Linux-Security-Module Archive mirror
 help / color / mirror / Atom feed
 messages from 2024-03-04 23:04:12 to 2024-03-11 20:07:28 UTC [more...]

[PATCH v5 0/6] DCP as trusted keys backend
 2024-03-11 20:07 UTC  (14+ messages)
` [PATCH v6 1/6] crypto: mxs-dcp: Add support for hardware-bound keys
` [PATCH v6 2/6] KEYS: trusted: improve scalability of trust source config
` [PATCH v6 3/6] KEYS: trusted: Introduce NXP DCP-backed trusted keys
` [PATCH v6 4/6] MAINTAINERS: add entry for DCP-based "
` [PATCH v6 5/6] docs: document DCP-backed trusted keys kernel params
` [PATCH v6 6/6] docs: trusted-encrypted: add DCP as new trust source

[PATCH RFC 0/8] Clavis LSM
 2024-03-11 19:18 UTC  (11+ messages)
` [PATCH RFC 1/8] certs: Introduce ability to link to a system key
` [PATCH RFC 2/8] clavis: Introduce a new system keyring called clavis
` [PATCH RFC 3/8] efi: Make clavis boot param persist across kexec
` [PATCH RFC 4/8] clavis: Prevent clavis boot param from changing during kexec
` [PATCH RFC 5/8] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE)
` [PATCH RFC 6/8] keys: Add ability to track intended usage of the public key
` [PATCH RFC 7/8] clavis: Introduce a new key type called clavis_key_acl
` [PATCH RFC 8/8] clavis: Introduce new LSM called clavis

[PATCH v9 1/8] landlock: Add IOCTL access right
 2024-03-11 19:04 UTC  (23+ messages)
` [RFC PATCH] fs: Add vfs_masks_device_ioctl*() helpers

[RFC PATCH v14 00/19] Integrity Policy Enforcement LSM (IPE)
 2024-03-11 18:34 UTC  (28+ messages)
` [RFC PATCH v14 01/19] security: add ipe lsm
` [RFC PATCH v14 02/19] ipe: add policy parser
` [RFC PATCH v14 03/19] ipe: add evaluation loop
` [RFC PATCH v14 04/19] ipe: add LSM hooks on execution and kernel read
` [RFC PATCH v14 05/19] initramfs|security: Add a security hook to do_populate_rootfs()
` [RFC PATCH v14 06/19] ipe: introduce 'boot_verified' as a trust provider
` [RFC PATCH v14 07/19] security: add new securityfs delete function
` [RFC PATCH v14 08/19] ipe: add userspace interface
` [RFC PATCH v14 09/19] uapi|audit|ipe: add ipe auditing support
` [RFC PATCH v14 10/19] ipe: add permissive toggle
` [RFC PATCH v14 11/19] block|security: add LSM blob to block_device
` [RFC PATCH v14 12/19] dm: add finalize hook to target_type
` [RFC PATCH v14 13/19] dm verity: consume root hash digest and signature data via LSM hook
` [RFC PATCH v14 14/19] ipe: add support for dm-verity as a trust provider
` [RFC PATCH v14 15/19] fsverity: consume builtin signature via LSM hook
` [RFC PATCH v14 16/19] ipe: enable support for fs-verity as a trust provider
` [RFC PATCH v14 17/19] scripts: add boot policy generation program
` [RFC PATCH v14 18/19] ipe: kunit test for parser
` [RFC PATCH v14 19/19] documentation: add ipe documentation

[PATCH v10 0/9] Landlock: IOCTL support
 2024-03-11 16:55 UTC  (12+ messages)
` [PATCH v10 1/9] security: Create security_file_vfs_ioctl hook
` [PATCH v10 2/9] landlock: Add IOCTL access right for character and block devices
` [PATCH v10 3/9] selftests/landlock: Test IOCTL support
` [PATCH v10 4/9] selftests/landlock: Test IOCTL with memfds
` [PATCH v10 5/9] selftests/landlock: Test ioctl(2) and ftruncate(2) with open(O_PATH)
` [PATCH v10 6/9] selftests/landlock: Test IOCTLs on named pipes
` [PATCH v10 7/9] selftests/landlock: Check IOCTL restrictions for named UNIX domain sockets
` [PATCH v10 8/9] samples/landlock: Add support for LANDLOCK_ACCESS_FS_IOCTL_DEV
` [PATCH v10 9/9] landlock: Document IOCTL support

