Security Enhanced Linux (SELINUX)
[Prev Page][Next Page]
- Re: [PATCH v6] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing, (continued)
- File context rule for file in /run not working,
Ian Pilcher
- [PATCH -next] selinux: cleanup obsolete comments for selinux_hooks[],
Xiu Jianfeng
- [PATCH 0/2] lsm: change security_capget LSM hook,
Khadija Kamran
- Network ports - multiple types?,
Ian Pilcher
- [RFC bpf-next v7 0/6] bpf: Force to MPTCP,
Geliang Tang
- [RFC PATCH] selinux: optimize ebitmap_and(), Christian Göttsche
- [PATCH v2 2/9] selinux: use u32 as bit type in ebitmap code,
Christian Göttsche
- [PATCH v2] selinux: log about VM being executable by default,
Christian Göttsche
- [PATCH v6] semanage, sepolicy: list also ports not attributed with port_type, Topi Miettinen
- [RFC bpf-next v6] bpf: Force to MPTCP,
Geliang Tang
- [PATCH v3 0/4] mm: convert to vma_is_initial_heap/stack(),
Kefeng Wang
- [PATCH v3 4/4] perf/core: use vma_is_initial_stack() and vma_is_initial_heap(), Kefeng Wang
- Re: [PATCH v3 0/4] mm: convert to vma_is_initial_heap/stack(), Peter Zijlstra
ANN: SETools 4.4.3, Chris PeBenito
[PATCH 0/8] Revert the prefix/suffix filename transition patches,
James Carter
- [PATCH 1/8] Revert "libsepol/cil: add support for prefix/suffix filename transtions to CIL", James Carter
- [PATCH 2/8] Revert "checkpolicy,libsepol: add prefix/suffix support to module policy", James Carter
- [PATCH 3/8] Revert "checkpolicy,libsepol: add prefix/suffix support to kernel policy", James Carter
- [PATCH 4/8] Revert "libsepol: implement new module binary format of avrule", James Carter
- [PATCH 5/8] Revert "libsepol: implement new kernel binary format for avtab", James Carter
- [PATCH 8/8] Revert "checkpolicy,libsepol: move transition to separate structure in avtab", James Carter
- [PATCH 6/8] Revert "checkpolicy,libsepol: move filename transition rules to avrule", James Carter
- [PATCH 7/8] Revert "checkpolicy,libsepol: move filename transitions to avtab", James Carter
- Re: [PATCH 0/8] Revert the prefix/suffix filename transition patches, Paul Moore
- Re: [PATCH 0/8] Revert the prefix/suffix filename transition patches, Petr Lautrbach
[PATCH testsuite] ci: test also on CentOS Stream 9, Ondrej Mosnacek
[linux-next:master] BUILD REGRESSION ae867bc97b713121b2a7f5fcac68378a0774739b, kernel test robot
[PATCH] selinux: Use NULL for pointers,
Jiapeng Chong
[PATCH] selinux: fix a 0/NULL mistmatch in ad_net_init_from_iif(),
Paul Moore
[RFC PATCH] selinux: log about VM being executable by default,
Christian Göttsche
SELinux Mascot/Logo,
Brett Anderson
[PATCH userspace] checkpolicy,libselinux,libsepol,policycoreutils,semodule-utils: update my email,
Stephen Smalley
- Re: [PATCH userspace] checkpolicy,libselinux,libsepol,policycoreutils,semodule-utils: update my email, Stephen Smalley
- Re: [PATCH userspace] checkpolicy,libselinux,libsepol,policycoreutils,semodule-utils: update my email, James Carter
[PATCH userspace] libselinux,policycoreutils,python,semodule-utils: de-brand SELinux,
Stephen Smalley
[PATCH] selinux: update my email address,
Stephen Smalley
[PATCH] selinux: introduce and use lsm_ad_net_init*() helpers,
Paolo Abeni
[PATCH v2 0/4] mm: convert to vma_is_initial_heap/stack(),
Kefeng Wang
[PATCH] selinux: add missing newlines in print statements,
Christian Göttsche
[PATCH 1/3] selinux: introduce SECURITY_SELINUX_DEBUG configuration,
Christian Göttsche
[PATCH] selinux: drop avtab_search(),
Christian Göttsche
