Security Enhanced Linux (SELINUX)
[Prev Page][Next Page]
- [PATCH] security/selinux: Fix spelling mistakes in the comments,
lihao
- Strange AVC denials without effect,
Topi Miettinen
- Rebased selinux/working-selinuxns, Paul Moore
- [PATCH] selinux-testsuite: Remove unused sctp code,
Richard Haines
- [PATCH] policycoreutils: setfiles: do not restrict checks against a binary policy,
Antoine Tenart
- [PATCH v4 0/3] capabilities: Introduce CAP_CHECKPOINT_RESTORE,
Adrian Reber
- [RFC PATCH] fixfiles: correctly restore context of mountpoints,
bauen1
- [RFC] userspace: netlink/sestatus feature parity,
Mike Palmiotto
- [PATCH] Update the cil docs to match the current behaviour.,
bauen1
- Daemon's child getting weird denial,
Ian Pilcher
- [PATCH testsuite] travis: fix `make conf` invocation,
Ondrej Mosnacek
- [PATCH] security: selinux: ss: conditional.c fixed a checkpatch warning,
Ethan Edwards
- [PATCH testsuite 0/4] Various CI-related testsuite fixes,
Ondrej Mosnacek
- [GIT PULL] SELinux fixes for v5.8 (#1),
Paul Moore
- CIL classmap with set named all resulting in segfault,
bauen1
- ANN: SELinux userspace 3.1-rc2 release candidate, Petr Lautrbach
- Re: Still Failing: SELinuxProject/selinux#444 (master - b3d8b99),
Petr Lautrbach
- [PATCH v2] setfiles: clarify documented path resolution behaviour,
Jonathan Lebon
- CIL blockinherit and entering a macro namespace using in,
bauen1
- [PATCH v3 0/3] capabilities: Introduce CAP_CHECKPOINT_RESTORE,
Adrian Reber
- [PATCH] selinux: log error messages on required process class / permissions,
Stephen Smalley
- [PATCH] scripts/selinux/mdp: fix initial SID handling,
Stephen Smalley
- [PATCH v3 1/1] fs: move kernel_read_file* to its own include file,
Scott Branden
- [PATCH v2 1/1] fs: move kernel_read_file* to its own include file,
Scott Branden
- [PATCH] selinux: fix undefined return of cond_evaluate_expr,
trix
- Minimal CIL policy requires process class with transition permission,
bauen1
- [PATCH] fs: move kernel_read_file* to its own include file,
Scott Branden
- [PATCH v3] selinux: fix another double free,
trix
- [PATCH] libselinux: Fix NULL pointer use in selinux_restorecon_set_sehandle,
Ji Qin
- How to off RBAC in SELinux?,
Mikhail Novosyolov
- [PATCH v2 0/1] selinux: fix another double free,
trix
- [PATCH] selinux: fix another double free,
trix
- [PATCH v2 0/1] selinux: fix double free,
trix
- [PATCH 0/1] selinux: fix double free,
trix
- [PATCH testsuite] defconfig: add NETFILTER_XT_MATCH_STATE and NFS_V4_1,
Stephen Smalley
- No window opening when running sandbox -S,
Cristian Ariza
- [PATCH AUTOSEL 5.7 153/274] selinux: fix error return code in policydb_read(), Sasha Levin
- [PATCH AUTOSEL 5.4 093/175] selinux: fix error return code in policydb_read(), Sasha Levin
- [PATCH v2] Add restorecon -x option to not cross FS boundaries,
Peter Whittaker
- [PATCH] python/sepolicy: Use xml.etree.ElementTree.Element.iter(),
Petr Lautrbach
- Better management of dynamic networks?,
Topi Miettinen
- [PATCH v2] semanage: handle getprotobyname() failure case,
Topi Miettinen
- [PATCH] libselinux: fix selinux_restorecon() statfs bug,
Stephen Smalley
- [PATCH] setfiles: clarify documented path resolution behaviour,
