Security Enhanced Linux (SELINUX)
[Prev Page][Next Page]
- Re: Collecting ideas for audit2allow improvement, (continued)
- SO_PEERSEC on socket connected to the same process,
Laurent Bigonville
- [PATCH v2] libsepol: Fix neverallow bug when checking conditional policy, James Carter
- [GIT PULL] SELinux fixes for v4.12 (#1), Paul Moore
- [PATCH] secilc: Update test policy and documentation for Infiniband,
Richard Haines
- [PATCH] libsepol/cil: ibendportcon fails to resolve in CIL policy,
Richard Haines
- [PATCH 1/1] libsepol: destroy the expanded level when mls_semantic_level_expand() fails,
Nicolas Iooss
- ANN: SELinux userspace 2.7-rc1 release,
Stephen Smalley
- [PATCH] libsepol: Fix neverallow bug when checking conditional policy, James Carter
- [PATCH] libselinux: always unmount selinuxfs for SELINUX=disabled, Stephen Smalley
- boot failure due to ambiguous SELinux config,
Laurent Bigonville
- icmp and rawip socket,
Dominick Grift
- [RFC PATCH] selinux: fix double free in selinux_parse_opts_str(),
Paul Moore
- [PATCH] net/ipv6: Fix CALIPSO causing GPF with datagram support,
Richard Haines
- [PATCH] security: selinux: use kmem_cache for ebitmap,
Junil Lee
- [PATCH 1/1] libsepol/cil: call cil_reset_context() when context is not NULL,
Nicolas Iooss
- [no subject],
Petr Lautrbach
- [PATCH] libsepol/cil: fix error check in new cil_resolve_name,
Steve Lawrence
- [PATCH] libselinux: fix selabel_lookup*() double slash bug, Stephen Smalley
- [PATCH] libsepol/cil: better error message with duplicate aliases + support aliases to aliases,
Steve Lawrence
- selabel_lookup_raw() doesn't find correct context for path with double slashes,
Laurent Bigonville
- [PATCH 1/3] libsepol, libsemanage, libselinux: Fix fallthrough warnings from gcc 7,
Stephen Smalley
- [PATCH 1/2] libsepol: do not use handle when it is marked unused,
Nicolas Iooss
- [PATCH 1/2 v2] libsepol: Clean up scope handling,
James Carter
- [PATCH v2] tools: add perltidy to the syntax checker/fixer,
Paul Moore
- [PATCH 1/2] libsepol: Clean up scope handling,
James Carter
- [PATCH] sort input files,
Stephen Smalley
- [PATCH v2 0/2] Selinux tests for Infinfiband,
Dan Jurgens
- [PATCH 1/1] libsepol/cil: fix aliasactual resolution errors,
Steve Lawrence
- libsepol segfaults with typealias and typealiasactual,
Dominick Grift
- [PATCH 1/1] semanage: Fix manpage author for ibpkey and ibendport pages.,
Dan Jurgens
- Access Vector Cache initialization audit message,
Richard Guy Briggs
- [RFC PATCH] tools: add perltidy to the syntax checker/fixer,
Paul Moore
- [PATCH 0/2] Add a file syntax checker/fixer to the testsuite,
Paul Moore
- [PATCH] python/semanage: print is a function in python3, Stephen Smalley
- [PATCH] Fix recently introduced TabError's,
Petr Lautrbach
- [PATCH] selinux-testsuite: allow more instances of map permission, Stephen Smalley
- Fedora COPR repositories with builds of latest code,
Petr Lautrbach
- [PATCH v1 0/2] Selinux tests for Infinfiband,
Dan Jurgens
- ioctl help,
Dominick Grift
- Fwd: security-next merged to v4.12-rc2, Paul Moore
- [PATCH v8 2/9] IB/core: Enforce PKey security on QPs,
Dan Jurgens
- [PATCH 1/1] libsepol: make role_list_destroy() do nothing when role_list is NULL,
Nicolas Iooss
- RHEL 7.3 : httpd : type=SELINUX_ERR op=security_bounded_transition seresult=denied,
Chris O'Neil
- [PATCH v3 0/9] SELinux user space support for Infiniband RDMA,
Dan Jurgens
- [pcmoore-selinux:next 17/17] security/selinux/ibpkey.c:116:24: sparse: incompatible types in comparison expression (different address spaces),
kbuild test robot
- [PATCH 1/2] libsepol: propagate calloc() failure,
Nicolas Iooss
- [PATCH] selinux: Remove redundant check for unknown labeling behavior,
Matthias Kaehlcke
- [PATCH v7 0/9] SELinux support for Infiniband RDMA,
Dan Jurgens
- [PATCH v7 1/9] IB/core: IB cache enhancements to support Infiniband security, Dan Jurgens
- [PATCH v7 6/9] selinux: Allocate and free infiniband security hooks, Dan Jurgens
- [PATCH v7 2/9] IB/core: Enforce PKey security on QPs, Dan Jurgens
- [PATCH v7 7/9] selinux: Implement Infiniband PKey "Access" access vector, Dan Jurgens
