Security Enhanced Linux (SELINUX)
[Prev Page][Next Page]
- Re: [PATCH v2 3/4] selinux: use vma_is_initial_stack() and vma_is_initial_heap(), (continued)
- [PATCH] selinux: add missing newlines in print statements,
Christian Göttsche
- [PATCH 1/3] selinux: introduce SECURITY_SELINUX_DEBUG configuration,
Christian Göttsche
- [PATCH] selinux: drop avtab_search(),
Christian Göttsche
- [PATCH] selinux: de-brand SELinux,
Stephen Smalley
- [RFC bpf-next v5] bpf: Force to MPTCP,
Geliang Tang
- [PATCH] io_uring: don't audit the capability check in io_uring_create(),
Ondrej Mosnacek
- [RFC PATCH] selinux: introduce and use ad_init_net*() helpers,
Paolo Abeni
- [PATCH testsuite] policy: allow all test domains to search user/admin home directories,
Ondrej Mosnacek
- [PATCH] libsepol: free potential transition tables on insertion failure,
Christian Göttsche
- [PATCH v2] libselinux/utils: introduce getpolicyload,
Christian Göttsche
- [PATCH 1/4] libsepol: validate: use fixed sized integers,
Christian Göttsche
- [PATCH] libsepol: use explicit type for function parameters,
Christian Göttsche
- [PATCH] libsepol: optional data destruction in hashtab_destroy(),
Christian Göttsche
- [PATCH testsuite] policy: allow inet socket test domains to search user home content,
Stephen Smalley
- [PATCH] checkpolicy: Remove support for role dominance rules,
James Carter
- [PATCH 1/5] libsepol: free memory on str_read() failures,
Christian Göttsche
- [PATCH] secilc: add check for malloc in secilc,
Huaxin Lu
- [PATCH 0/5] mm: convert to vma_is_heap/stack(),
Kefeng Wang
- [PATCH net-next 0/4] net: Mark the sk parameter of routing functions as 'const'.,
Guillaume Nault
- [PATCH] restorecond: add check for strdup in strings_list_add,
Huaxin Lu
- [PATCH] selinux: optimize major part with a kernel config in selinux_mmap_addr(),
Leesoo Ahn
- [PATCH] checkpolicy: free role identifier in define_role_dom(),
Christian Göttsche
- [PATCH v2] checkpolicy: add round-trip tests,
Christian Göttsche
- [PATCH v2 1/4] semodule_expand: update,
Christian Göttsche
- [PATCH] setsebool: improve bash-completion script,
Christian Göttsche
- [PATCH] setsebool: drop unnecessary linking against libsepol,
Christian Göttsche
- [RFC PATCH] libsepol/cil: support parallel neverallow checks,
Christian Göttsche
- [PATCH] libsepol/fuzz: more strict fuzzing of binary policies,
Christian Göttsche
- [PATCH] libsepol: check for overflow in put_entry(),
Christian Göttsche
- [PATCH] libsepol: free initial sid names,
Christian Göttsche
- [PATCH] libselinux/utils: introduce getpolicyload,
Christian Göttsche
- [RFC PATCH] selinux: disable debug functions by default,
Christian Göttsche
- [RFC PATCH] selinux: implement avtab_search() via avtab_search_node(),
Christian Göttsche
- [RFC PATCH 01/20] selinux: check for multiplication overflow in put_entry(),
Christian Göttsche
- [RFC PATCH 03/20] selinux: avoid avtab overflows, Christian Göttsche
- [RFC PATCH 02/20] selinux: avtab: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 07/20] selinux: services: update type for umber of class permissions, Christian Göttsche
- [RFC PATCH 06/20] selinux: mls: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 04/20] selinux: ebitmap: use u32 as bit type, Christian Göttsche
- [RFC PATCH 05/20] selinux: hashtab: use identical iterator type, Christian Göttsche
- [RFC PATCH 10/20] selinux: netif: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 09/20] selinux: status: consistently use u32 as sequence number type, Christian Göttsche
- [RFC PATCH 08/20] selinux: services: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 11/20] selinux: avc: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 12/20] selinux: hooks: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 13/20] selinux: selinuxfs: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 14/20] selinux: use consistent type for AV rule specifier, Christian Göttsche
- [RFC PATCH 15/20] selinux: policydb: implicit conversions, Christian Göttsche
- [RFC PATCH 16/20] selinux: symtab: implicit conversion, Christian Göttsche
- [RFC PATCH 17/20] selinux: services: implicit conversions, Christian Göttsche
- [RFC PATCH 18/20] selinux: nlmsgtab: implicit conversion, Christian Göttsche
- [RFC PATCH 20/20] selinux: selinuxfs: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 00/20] selinux: be more strict about integer conversions, Christian Göttsche