Jonathan Lebon
- sepolicy test fails with Python-3.9, Petr Lautrbach
- [PATCH v2 0/3] capabilities: Introduce CAP_CHECKPOINT_RESTORE,
Adrian Reber
- [PATCH] selinux-testsuite: Review and rework sctp tests,
Richard Haines
- [PATCH] semanage-node.8: describe netmask,
Topi Miettinen
- Re: [PATCH] RFC: fuse: virtiofs: Call security hooks on new inodes, Vivek Goyal
- [PATCH testsuite] policy/test_overlayfs.te: allow mounter to create whiteouts,
Stephen Smalley
- [PATCH] Avoid using getprotobyname(),
Topi Miettinen
- [RFC PATCH] selinux: runtime disable is deprecated, add some ssleep() discomfort,
Paul Moore
- Fwd: ❌ FAIL: Test report for kernel 5.7.0-f359287.cki (mainline.kernel.org),
Ondrej Mosnacek
- [GIT PULL] SELinux patches for v5.8,
Paul Moore
- [PATCH] selinux: Allow file owner to set "security.sehash",
Chirantan Ekbote
- [PATCH v2] semanage bash completion: handle semanage module,
Topi Miettinen
- Interests in usability enhancements to .../scripts.py?, Peter Whittaker
- [PATCH] libselpol: Sort portcon rules consistently,
James Carter
- [PATCH v4] selinux: allow reading labels before policy is loaded,
Jonathan Lebon
- CIL typealiases,
Dominick Grift
- [PATCH v2] selinux: allow reading labels before policy is loaded,
Jonathan Lebon
- [PATCH v3 1/2] libsepol/cil: Initialize the multiple_decls field of the cil db,
James Carter
- [PATCH] Add restorecon -x opt to not cross FS boundaries (cf github #208),
Peter Whittaker
- [PATCH] semanage bash completion: handle semanage module #246,
Topi Miettinen
- krb5 policy bug,
Corey Penford
- Issue with fixfiles excludes,
Chris Adams
- [PATCH] checkpolicy: Minor tweaks to the names of the contributors to the manpages,
Andrej Shadura
- [PATCH] selinux: allow reading labels before policy is loaded,
Jonathan Lebon
- CFLAGS overridden by distribution build system,
Laurent Bigonville
- general protection fault in selinux_socket_recvmsg,
syzbot
- [PATCH v2 1/3] libsepol: Write CIL default MLS rules on separate lines,
James Carter
- [PATCH v3 1/2] libsepol: Fix type alias handling in kernel_to_cil,
James Carter
- Question about SELinux and hard resource limits,
Ondrej Mosnacek
- [PATCH] libselinux: utils: link with shared libfts,
Đoàn Trần Công Danh
- [PATCH] capabilities: Introduce CAP_RESTORE,
Adrian Reber
Re: [PATCH] capabilities: Introduce CAP_RESTORE, Jann Horn
Re: [PATCH] capabilities: Introduce CAP_RESTORE, Matt Helsley
[PATCH 1/3] libsepol: Write CIL default MLS rules on separate lines,
James Carter
[PATCH v2 1/2] libsepol: Fix type alias handling in kernel_to_cil,
James Carter
[PATCH V5] selinux-testsuite: Add nftables to inet_socket and sctp tests,
Richard Haines
Documentation on Enabling NetLabel,
Paul Tagliamonte
[PATCH 1/2] libsepol: Fix type alias handling in kernel_to_cil,
James Carter
[PATCH] README: Add kernel-modules for SCTP,
william . c . roberts
[PATCH V4] selinux-testsuite: Add nftables to inet_socket and sctp tests,
Richard Haines
Travis CI: Run selinux-testsuite,
bill . c . roberts
[PATCH v2 1/2] libsepol/cil: Initialize the multiple_decls field of the cil db,
James Carter
[PATCH] libsepol/cil: Initialize the multiple_decls field of the cil db,
James Carter