- [PATCH v7 9/9] selinux: Add a cache for quicker retreival of PKey SIDs, Dan Jurgens
- [PATCH v7 3/9] selinux lsm IB/core: Implement LSM notification system, Dan Jurgens
- [PATCH v7 4/9] IB/core: Enforce security on management datagrams, Dan Jurgens
- [PATCH v7 5/9] selinux: Create policydb version for Infiniband support, Dan Jurgens
- [PATCH v7 8/9] selinux: Add IB Port SMP access vector, Dan Jurgens
- Re: [PATCH v7 0/9] SELinux support for Infiniband RDMA, Daniel Jurgens
- Re: [PATCH v7 0/9] SELinux support for Infiniband RDMA, James Morris
- [PATCH v2 0/9] SELinux user space support for Infiniband RDMA,
Dan Jurgens
- [PATCH] selinux: Mark array 'labeling_behaviors' as __maybe_unused,
Matthias Kaehlcke
- [PATCH 1/1] libsepol: remove unused attribute on a used argument,
Nicolas Iooss
- [PATCH 1/2] libselinux: rework selabel_subs_init() to avoid use-after-free,
Nicolas Iooss
- [PATCH 0/2] Selinux tests for Infinfiband,
Dan Jurgens
- [PATCH v6 1/2] selinux: add brief info to policydb,
Sebastien Buisson
- [PATCH] selinux-testsuite: Test ioctl xperms, Stephen Smalley
- [PATCH v2] libsepol, checkpolicy: add binary module support for xperms, Stephen Smalley
- [PATCH v5 1/2] selinux: add brief info to policydb,
Sebastien Buisson
- [PATCH v1 0/9] SELinux user space support for Infiniband RDMA,
Dan Jurgens
- [PATCH v4 1/2] selinux: add brief info to policydb,
Sebastien Buisson
- [PATCH] libsepol,checkpolicy: add binary module support for xperms, Stephen Smalley
- Possible use after free in selabel_subs_init,
Nicolas Iooss
- [PATCH 1/2] libsepol/cil: do not use an uninitialized value in __cil_fqn_qualify_blocks,
Nicolas Iooss
- [PATCH v2] selinux: log policy capability state when a policy is loaded,
Stephen Smalley
- [PATCH] selinux: do not check open permission on sockets,
Stephen Smalley
- [PATCH] selinux: log policy capability state when a policy is loaded,
Stephen Smalley
- [PATCH] procattr.c: Use __BIONIC__ instead of __ANDROID__,
Tom Cherry via Selinux
- [PATCH v3 1/2] selinux: add brief info to policydb,
Sebastien Buisson
- [PATCH v2] libsepol: Expand attributes with TYPE_FLAGS_EXPAND_ATTR_TRUE set,
James Carter
- [PATCH] checkpolicy,libsepol: drop unnecessary usage of s6_addr32, Stephen Smalley
- [PATCH 0/9] SELinux user space support for Infiniband RDMA,
Dan Jurgens
- [PATCH] selinux-testsuite: update mmap tests for map permission, Stephen Smalley
- [PATCH] libsepol: Expand attributes with TYPE_FLAGS_EXPAND_ATTR_TRUE set, James Carter
- [PATCH] libselinux: Fix CFLAGS definition,
Stephen Smalley
- [PATCH 01/10] policycoreutils: fixfiles: tidy up usage(), manpage synopsis,
Alan Jenkins
- [PATCH 04/10] policycoreutils: fixfiles: usage errors are fatal, Alan Jenkins
- [PATCH 08/10] policycoreutils: fixfiles: remove bad modes of "relabel" command, Alan Jenkins
- [PATCH 10/10] policycoreutils: fixfiles: use a consistent order for options to restorecon, Alan Jenkins
- [PATCH 06/10] policycoreutils: fixfiles: refactor into the `set -u` dialect, Alan Jenkins
- [PATCH 03/10] policycoreutils: fixfiles: syntax error, Alan Jenkins
- [PATCH 05/10] policycoreutils: fixfiles: if restorecon aborts, we should too, Alan Jenkins
- [PATCH 02/10] policycoreutils: fixfiles: remove two unused variables, Alan Jenkins
- [PATCH 07/10] policycoreutils: fixfiles: un-document `-R -a` option, Alan Jenkins
- [PATCH 09/10] policycoreutils: fixfiles: don't ignore `-F` when run in `-C` mode, Alan Jenkins
- Re: [PATCH 01/10] policycoreutils: fixfiles: tidy up usage(), manpage synopsis, James Carter
- Does recvfrom(2) imply { getattr }?,
Ian Pilcher
- Why does Python want to read /proc/meminfo,
Ian Pilcher
- Re: Why does Python want to read /proc/meminfo, Daniel Walsh
Announcing SPAN: SELinux Policy Analysis Notebook,
Karl MacMillan
[RFC][PATCH] selinux: add a map permission check for mmap,
Stephen Smalley
[PATCH v2 1/2] selinux: add brief info to policydb,
Sebastien Buisson
Full SELinux labels on loopback for UDP,
Casey Schaufler
[PATCH] Add attribute expansion options,
Jeff Vander Stoep via Selinux
[PATCH 1/1] libselinux: add selinuxenforced tool,
