file() support,
Kees Cook
- [PATCH v3 03/19] firmware_loader: EFI firmware loader must handle pre-allocated buffer, Kees Cook
- [PATCH v3 04/19] fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum, Kees Cook
- [PATCH v3 02/19] selftest/firmware: Add selftest timeout in settings, Kees Cook
- [PATCH v3 09/19] fs/kernel_read_file: Switch buffer size arg to size_t, Kees Cook
- [PATCH v3 14/19] LSM: Add "contents" flag to kernel_read_file hook, Kees Cook
- [PATCH v3 15/19] IMA: Add support for file reads without contents, Kees Cook
- [PATCH v3 13/19] module: Call security_kernel_post_load_data(), Kees Cook
- [PATCH v3 11/19] LSM: Introduce kernel_post_load_data() hook, Kees Cook
- [PATCH v3 12/19] firmware_loader: Use security_post_load_data(), Kees Cook
- [PATCH v3 10/19] fs/kernel_read_file: Add file_size output argument, Kees Cook
- [PATCH v3 08/19] fs/kernel_read_file: Remove redundant size argument, Kees Cook
- [PATCH v3 06/19] fs/kernel_read_file: Split into separate include file, Kees Cook
- [PATCH v3 07/19] fs/kernel_read_file: Split into separate source file, Kees Cook
- [PATCH v3 05/19] fs/kernel_read_file: Remove FIRMWARE_EFI_EMBEDDED enum, Kees Cook
- [PATCH v3 01/19] test_firmware: Test platform fw loading on non-EFI systems, Kees Cook
- [PATCH v3 17/19] firmware: Store opt_flags in fw_priv, Kees Cook
- [PATCH v3 16/19] fs/kernel_file_read: Add "offset" arg for partial reads, Kees Cook
- [PATCH v3 19/19] test_firmware: Test partial read support, Kees Cook
- [PATCH v3 18/19] firmware: Add request_partial_firmware_into_buf(), Kees Cook
- Re: [PATCH v3 00/19] Introduce partial kernel_read_file() support, Scott Branden
- Re: [PATCH v3 00/19] Introduce partial kernel_read_file() support, Greg Kroah-Hartman
- Re: [PATCH v3 00/19] Introduce partial kernel_read_file() support, Mimi Zohar
- Re: [PATCH v3 00/19] Introduce partial kernel_read_file() support, Luis Chamberlain
- [PATCH v19 00/23] LSM: Module stacking for AppArmor,
Casey Schaufler
- [PATCH v19 01/23] LSM: Infrastructure management of the sock security, Casey Schaufler
- [PATCH v19 02/23] LSM: Create and manage the lsmblob data structure., Casey Schaufler
- [PATCH v19 03/23] LSM: Use lsmblob in security_audit_rule_match, Casey Schaufler
- [PATCH v19 04/23] LSM: Use lsmblob in security_kernel_act_as, Casey Schaufler
- [PATCH v19 05/23] net: Prepare UDS for security module stacking, Casey Schaufler
- [PATCH v19 06/23] LSM: Use lsmblob in security_secctx_to_secid, Casey Schaufler
- [PATCH v19 07/23] LSM: Use lsmblob in security_secid_to_secctx, Casey Schaufler
- [PATCH v19 08/23] LSM: Use lsmblob in security_ipc_getsecid, Casey Schaufler
- [PATCH v19 09/23] LSM: Use lsmblob in security_task_getsecid, Casey Schaufler
- [PATCH v19 10/23] LSM: Use lsmblob in security_inode_getsecid, Casey Schaufler
- [PATCH v19 11/23] LSM: Use lsmblob in security_cred_getsecid, Casey Schaufler
- [PATCH v19 12/23] IMA: Change internal interfaces to use lsmblobs, Casey Schaufler
- [PATCH v19 13/23] LSM: Specify which LSM to display, Casey Schaufler
- [PATCH v19 14/23] LSM: Ensure the correct LSM context releaser, Casey Schaufler
- [PATCH v19 15/23] LSM: Use lsmcontext in security_secid_to_secctx, Casey Schaufler
- [PATCH v19 16/23] LSM: Use lsmcontext in security_inode_getsecctx, Casey Schaufler
- [PATCH v19 17/23] LSM: security_secid_to_secctx in netlink netfilter, Casey Schaufler
- [PATCH v19 18/23] NET: Store LSM netlabel data in a lsmblob, Casey Schaufler
- [PATCH v19 19/23] LSM: Verify LSM display sanity in binder, Casey Schaufler