ANN: SELinux userspace 3.1-rc1 release candidate,
Petr Lautrbach
Semodule accepts bad modules every other time,
Topi Miettinen
[PATCH] Add restorecon -x to not cross FS boundaries,
Peter Whittaker
Bad context in PostgreSQL page on SELinux Project wiki?,
Peter Whittaker
[PATCH] README: add pkg kernel-devel to dnf command,
william . c . roberts
[PATCH V3] selinux-testsuite: Add nftables to inet_socket and sctp tests,
Richard Haines
[RFC PATCH V2] selinux-testsuite: Add check for key changes on watch_queue,
Richard Haines
[PATCH V2] selinux-testsuite: Add nftables to inet_socket and sctp tests,
Richard Haines
[PATCH v3] secilc/docs: fix use of TMPDIR,
Topi Miettinen
[PATCH v2] secilc/docs: fix use of TMPDIR #240, Topi Miettinen
Wrong processes in AVC denials,
Topi Miettinen
[PATCH] secilc/docs: fix use of TMPDIR #240,
Topi Miettinen
[PATCH v17 00/23] LSM: Module stacking for AppArmor,
Casey Schaufler
- [PATCH v17 01/23] LSM: Infrastructure management of the sock security, Casey Schaufler
- [PATCH v17 02/23] LSM: Create and manage the lsmblob data structure., Casey Schaufler
- [PATCH v17 03/23] LSM: Use lsmblob in security_audit_rule_match, Casey Schaufler
- [PATCH v17 04/23] LSM: Use lsmblob in security_kernel_act_as, Casey Schaufler
- [PATCH v17 05/23] net: Prepare UDS for security module stacking, Casey Schaufler
- [PATCH v17 06/23] Use lsmblob in security_secctx_to_secid, Casey Schaufler
- [PATCH v17 07/23] LSM: Use lsmblob in security_secid_to_secctx, Casey Schaufler
- [PATCH v17 08/23] LSM: Use lsmblob in security_ipc_getsecid, Casey Schaufler
- [PATCH v17 09/23] LSM: Use lsmblob in security_task_getsecid, Casey Schaufler
- [PATCH v17 10/23] LSM: Use lsmblob in security_inode_getsecid, Casey Schaufler
- [PATCH v17 11/23] LSM: Use lsmblob in security_cred_getsecid, Casey Schaufler
- [PATCH v17 12/23] IMA: Change internal interfaces to use lsmblobs, Casey Schaufler
- [PATCH v17 13/23] LSM: Specify which LSM to display, Casey Schaufler
- [PATCH v17 14/23] LSM: Ensure the correct LSM context releaser, Casey Schaufler
- [PATCH v17 15/23] LSM: Use lsmcontext in security_secid_to_secctx, Casey Schaufler
- [PATCH v17 16/23] LSM: Use lsmcontext in security_inode_getsecctx, Casey Schaufler
- [PATCH v17 17/23] LSM: security_secid_to_secctx in netlink netfilter, Casey Schaufler
- [PATCH v17 18/23] NET: Store LSM netlabel data in a lsmblob, Casey Schaufler
- [PATCH v17 19/23] LSM: Verify LSM display sanity in binder, Casey Schaufler
- [PATCH v17 20/23] Audit: Add a new record for multiple subject LSM attributes, Casey Schaufler
- [PATCH v17 21/23] Audit: Add a new record for multiple object LSM attributes, Casey Schaufler
- [PATCH v17 22/23] LSM: Add /proc attr entry for full LSM context, Casey Schaufler
- [PATCH v17 23/23] AppArmor: Remove the exclusive flag, Casey Schaufler
[RFC PATCH] selinux: add note to avoid permissions with _perms suffix,
Christian Göttsche
Configuring MLS with a daemon operating at multiple sensitivities,
Paul Tagliamonte
[PATCH] libsepol: drop broken warning on duplicate filename transitions,
Stephen Smalley
[PATCH v2] libsemanage: fsync final files before rename,
Smalley
[PATCH] libsemanage: fsync before rename,