Christian Göttsche via Selinux
[PATCH 0/2] sestatus: show checkreqprot status,
Christian Göttsche via Selinux
open permission is sometimes spelled recvfrom,
Stephen Smalley
[PATCH 1/6] Revert "policycoreutils: let output of `fixfiles` be redirected (as normal)",
Alan Jenkins
[PATCH] libsepol: Add INCLUDEDIR to utils/Makefile,
Petr Lautrbach
[PATCH 1/2] libselinux/utils: add noreturn attribute to selinux_check_access's usage,
Nicolas Iooss
semanage: is __default__ login map required?,
Arnold, Paul C CTR USARMY PEO STRI (US)
Policy capabilities: when to use and complications with using,
Stephen Smalley
MLS on centos 7, Naina Emmanuel
Several sepolicy fixes from Fedora,
Petr Lautrbach
- [PATCH 01/19] policycoreutils/sepolicy: Add documentation for MCS separated domains, Petr Lautrbach
- [PATCH 02/19] sepolicy: Fix spelling mistakes in commands in generated manpages, Petr Lautrbach
- [PATCH 03/19] sepolicy: Add manpages for typealiased types, Petr Lautrbach
- [PATCH 04/19] sepolicy: Move svirt man page out of libvirt into its own, Petr Lautrbach
- [PATCH 05/19] policycoreutils/sepolicy: boolean.png is in help/, Petr Lautrbach
- [PATCH 06/19] Fix up generation of application policy, Petr Lautrbach
- [PATCH 07/19] sepolicy: ptrace should be a part of deny_ptrace boolean in TEMPLATETYPE_admin, Petr Lautrbach
- [PATCH 08/19] sepolicy: We should be creating _exec interfaces when we create the domtrans interface, Petr Lautrbach
- [PATCH 09/19] Fix typo in executable.py template., Petr Lautrbach
- [PATCH 10/19] sepolicy: Adapt to new the semodule list output, Petr Lautrbach
- [PATCH 11/19] sepolicy: Don't return filter(), use [ ] notation instead, Petr Lautrbach
- [PATCH 12/19] sepolicy: Simplify policy types detection, Petr Lautrbach
- [PATCH 13/19] sepolicy/generate.py: Fix string formatting, Petr Lautrbach
- [PATCH 14/19] policycoreutils/sepolicy: Define our own cmp(), Petr Lautrbach
- [PATCH 15/19] dbus: Use text streams in selinux_server.py, Petr Lautrbach
- [PATCH 16/19] sepolicy: setools.*Query wants a list in ruletype, Petr Lautrbach
- [PATCH 17/19] sepolicy: Fix several issues in 'sepolicy manpage -a', Petr Lautrbach
- [PATCH 18/19] sepolicy: info() should provide attributes for a TYPE, Petr Lautrbach
- [PATCH 19/19] sepolicy/gui: Update text strings to use better gettext templates, Petr Lautrbach
[PATCH] libselinux: Remove util/selinux_restorecon.c,
Richard Haines
[PATCH] libselinux: Add selinux_check_access utility, Richard Haines
[PATCH V2] libselinux: Add permissive= entry to avc audit log,
Richard Haines
Re: [PATCH security-next 2/2] selinux: use pernet operations for hook registration,
Paul Moore
is_selinux_enabled() always returns 0 after selinux_set_policy_root(),
Colin Walters
[PATCH 1/3] selinux: Implement LSM notification system,
Sebastien Buisson
[PATCH] libselinux: Add permissive= entry to avc audit log,
Richard Haines
Docker daemon in enforcing state,
Umair Sarfraz
[PATCH 1/7] policycoreutils: honour LINGUAS variable,
Jason Zaman
[RFC PATCH 1/1] libselinux: Add support for selinux_check_access_flags, Richard Haines
[RFC PATCH 0/1] libselinux: Add support for selinux_check_access_flags,
Richard Haines
[PATCH] security: hooks : Prevent security to persist in memory (PR #31),
Pirabarlen-Cheenaramen
last call for selinux 2.7-rc1 release,
Stephen Smalley
SELinux BoF at Open Source Summit Japan, 中村雄一 / NAKAMURA,YUUICHI
Updating offline the commit_num file,
Eduardo Barretto
[PATCH v2] selinux-testsuite: Add CAP_MAC_ADMIN tests, Stephen Smalley
[PATCH] selinux-testsuite: Add CAP_MAC_ADMIN tests, Stephen Smalley
[PATCH] selinux: only invoke capabilities and selinux for CAP_MAC_ADMIN checks,
Stephen Smalley
[PATCH] libsemanage: remove lock files,
Guido Trentalancia
SELinux "filtering" capabilities?,
Casey Schaufler
[GIT PULL] SELinux patches for 4.12,
Paul Moore via Selinux
Cannot write policy to allow { relabelto },
Ian Pilcher
let's revert e3cab998b48ab293a9962faf9779d70ca339c65d,
Dominick Grift
[Index of Archives]
[Selinux Refpolicy]
[Fedora Users]
[Fedora Desktop]
[Kernel]
[KDE Users]
[Gnome Users]