- [PATCH v19 20/23] Audit: Add new record for multiple process LSM attributes, Casey Schaufler
- [PATCH v19 21/23] Audit: Add a new record for multiple object LSM attributes, Casey Schaufler
- [PATCH v19 22/23] LSM: Add /proc attr entry for full LSM context, Casey Schaufler
- [PATCH v19 23/23] AppArmor: Remove the exclusive flag, Casey Schaufler
- [RFC PATCH] Improve getcon man page,
Christian Göttsche
- [PATCH v4] libselinux: use kernel status page by default,
Mike Palmiotto
- getcon family: returning success while context is NULL,
Christian Göttsche
- [PATCH] selinux: add tracepoint on denials,
Thiébaud Weksteen
- [PATCH v3] libselinux: use kernel status page by default,
Mike Palmiotto
- [RESEND] [PATCHv4 1/2] uapi: fuse: Add FUSE_SECURITY_CTX,
Chirantan Ekbote
- [RFC] Porting glibc away from deprecated libselinux APIs,
Arjun Shankar
- [PATCH] policycoreutils: fix inaccurate description in sestatus,
Dominick Grift
- [SELinux-notebook PATCH] lsm_selinux: document genfs_seclabel_symlinks policy capability,
Dominick Grift
- [SELinux-notebook PATCH] object_classes_permissions: describe bpf and perfmon capabilities,
Dominick Grift
- [PATCH v5 0/2] userspace: Implement new format of filename trans rules,
Ondrej Mosnacek
- [PATCH v6 0/7] capabilities: Introduce CAP_CHECKPOINT_RESTORE,
Adrian Reber
- [PATCH v3 0/5] LSM: Measure security module state,
Lakshmi Ramasubramanian
- [PATCH 00/13] Introduce partial kernel_read_file() support,
Kees Cook
- [PATCH 02/13] fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum, Kees Cook
- [PATCH 11/13] module: Call security_kernel_post_load_data(), Kees Cook
- [PATCH 13/13] fs/kernel_file_read: Add "offset" arg for partial reads, Kees Cook
- [PATCH 12/13] LSM: Add "contents" flag to kernel_read_file hook, Kees Cook
- [PATCH 10/13] firmware_loader: Use security_post_load_data(), Kees Cook
- [PATCH 09/13] LSM: Introduce kernel_post_load_data() hook, Kees Cook
- [PATCH 06/13] fs/kernel_read_file: Remove redundant size argument, Kees Cook
- [PATCH 07/13] fs/kernel_read_file: Switch buffer size arg to size_t, Kees Cook
- [PATCH 05/13] fs/kernel_read_file: Split into separate source file, Kees Cook
- [PATCH 08/13] fs/kernel_read_file: Add file_size output argument, Kees Cook
- [PATCH 04/13] fs/kernel_read_file: Split into separate include file, Kees Cook
- [PATCH 03/13] fs/kernel_read_file: Remove FIRMWARE_EFI_EMBEDDED enum, Kees Cook
- [PATCH 01/13] firmware_loader: EFI firmware loader must handle pre-allocated buffer, Kees Cook
- Re: [PATCH 00/13] Introduce partial kernel_read_file() support, Scott Branden
- [PATCH v4 0/2] userspace: Implement new format of filename trans rules,
Ondrej Mosnacek
- Reporting a use-after-free read bug in userfaultfd_release(), Peilin Ye
- [PATCH v2] libselinux: Use sestatus if open,
Mike Palmiotto
- [PATCH] python/audit2allow: add #include <limits.h> to sepolgen-ifgen-attr-helper.c,
W. Michael Petullo
- [PATCH] selinux: make use of variables when defining libdir and includedir,
W. Michael Petullo
- [RFC PATCH 0/5] keys: Security changes, ACLs and Container keyring,
David Howells
- [PATCH v2 0/5] LSM: Measure security module state,
Lakshmi Ramasubramanian
- [PATCH] restorecond: Set X-GNOME-HiddenUnderSystemd=true in restorecond.desktop file,
Laurent Bigonville
- [SELinux-notebook PATCH] adds CIL policy with makefile,
Dominick Grift
- [PATCH v1 0/5] LSM: Measure security module state,
Lakshmi Ramasubramanian
- [PATCH v5 0/6] capabilities: Introduce CAP_CHECKPOINT_RESTORE,