- [RFC PATCH 19/20] selinux: status: avoid implicit conversions regarding enforcing status, Christian Göttsche
- Re: [PATCH RFC 1/20] selinux: check for multiplication overflow in put_entry(), Paul Moore
- [PATCH v2 91/92] selinux: convert to ctime accessor functions,
Jeff Layton
- [PATCH v2 00/89] fs: new accessors for inode->i_ctime,
Jeff Layton
- [PATCH v5] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
- [syzbot] [selinux?] [reiserfs?] KASAN: wild-memory-access Read in inode_doinit_with_dentry, syzbot
- [PATCH v12 10/11] SELinux: Add selfattr hooks,
Casey Schaufler
- [GIT PULL] SELinux patches for v6.5,
Paul Moore
- Re: [PATCH 00/79] fs: new accessors for inode->i_ctime,
Christian Brauner
- Re: [PATCH 01/79] fs: add ctime accessors infrastructure,
Jeff Layton
- [PATCH 78/79] selinux: switch to new ctime accessors,
Jeff Layton
- [PATCH v2] selinux: introduce an initial SID for early boot processes,
Ondrej Mosnacek
- [PATCH v2 0/8] checkpolicy,libsepol: add prefix/suffix matching to filename type transitions,
Juraj Marcin
- [PATCH v2 1/8] checkpolicy,libsepol: move transition to separate structure in avtab, Juraj Marcin
- [PATCH v2 2/8] checkpolicy,libsepol: move filename transitions to avtab, Juraj Marcin
- [PATCH v2 3/8] checkpolicy,libsepol: move filename transition rules to avrule, Juraj Marcin
- [PATCH v2 4/8] libsepol: implement new kernel binary format for avtab, Juraj Marcin
- [PATCH v2 7/8] checkpolicy,libsepol: add prefix/suffix support to module policy, Juraj Marcin
- [PATCH v2 6/8] checkpolicy,libsepol: add prefix/suffix support to kernel policy, Juraj Marcin
- [PATCH v2 5/8] libsepol: implement new module binary format of avrule, Juraj Marcin
- [PATCH v2 8/8] libsepol/cil: add support for prefix/suffix filename transtions to CIL, Juraj Marcin
- [PATCH testsuite] tests/inet_socket: cover the MPTCP protocol,
Ondrej Mosnacek
- [PATCH] python/sepolicy: Fix get_os_version except clause,
Jeffery To
- [PATCH] libselinux: fix inconsistent indentation in selinux_check_access,
Huaxin Lu
- [PATCH] libselinux: add check for calloc in check_booleans,
Huaxin Lu
- [PATCH v4] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
- [PATCH] selinux: cleanup the policycap accessor functions,
Paul Moore
- [PATCH v11 10/11] SELinux: Add selfattr hooks, Casey Schaufler
- SELinux and systemd integration,
Paul Moore
- [PATCH v2 1/2] dismod: print the policy version only in interactive mode,
Masatake YAMATO
- [PATCH v3] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
- [PATCH 1/2] dismod: print the policy version only in interactive mode,
Masatake YAMATO
- [PATCH userspace 0/2] Introduce an initial SID for early boot processes,
Ondrej Mosnacek
- [PATCH] selinux: introduce an initial SID for early boot processes,
Ondrej Mosnacek
- [PATCH v12 0/4] evm: Do HMAC of multiple per LSM xattrs for new inodes,
Roberto Sassu
- RFC: style/formatting changes for SELinux kernel code,
Paul Moore
- [PATCH 1/4] dispol: add --help option,
Masatake YAMATO
- ANN: SELinux and stable kernel changes, Paul Moore
- multiple inconsistent perm_map files,
Stephen Smalley
- [PATCH] libselinux: Add CPPFLAGS to Makefile,
ChungSheng Wu
- [PATCH] semanage: list all nodes even if not attributed with node_type, Topi Miettinen
- [PATCH] sepolicy: clarify manual page of sepolicy interface,
Topi Miettinen
- [PATCH v11 0/4] evm: Do HMAC of multiple per LSM xattrs for new inodes,
Roberto Sassu
- [PATCH v2] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
- [RFC PATCH] selinux: support name based type transitions in conditional policies, Christian Göttsche
- [PATCH] selinux: avoid bool as identifier name,
Christian Göttsche
- [RFC PATCH] checkpolicy, libsepol: support name based type transitions in conditional policies, Christian Göttsche
- [PATCH 1/2] secilc: consider DESTDIR in tests,
Christian Göttsche
- [PATCH v2 1/4] libsepol: drop message for uncommon error cases,
Christian Göttsche
- [GIT PULL] SELinux fixes for v6.4 (#1),
Paul Moore
- [PATCH] selinux: fix Makefile for versions of make < v4.3,
Paul Moore
- [PATCH] selinux: don't use make's grouped targets feature yet,
Paul Moore
- [PATCH] python/sepolicy: Fix template for confined user policy modules,
Vit Mojzis
- [PATCH 0/8] checkpolicy, libsepol: add prefix/suffix matching to filename type transitions,
Juraj Marcin
- [PATCH 1/8] checkpolicy, libsepol: move transition to separate structure in avtab, Juraj Marcin