[RFC][PATCH 0/8] ima: Integrate with digest_cache LSM
 2024-03-11 14:00 UTC  (22+ messages)
` [RFC][PATCH 2/8] ima: Nest iint mutex for DIGEST_LIST_CHECK hook
` [RFC][PATCH 3/8] ima: Add digest_cache policy keyword
` [RFC][PATCH 4/8] ima: Add digest_cache_measure and digest_cache_appraise boot-time policies
` [RFC][PATCH 5/8] ima: Record IMA verification result of digest lists in digest cache
` [RFC][PATCH 6/8] ima: Use digest cache for measurement
` [RFC][PATCH 8/8] ima: Detect if digest cache changed since last measurement/appraisal

[PATCH v2 bpf-next 0/9] add new acquire/release BPF kfuncs
 2024-03-11 12:00 UTC  (11+ messages)

[syzbot] [reiserfs?] possible deadlock in reiserfs_dirty_inode
 2024-03-10  0:54 UTC  (2+ messages)

[syzbot] [tomoyo?] [hfs?] general protection fault in tomoyo_check_acl (3)
 2024-03-10  0:52 UTC  (4+ messages)
` [syzbot] [hfs] "

[RFC 0/9] Nginx refcount scalability issue with Apparmor enabled and potential solutions
 2024-03-08 20:09 UTC  (5+ messages)

[PATCH] xattr: restrict vfs_getxattr_alloc() allocation size
 2024-03-07 20:03 UTC  (7+ messages)

[PATCH v39 00/42] LSM: General module stacking
 2024-03-07 17:36 UTC  (10+ messages)
` [PATCH v39 01/42] integrity: disassociate ima_filter_rule from security_audit_rule
` [PATCH v39 04/42] IMA: avoid label collisions with stacked LSMs

[PATCH] landlock: Use f_cred in security_file_open() hook
 2024-03-07 17:54 UTC  (4+ messages)

[PATCH v5 0/6] DCP as trusted keys backend
 2024-03-07 15:34 UTC  (4+ messages)
` [PATCH v5 4/6] MAINTAINERS: add entry for DCP-based trusted keys

[PATCH] samples/landlock: Don't error out if a file path cannot be opened
 2024-03-07 15:21 UTC  (3+ messages)

[PATCH] evm: Change vfs_getxattr() with __vfs_getxattr() in evm_calc_hmac_or_hash()
 2024-03-07 15:02 UTC  (4+ messages)

[PATCH v2 1/2] landlock: Extend documentation for kernel support
 2024-03-07 10:21 UTC  (3+ messages)

[PATCH 1/2] landlock: Simplify current_check_access_socket()
 2024-03-07  9:39 UTC  (2+ messages)
` [PATCH 2/2] landlock: Rename "ptrace" files to "task"

[syzbot] [reiserfs?] INFO: task hung in flush_old_commits
 2024-03-07  9:27 UTC 

[syzbot] [tomoyo?] [fs?] INFO: rcu detected stall in newfstatat (3)
 2024-03-07  9:22 UTC  (2+ messages)
` [syzbot] [usb] "

[PATCH v4 00/12] selftests: kselftest_harness: support using xfail
 2024-03-07  4:40 UTC  (26+ messages)
` [PATCH v4 02/12] selftests/harness: Merge TEST_F_FORK() into TEST_F()
        ` [PATCH v1 0/2] "
          ` [PATCH v1 1/2] selftests/landlock: Redefine TEST_F() as TEST_F_FORK()
          ` [PATCH v1 2/2] selftests/harness: Merge TEST_F_FORK() into TEST_F()
                ` [PATCH] selftests/harness: Fix TEST_F()'s vfork handling

[PATCH v2 00/25] fs: use type-safe uid representation for filesystem capabilities
 2024-03-06 12:56 UTC  (18+ messages)
` [PATCH v2 24/25] commoncap: use vfs fscaps interfaces

[PATCH] integrity: don't throw an error immediately when failed to add a cert to the .machine keyring
 2024-03-06 12:40 UTC  (5+ messages)
` [PATCH v2] integrity: eliminate unnecessary "Problem loading X.509 certificate" msg

[PATCH v2] proc: allow restricting /proc/pid/mem writes
 2024-03-06 10:49 UTC  (16+ messages)

[PATCH v2 0/7] Handle faults in KUnit tests
 2024-03-05 20:58 UTC  (7+ messages)
` [PATCH v2 1/7] kunit: Handle thread creation error
` [PATCH v2 2/7] kunit: Fix kthread reference
` [PATCH v2 3/7] kunit: Fix timeout message

[linux-next:master] [selftests/harness] 0710a1a73f: kernel-selftests.seccomp.seccomp_bpf.TRAP.dfl.fail
 2024-03-05  8:04 UTC 


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).