[PATCH] selinux: de-brand SELinux,
Stephen Smalley
[RFC bpf-next v5] bpf: Force to MPTCP,
Geliang Tang
[PATCH] io_uring: don't audit the capability check in io_uring_create(),
Ondrej Mosnacek
[RFC PATCH] selinux: introduce and use ad_init_net*() helpers,
Paolo Abeni
[PATCH testsuite] policy: allow all test domains to search user/admin home directories,
Ondrej Mosnacek
[PATCH] libsepol: free potential transition tables on insertion failure,
Christian Göttsche
[PATCH v2] libselinux/utils: introduce getpolicyload,
Christian Göttsche
[PATCH 1/4] libsepol: validate: use fixed sized integers,
Christian Göttsche
[PATCH] libsepol: use explicit type for function parameters,
Christian Göttsche
[PATCH] libsepol: optional data destruction in hashtab_destroy(),
Christian Göttsche
[PATCH testsuite] policy: allow inet socket test domains to search user home content,
Stephen Smalley
[PATCH] checkpolicy: Remove support for role dominance rules,
James Carter
[PATCH 1/5] libsepol: free memory on str_read() failures,
Christian Göttsche
[PATCH] secilc: add check for malloc in secilc,
Huaxin Lu
[PATCH 0/5] mm: convert to vma_is_heap/stack(),
Kefeng Wang
[PATCH net-next 0/4] net: Mark the sk parameter of routing functions as 'const'.,
Guillaume Nault
[PATCH] restorecond: add check for strdup in strings_list_add,
Huaxin Lu
[PATCH] selinux: optimize major part with a kernel config in selinux_mmap_addr(),
Leesoo Ahn
[PATCH] checkpolicy: free role identifier in define_role_dom(),
Christian Göttsche
[PATCH v2] checkpolicy: add round-trip tests,
Christian Göttsche
[PATCH v2 1/4] semodule_expand: update,
Christian Göttsche
[PATCH] setsebool: improve bash-completion script,
Christian Göttsche
[PATCH] setsebool: drop unnecessary linking against libsepol,
Christian Göttsche
[RFC PATCH] libsepol/cil: support parallel neverallow checks,
Christian Göttsche
[PATCH] libsepol/fuzz: more strict fuzzing of binary policies,
Christian Göttsche
[PATCH] libsepol: check for overflow in put_entry(),
Christian Göttsche
[PATCH] libsepol: free initial sid names,
Christian Göttsche
[PATCH] libselinux/utils: introduce getpolicyload,
Christian Göttsche
[RFC PATCH] selinux: disable debug functions by default,
Christian Göttsche
[RFC PATCH] selinux: implement avtab_search() via avtab_search_node(),
Christian Göttsche
[RFC PATCH 01/20] selinux: check for multiplication overflow in put_entry(),
Christian Göttsche
- [RFC PATCH 03/20] selinux: avoid avtab overflows, Christian Göttsche
- [RFC PATCH 02/20] selinux: avtab: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 07/20] selinux: services: update type for umber of class permissions, Christian Göttsche
- [RFC PATCH 06/20] selinux: mls: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 04/20] selinux: ebitmap: use u32 as bit type, Christian Göttsche
- [RFC PATCH 05/20] selinux: hashtab: use identical iterator type, Christian Göttsche
- [RFC PATCH 10/20] selinux: netif: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 09/20] selinux: status: consistently use u32 as sequence number type, Christian Göttsche
- [RFC PATCH 08/20] selinux: services: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 11/20] selinux: avc: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 12/20] selinux: hooks: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 13/20] selinux: selinuxfs: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 14/20] selinux: use consistent type for AV rule specifier, Christian Göttsche