- [PATCH 3/8] checkpolicy, libsepol: move filename transition rules to avrule, Juraj Marcin
- [PATCH 4/8] libsepol: implement new kernel binary format for avtab, Juraj Marcin
- [PATCH 2/8] checkpolicy, libsepol: move filename transitions to avtab, Juraj Marcin
- [PATCH 5/8] libsepol: implement new module binary format of avrule, Juraj Marcin
- [PATCH 6/8] checkpolicy, libsepol: add prefix/suffix support to kernel policy, Juraj Marcin
- [PATCH 7/8] checkpolicy, libsepol: add prefix/suffix support to module policy, Juraj Marcin
- [PATCH 8/8] libsepol/cil: add support for prefix/suffix filename transtions to CIL, Juraj Marcin
- Re: [PATCH 0/8] checkpolicy, libsepol: add prefix/suffix matching to filename type transitions, James Carter
- [PATCH 0/5] selinux: add prefix/suffix matching to filename type transitions,
Juraj Marcin
- [PATCH] LSM: Infrastructure management of the sock,
GONG, Ruiqi
- [PATCH 1/4] dismod: add --help option,
Masatake YAMATO
- [PATCH] Makefile: expand ~ in DESTDIR,
Masatake YAMATO
- [PATCH PR#394] semanage: list all ports even if not attributed with port_type,
Topi Miettinen
- [PATCH] python/sepolicy: Add/remove user even when SELinux is disabled,
Vit Mojzis
- [PATCH] selinux: make labeled NFS work when mounted before policy load, Ondrej Mosnacek
- [PATCH] selinux: cleanup exit_sel_fs() declaration,
Xiu Jianfeng
- ANN: SELinux repository changes, Paul Moore
- [PATCH 1/5] policycoreutils: Add examples to man pages,
Vit Mojzis
- [PATCH 1/4] python: improve format strings for proper localization,
Petr Lautrbach
- [RFC PATCH] selinux: TESTING ONLY, PLEASE IGNORE,
Paul Moore
- [RFC PATCH 1/4] semodule_expand: update,
Christian Göttsche
- [RFC PATCH 1/9] libselinux: annotate interfaces with compiler attributes,
Christian Göttsche
- [PATCH 1/4] libsepol: drop message for uncommon error cases,
Christian Göttsche
- [PATCH 1/5] libsepol: validate some object contexts,
Christian Göttsche
- [PATCH 1/4] checkpolicy: drop unused token CLONE,
Christian Göttsche
- [RFC PATCH v2] fs/xattr: add *at family syscalls,
Christian Göttsche
- [PATCH v4 1/9] capability: introduce new capable flag NODENYAUDIT,
Christian Göttsche
- [PATCH v4 3/9] capability: use new capable_any functionality, Christian Göttsche
- [PATCH v4 2/9] capability: add any wrapper to test for multiple caps with exactly one audit message, Christian Göttsche
- [PATCH v4 4/9] block: use new capable_any functionality, Christian Göttsche
- [PATCH v4 8/9] bpf: use new capable_any functionality, Christian Göttsche
- [PATCH v4 9/9] net: use new capable_any functionality, Christian Göttsche
- [PATCH v4 7/9] kernel: use new capable_any functionality, Christian Göttsche
- [PATCH v4 5/9] drivers: use new capable_any functionality, Christian Göttsche
- [PATCH v4 0/9] Introduce capable_any(), Christian Göttsche
- [PATCH v4 6/9] fs: use new capable_any functionality, Christian Göttsche
- Re: [PATCH v4 1/9] capability: introduce new capable flag NODENYAUDIT, Serge E. Hallyn
- [PATCH] security: keys: perform capable check only on privileged operations,
Christian Göttsche
- [PATCH] selinux: make header files self-including,
Christian Göttsche
- [PATCH] selinux: deprecated fs ocon,
Christian Göttsche
- [PATCH] selinux: keep context struct members in sync,
Christian Göttsche
- [PATCH 0/2] capability: Introduce CAP_BLOCK_ADMIN,
Tianjia Zhang
- [PATCH] selinux: small cleanups in selinux_audit_rule_init(),
Paul Moore
- [PATCH] selinux: remove avc_disable() as it is no longer used,
Paul Moore
- [PATCH] selinux: more Makefile tweaks,
Paul Moore
- [PATCH -next 0/2] lsm: Change inode_setattr() to take struct,
Xiu Jianfeng
- [PATCH] selinux: make cleanup on error consistent,
Juraj Marcin
- [PATCH 0/3] python: Improve man pages,
Vit Mojzis
- [PATCH v10 10/11] SELinux: Add selfattr hooks,
Casey Schaufler
- policy for FFI, Ted Toth
- [PATCH v9 10/11] SELinux: Add selfattr hooks,
Casey Schaufler
- [GIT PULL] SELinux patches for v6.4,
Paul Moore
- [PATCH LSM v2 0/2] security: SELinux/LSM label with MPTCP and accept,
Matthieu Baerts
- [PATCH] libselinux: set CFLAGS for pip installation,
Christian Göttsche
- [PATCH v2 1/6] libsepol: rename struct member,
Christian Göttsche
- [PATCH 1/6] selinux: do not leave dangling pointer behind,
Christian Göttsche
[Index of Archives]
[Selinux Refpolicy]
[Fedora Users]
[Fedora Desktop]
[Kernel]
[KDE Users]
[Gnome Users]