Adrian Reber
- Fwd: RedHat 8 Default Context mismatch,
Jason Strauss
- [PATCH] libselinux: Use sestatus if open,
Mike Palmiotto
- genhomedircon and passwd,
Dominick Grift
- [SELinux-notebook RFC] mypolicy is a simple CIL policy with Makefile to get started with,
Dominick Grift
- [PATCH] selinux-testsuite: Review and update SCTP tests,
Richard Haines
- ANN: SELinux userspace release 2020-07-10 / 3.1, Petr Lautrbach
- [SELinux-notebook PATCH] onjects.md: some clarifications,
Dominick Grift
- [PATCH v4 0/2] Inline some hashtab functions to improve performance,
Ondrej Mosnacek
- travis: any reason we have keep going on make commands,
William Roberts
- [SELinux-notebook PATCH] pam_login.md: pam_selinux_permit is known as pam_sepermit upstream,
Dominick Grift
- 3.1 release notes draft,
Petr Lautrbach
- [SELinux-notebook PATCH] avc_rules.md: mention secilc with the neverallow statement,
Dominick Grift
- [SELinux-notebook PATCH] auditing.md: describe avc record permissive keyword,
Dominick Grift
- [PATCH v18 00/23] LSM: Module stacking for AppArmor,
Casey Schaufler
- [PATCH v18 01/23] LSM: Infrastructure management of the sock security, Casey Schaufler
- [PATCH v18 02/23] LSM: Create and manage the lsmblob data structure., Casey Schaufler
- [PATCH v18 03/23] LSM: Use lsmblob in security_audit_rule_match, Casey Schaufler
- [PATCH v18 04/23] LSM: Use lsmblob in security_kernel_act_as, Casey Schaufler
- [PATCH v18 05/23] net: Prepare UDS for security module stacking, Casey Schaufler
- [PATCH v18 06/23] LSM: Use lsmblob in security_secctx_to_secid, Casey Schaufler
- [PATCH v18 07/23] LSM: Use lsmblob in security_secid_to_secctx, Casey Schaufler
- [PATCH v18 08/23] LSM: Use lsmblob in security_ipc_getsecid, Casey Schaufler
- [PATCH v18 09/23] LSM: Use lsmblob in security_task_getsecid, Casey Schaufler
- [PATCH v18 10/23] LSM: Use lsmblob in security_inode_getsecid, Casey Schaufler
- [PATCH v18 11/23] LSM: Use lsmblob in security_cred_getsecid, Casey Schaufler
- [PATCH v18 12/23] IMA: Change internal interfaces to use lsmblobs, Casey Schaufler
- [PATCH v18 13/23] LSM: Specify which LSM to display, Casey Schaufler
- [PATCH v18 14/23] LSM: Ensure the correct LSM context releaser, Casey Schaufler
- [PATCH v18 15/23] LSM: Use lsmcontext in security_secid_to_secctx, Casey Schaufler
- [PATCH v18 16/23] LSM: Use lsmcontext in security_inode_getsecctx, Casey Schaufler
- [PATCH v18 17/23] LSM: security_secid_to_secctx in netlink netfilter, Casey Schaufler
- [PATCH v18 18/23] NET: Store LSM netlabel data in a lsmblob, Casey Schaufler
- [PATCH v18 19/23] LSM: Verify LSM display sanity in binder, Casey Schaufler
- [PATCH v18 20/23] Audit: Add new record for multiple process LSM attributes, Casey Schaufler
- [PATCH v18 21/23] Audit: Add a new record for multiple object LSM attributes, Casey Schaufler
- [PATCH v18 22/23] LSM: Add /proc attr entry for full LSM context, Casey Schaufler
- [PATCH v18 23/23] AppArmor: Remove the exclusive flag, Casey Schaufler
- [PATCH v3 0/3] Inline some hashtab functions to improve performance,
Ondrej Mosnacek
- ANN: The SELinux Notebook in markdown on GitHub,
Paul Moore
- [PATCH v2] policycoreutils: setfiles: do not restrict checks against a binary policy,
Antoine Tenart
- [PATCH] security/selinux: Fix spelling mistakes in the comments,
lihao
- Strange AVC denials without effect,
Topi Miettinen
- Rebased selinux/working-selinuxns, Paul Moore
[Index of Archives]
[Selinux Refpolicy]
[Fedora Users]
[Fedora Desktop]
[Kernel]
[KDE Users]
[Gnome Users]