- [RFC PATCH 15/20] selinux: policydb: implicit conversions, Christian Göttsche
- [RFC PATCH 16/20] selinux: symtab: implicit conversion, Christian Göttsche
- [RFC PATCH 17/20] selinux: services: implicit conversions, Christian Göttsche
- [RFC PATCH 18/20] selinux: nlmsgtab: implicit conversion, Christian Göttsche
- [RFC PATCH 20/20] selinux: selinuxfs: avoid implicit conversions, Christian Göttsche
- [RFC PATCH 00/20] selinux: be more strict about integer conversions, Christian Göttsche
- [RFC PATCH 19/20] selinux: status: avoid implicit conversions regarding enforcing status, Christian Göttsche
- Re: [PATCH RFC 1/20] selinux: check for multiplication overflow in put_entry(), Paul Moore
[PATCH v2 91/92] selinux: convert to ctime accessor functions,
Jeff Layton
[PATCH v2 00/89] fs: new accessors for inode->i_ctime,
Jeff Layton
[PATCH v5] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
[syzbot] [selinux?] [reiserfs?] KASAN: wild-memory-access Read in inode_doinit_with_dentry, syzbot
[PATCH v12 10/11] SELinux: Add selfattr hooks,
Casey Schaufler
[GIT PULL] SELinux patches for v6.5,
Paul Moore
Re: [PATCH 00/79] fs: new accessors for inode->i_ctime,
Christian Brauner
Re: [PATCH 01/79] fs: add ctime accessors infrastructure,
Jeff Layton
[PATCH 78/79] selinux: switch to new ctime accessors,
Jeff Layton
[PATCH v2] selinux: introduce an initial SID for early boot processes,
Ondrej Mosnacek
[PATCH v2 0/8] checkpolicy,libsepol: add prefix/suffix matching to filename type transitions,
Juraj Marcin
- [PATCH v2 1/8] checkpolicy,libsepol: move transition to separate structure in avtab, Juraj Marcin
- [PATCH v2 2/8] checkpolicy,libsepol: move filename transitions to avtab, Juraj Marcin
- [PATCH v2 3/8] checkpolicy,libsepol: move filename transition rules to avrule, Juraj Marcin
- [PATCH v2 4/8] libsepol: implement new kernel binary format for avtab, Juraj Marcin
- [PATCH v2 7/8] checkpolicy,libsepol: add prefix/suffix support to module policy, Juraj Marcin
- [PATCH v2 6/8] checkpolicy,libsepol: add prefix/suffix support to kernel policy, Juraj Marcin
- [PATCH v2 5/8] libsepol: implement new module binary format of avrule, Juraj Marcin
- [PATCH v2 8/8] libsepol/cil: add support for prefix/suffix filename transtions to CIL, Juraj Marcin
[PATCH testsuite] tests/inet_socket: cover the MPTCP protocol,
Ondrej Mosnacek
[PATCH] python/sepolicy: Fix get_os_version except clause,
Jeffery To
[PATCH] libselinux: fix inconsistent indentation in selinux_check_access,
Huaxin Lu
[PATCH] libselinux: add check for calloc in check_booleans,
Huaxin Lu
[PATCH v4] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
[PATCH] selinux: cleanup the policycap accessor functions,
Paul Moore
[PATCH v11 10/11] SELinux: Add selfattr hooks, Casey Schaufler
SELinux and systemd integration,
Paul Moore
[PATCH v2 1/2] dismod: print the policy version only in interactive mode,
Masatake YAMATO
[PATCH v3] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
[PATCH 1/2] dismod: print the policy version only in interactive mode,
Masatake YAMATO
[PATCH userspace 0/2] Introduce an initial SID for early boot processes,
Ondrej Mosnacek
[PATCH] selinux: introduce an initial SID for early boot processes,
Ondrej Mosnacek
[PATCH v12 0/4] evm: Do HMAC of multiple per LSM xattrs for new inodes,
Roberto Sassu
RFC: style/formatting changes for SELinux kernel code,
Paul Moore
[PATCH 1/4] dispol: add --help option,
Masatake YAMATO
ANN: SELinux and stable kernel changes, Paul Moore
multiple inconsistent perm_map files,