Smalley
The selinux/working-selinuxns branch has been rebased on top of selinux/next, Paul Moore
[PATCH 0/3] fs: reduce export usage of kerne_read*() calls,
Luis Chamberlain
[PATCH] secilc: Fix policy optimization test,
Petr Lautrbach
[PATCH] python/sepolicy: silence new flake8 warnings,
Nicolas Iooss
[PATCH] mcstransd: fix memory leak in new_context_str,
bauen1
[PATCH v5 testsuite 07/15] test_policy.if: use term_use_all_ptys() instead of unconfined_devpts_t,
Stephen Smalley
[PATCH v2 testsuite] tests/filesystem: fix quotas_test,
Stephen Smalley
[PATCH] run-flake8: Filter out ./.git/ directory,
Petr Lautrbach
[PATCH] semanage/test-semanage.py: Return non-zero value when some of unittest tests fail,
Petr Lautrbach
[PATCH] selinux-testsuite: Add nftables to inet_socket and sctp tests,
Richard Haines
[PATCH] chcat: don't crash if access to binary policy is prohibited,
bauen1
[PATCH -next] selinux: netlabel: Remove unused inline function selinux_netlbl_conn_setsid,
YueHaibing
[PATCH testsuite] tests/filesystem: fix quotas_test,
Stephen Smalley
[PATCH v4 testsuite 00/15] Update to work on Debian,
Stephen Smalley
- [PATCH v4 testsuite 01/15] test_capable_net.te: remove corenet_tcp/udp_sendrecv_all_ports(), Stephen Smalley
- [PATCH v4 testsuite 02/15] test_execute_no_trans.te: stop using mmap_file_perms, Stephen Smalley
- [PATCH v4 testsuite 08/15] test_overlayfs.te: allow test_overlay_mounter_t to read user tmp files, Stephen Smalley
- [PATCH v4 testsuite 07/15] test_policy.if: use ptynode instead of unconfined_devpts_t, Stephen Smalley
- [PATCH v4 testsuite 09/15] policy: Add MCS constraint on peer recv, Stephen Smalley
- [PATCH v4 testsuite 11/15] test_filesystem.te,tests/{fs_}filesystem: do not force user identity to system_u, Stephen Smalley
- [PATCH v4 testsuite 14/15] tests/mmap: skip /dev/zero tests if /dev is noexec, Stephen Smalley
- [PATCH v4 testsuite 13/15] tests/cap_userns: set /proc/sys/kernel/unprivileged_userns_clone if needed, Stephen Smalley
- [PATCH v4 testsuite 15/15] README.md: Add instructions for Debian, Stephen Smalley
- [PATCH v4 testsuite 12/15] policy/Makefile: conditionalize setting of allow_domain_fd_use, Stephen Smalley
- [PATCH v4 testsuite 06/15] test_sctp.te: make netlabel_peer_t a MCS-constrained type, Stephen Smalley
- [PATCH v4 testsuite 04/15] test_global.te: allow test domains to statfs selinuxfs, Stephen Smalley
- [PATCH v4 testsuite 03/15] test_ibendport.te: use dev_rw_infiniband_mgmt_dev(), Stephen Smalley
- [PATCH v4 testsuite 05/15] test_inet_socket.te: switch from generic_port to _all_unreserved_ports(), Stephen Smalley
- [PATCH v4 testsuite 10/15] policy: Add defaultrange rules for overlay tests, Stephen Smalley
- Re: [PATCH v4 testsuite 00/15] Update to work on Debian, Stephen Smalley
- Re: [PATCH v4 testsuite 00/15] Update to work on Debian, Ondrej Mosnacek
[PATCH v3] selinux-testsuite: update to work on Debian, Stephen Smalley
[PATCH v2] selinux-testsuite: update to work on Debian,
Stephen Smalley
[PATCH] selinux-testsuite: update to work on Debian,
Stephen Smalley
[Index of Archives]
[Selinux Refpolicy]
[Fedora Users]
[Fedora Desktop]
[Kernel]
[KDE Users]
[Gnome Users]