summaryrefslogtreecommitdiff
path: root/security/integrity/ima/ima_policy.c
AgeCommit message (Expand)AuthorFilesLines
2020-08-21ima: Fail rule parsing when appraise_flag=blacklist is unsupportableTyler Hicks1-1/+14
2020-08-19ima: Fail rule parsing when the KEY_CHECK hook is combined with an invalid condTyler Hicks1-0/+7
2020-08-19ima: Fail rule parsing when the KEXEC_CMDLINE hook is combined with an invali...Tyler Hicks1-0/+21
2020-08-19ima: Fail rule parsing when buffer hook functions have an invalid actionTyler Hicks1-2/+38
2020-08-19ima: Free the entire rule if it fails to parseTyler Hicks1-1/+2
2020-08-19ima: Free the entire rule when deleting a list of rulesTyler Hicks1-5/+24
2020-08-19ima: Have the LSM free its audit ruleTyler Hicks1-1/+1
2020-06-03ima: Directly assign the ima_default_policy pointer to ima_rulesRoberto Sassu1-2/+1
2020-05-08ima: Set again build_ima_appraise variableKrzysztof Struczynski1-2/+8
2020-05-08ima: Remove redundant policy rule set in add_rules()Krzysztof Struczynski1-4/+1
2020-02-28integrity: Remove duplicate pr_fmt definitionsTushar Sugandhi1-2/+0
2020-01-29Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds1-24/+141
2020-01-23IMA: Call workqueue functions to measure queued keysLakshmi Ramasubramanian1-0/+3
2020-01-22IMA: pre-allocate buffer to hold keyrings stringLakshmi Ramasubramanian1-8/+30
2020-01-22ima: ima/lsm policy rule loading logic bug fixesJanne Karhunen1-18/+26
2020-01-22ima: Add a space after printing LSM rules for readabilityClay Chang1-0/+1
2019-12-12IMA: Read keyrings= option from the IMA policyLakshmi Ramasubramanian1-1/+28
2019-12-12IMA: Add support to limit measuring keysLakshmi Ramasubramanian1-4/+58
2019-12-12IMA: Add KEY_CHECK func to measure keysLakshmi Ramasubramanian1-1/+3
2019-12-09treewide: Use sizeof_field() macroPankaj Bharadiya1-2/+2
2019-11-12ima: Check against blacklisted hashes for files with modsigNayna Jain1-2/+10
2019-09-28Merge branch 'next-lockdown' of git://git.kernel.org/pub/scm/linux/kernel/git...Linus Torvalds1-0/+50
2019-08-20kexec: Allow kexec_file() with appropriate IMA policy when locked downMatthew Garrett1-0/+50
2019-08-06ima: Define ima-modsig templateThiago Jung Bauermann1-0/+41
2019-08-06ima: Implement support for module-style appended signaturesThiago Jung Bauermann1-6/+6
2019-08-06ima: Add modsig appraise_type option for module-style appended signaturesThiago Jung Bauermann1-2/+10
2019-08-01ima: initialize the "template" field with the default templateMimi Zohar1-2/+4
2019-07-09Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds1-23/+140
2019-06-24IMA: Define a new hook to measure the kexec boot command line argumentsPrakhar Srivastava1-0/+7
2019-06-20IMA: support for per policy rule template formatsMatthew Garrett1-2/+36
2019-06-14ima: use the lsm policy update notifierJanne Karhunen1-20/+96
2019-06-14ima: Make arch_policy_entry staticYueHaibing1-1/+1
2019-06-05treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 441Thomas Gleixner1-5/+1
2019-05-30ima: show rules with IMA_INMASK correctlyRoberto Sassu1-9/+12
2019-05-20ima: fix wrong signed policy requirement when not appraisingPetr Vorel1-3/+4
2019-03-07Merge tag 'audit-pr-20190305' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds1-4/+2
2019-02-22security: mark expected switch fall-throughs and add a missing breakGustavo A. R. Silva1-0/+4
2019-02-01audit: remove unused actx param from audit_rule_matchRichard Guy Briggs1-4/+2
2019-01-02Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds1-43/+128
2018-12-27Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds1-1/+1
2018-12-18ima: cleanup the match_token policy codeMimi Zohar1-5/+5
2018-12-17Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/gi...James Morris1-43/+128
2018-12-13security: audit and remove any unnecessary uses of module.hPaul Gortmaker1-1/+1
2018-12-11ima: don't measure/appraise files on efivarfsMimi Zohar1-1/+3
2018-12-11ima: add support for arch specific policiesNayna Jain1-2/+70
2018-12-11ima: refactor ima_init_policy()Nayna Jain1-41/+56
2018-07-18ima: Differentiate auditing policy rules from "audit" actionsStefan Berger1-2/+2
2018-07-18ima: Do not audit if CONFIG_INTEGRITY_AUDIT is not setStefan Berger1-1/+5
2018-07-18ima: Use audit_log_format() rather than audit_log_string()Stefan Berger1-2/+1
2018-07-18ima: Call audit_log_string() rather than logging it untrustedStefan Berger1-1/+1