Stephen Smalley
[PATCH] libselinux: Add CPPFLAGS to Makefile,
ChungSheng Wu
[PATCH] semanage: list all nodes even if not attributed with node_type, Topi Miettinen
[PATCH] sepolicy: clarify manual page of sepolicy interface,
Topi Miettinen
[PATCH v11 0/4] evm: Do HMAC of multiple per LSM xattrs for new inodes,
Roberto Sassu
[PATCH v2] semanage, sepolicy: list also ports not attributed with port_type,
Topi Miettinen
[RFC PATCH] selinux: support name based type transitions in conditional policies, Christian Göttsche
[PATCH] selinux: avoid bool as identifier name,
Christian Göttsche
[RFC PATCH] checkpolicy, libsepol: support name based type transitions in conditional policies, Christian Göttsche
[PATCH 1/2] secilc: consider DESTDIR in tests,
Christian Göttsche
[PATCH v2 1/4] libsepol: drop message for uncommon error cases,
Christian Göttsche
[GIT PULL] SELinux fixes for v6.4 (#1),
Paul Moore
[PATCH] selinux: fix Makefile for versions of make < v4.3,
Paul Moore
[PATCH] selinux: don't use make's grouped targets feature yet,
Paul Moore
[PATCH] python/sepolicy: Fix template for confined user policy modules,
Vit Mojzis
[PATCH 0/8] checkpolicy, libsepol: add prefix/suffix matching to filename type transitions,
Juraj Marcin
- [PATCH 1/8] checkpolicy, libsepol: move transition to separate structure in avtab, Juraj Marcin
- [PATCH 3/8] checkpolicy, libsepol: move filename transition rules to avrule, Juraj Marcin
- [PATCH 4/8] libsepol: implement new kernel binary format for avtab, Juraj Marcin
- [PATCH 2/8] checkpolicy, libsepol: move filename transitions to avtab, Juraj Marcin
- [PATCH 5/8] libsepol: implement new module binary format of avrule, Juraj Marcin
- [PATCH 6/8] checkpolicy, libsepol: add prefix/suffix support to kernel policy, Juraj Marcin
- [PATCH 7/8] checkpolicy, libsepol: add prefix/suffix support to module policy, Juraj Marcin
- [PATCH 8/8] libsepol/cil: add support for prefix/suffix filename transtions to CIL, Juraj Marcin
- Re: [PATCH 0/8] checkpolicy, libsepol: add prefix/suffix matching to filename type transitions, James Carter
[PATCH 0/5] selinux: add prefix/suffix matching to filename type transitions,
Juraj Marcin
[PATCH] LSM: Infrastructure management of the sock,
GONG, Ruiqi
[PATCH 1/4] dismod: add --help option,
Masatake YAMATO
[PATCH] Makefile: expand ~ in DESTDIR,
Masatake YAMATO
[PATCH PR#394] semanage: list all ports even if not attributed with port_type,
Topi Miettinen
[PATCH] python/sepolicy: Add/remove user even when SELinux is disabled,
Vit Mojzis
[PATCH] selinux: make labeled NFS work when mounted before policy load, Ondrej Mosnacek
[PATCH] selinux: cleanup exit_sel_fs() declaration,
Xiu Jianfeng
ANN: SELinux repository changes, Paul Moore
[PATCH 1/5] policycoreutils: Add examples to man pages,
Vit Mojzis
[PATCH 1/4] python: improve format strings for proper localization,
Petr Lautrbach
[RFC PATCH] selinux: TESTING ONLY, PLEASE IGNORE,
Paul Moore
[RFC PATCH 1/4] semodule_expand: update,
Christian Göttsche
[RFC PATCH 1/9] libselinux: annotate interfaces with compiler attributes,
Christian Göttsche
[PATCH 1/4] libsepol: drop message for uncommon error cases,
Christian Göttsche
[PATCH 1/5] libsepol: validate some object contexts,
Christian Göttsche
[PATCH 1/4] checkpolicy: drop unused token CLONE,
Christian Göttsche
[RFC PATCH v2] fs/xattr: add *at family syscalls,
Christian Göttsche
[Index of Archives]
[Selinux Refpolicy]
[Fedora Users]
[Fedora Desktop]
[Kernel]
[KDE Users]
[Gnome Users]