| Commit message (Expand) | Author | Age | Files | Lines |
* | security: Protection for exploiting null dereference using mmap | Eric Paris | 2007-07-11 | 4 | -0/+4 |
* | SELinux: allow preemption between transition permission checks | Stephen Smalley | 2007-07-11 | 1 | -2/+4 |
* | selinux: add selinuxfs structure for object class discovery | Christopher J. PeBenito | 2007-07-11 | 1 | -0/+1 |
* | selinux: add support for querying object classes and permissions from the run... | Christopher J. PeBenito | 2007-07-11 | 1 | -0/+3 |
* | selinux: export initial SID contexts via selinuxfs | James Carter | 2007-04-26 | 1 | -0/+2 |
* | selinux: remove userland security class and permission definitions | Stephen Smalley | 2007-04-26 | 4 | -314/+17 |
* | SELinux: move security_skb_extlbl_sid() out of the security server | Paul Moore | 2007-04-26 | 1 | -3/+0 |
* | SELinux: rename selinux_netlabel.h to netlabel.h | Paul Moore | 2007-04-26 | 1 | -0/+0 |
* | SELinux: extract the NetLabel SELinux support from the security server | Paul Moore | 2007-04-26 | 2 | -37/+58 |
* | [SELINUX]: Fix 2.6.20-rc6 build when no xfrm | Venkat Yekkirala | 2007-01-26 | 1 | -0/+9 |
* | [PATCH] selinux endianness annotations | Al Viro | 2006-12-04 | 1 | -4/+4 |
* | Compile fix for "peer secid consolidation for external network labeling" | James Morris | 2006-12-02 | 1 | -1/+2 |
* | SELinux: peer secid consolidation for external network labeling | Paul Moore | 2006-12-02 | 3 | -24/+12 |
* | NetLabel: SELinux cleanups | Paul Moore | 2006-12-02 | 2 | -8/+15 |
* | [SELinux]: Add support for DCCP | James Morris | 2006-12-02 | 5 | -0/+45 |
* | SELinux: Fix SA selection semantics | Venkat Yekkirala | 2006-12-02 | 1 | -5/+2 |
* | SELinux: Return correct context for SO_PEERSEC | Venkat Yekkirala | 2006-12-02 | 1 | -6/+6 |
* | SELinux: Various xfrm labeling fixes | Venkat Yekkirala | 2006-12-02 | 1 | -2/+2 |
* | SELinux: export object class and permission definitions | Chad Sellers | 2006-11-28 | 1 | -0/+24 |
* | [NetLabel]: protect the CIPSOv4 socket option from setsockopt() | Paul Moore | 2006-10-30 | 1 | -0/+10 |
* | IPsec: correct semantics for SELinux policy matching | Venkat Yekkirala | 2006-10-11 | 1 | -1/+2 |
* | [PATCH] SELinux: convert sbsec semaphore to a mutex | Eric Paris | 2006-09-26 | 1 | -1/+1 |
* | [PATCH] SELinux: change isec semaphore to a mutex | Eric Paris | 2006-09-26 | 1 | -1/+1 |
* | [PATCH] selinux: add support for range transitions on object classes | Darrel Goeddel | 2006-09-26 | 1 | -1/+2 |
* | [PATCH] selinux: enable configuration of max policy version | Stephen Smalley | 2006-09-26 | 1 | -1/+5 |
* | [NetLabel]: add some missing #includes to various header files | Paul Moore | 2006-09-22 | 1 | -0/+9 |
* | [NetLabel]: uninline selinux_netlbl_inode_permission() | Paul Moore | 2006-09-22 | 1 | -34/+1 |
* | [NetLabel]: Correctly initialize the NetLabel fields. | Paul Moore | 2006-09-22 | 1 | -0/+18 |
* | [NetLabel]: SELinux support | Venkat Yekkirala | 2006-09-22 | 2 | -0/+133 |
* | [MLSXFRM]: Fix build with SECURITY_NETWORK_XFRM disabled. | Venkat Yekkirala | 2006-09-22 | 1 | -1/+6 |
* | [MLSXFRM]: Default labeling of socket specific IPSec policies | Venkat Yekkirala | 2006-09-22 | 1 | -1/+2 |
* | [MLSXFRM]: Add flow labeling | Venkat Yekkirala | 2006-09-22 | 1 | -13/+1 |
* | [MLSXFRM]: Flow based matching of xfrm policy and state | Venkat Yekkirala | 2006-09-22 | 1 | -6/+17 |
* | [MLSXFRM]: Add security sid to sock | Venkat Yekkirala | 2006-09-22 | 1 | -0/+1 |
* | [MLSXFRM]: Define new SELinux service routine | Venkat Yekkirala | 2006-09-22 | 1 | -0/+2 |
* | [MLSXFRM]: Granular IPSec associations for use in MLS environments | Venkat Yekkirala | 2006-09-22 | 2 | -0/+2 |
* | [PATCH] SELinux: decouple fscontext/context mount options | Eric Paris | 2006-07-10 | 1 | -1/+2 |
* | [PATCH] SELinux: Add sockcreate node to procattr API | Eric Paris | 2006-06-26 | 3 | -0/+3 |
* | [PATCH] keys: add a way to store the appropriate context for newly-created keys | Michael LeMay | 2006-06-26 | 3 | -1/+5 |
* | [PATCH] selinux: add hooks for key subsystem | Michael LeMay | 2006-06-22 | 5 | -0/+21 |
* | [SECMARK]: Add new packet controls to SELinux | James Morris | 2006-06-17 | 1 | -1/+1 |
* | [SECMARK]: Add new flask definitions to SELinux | James Morris | 2006-06-17 | 4 | -0/+8 |
* | [SELINUX]: add security class for appletalk sockets | Christopher J. PeBenito | 2006-06-17 | 4 | -0/+26 |
* | [LSM-IPsec]: SELinux Authorize | Catherine Zhang | 2006-06-17 | 1 | -0/+2 |
* | [PATCH] selinux: Clear selinux_enabled flag upon runtime disable. | Stephen Smalley | 2006-05-03 | 1 | -5/+0 |
* | [SELINUX]: selinux_socket_getpeer_{stream,dgram} fixup | Catherine Zhang | 2006-03-20 | 1 | -0/+10 |
* | [SECURITY]: TCP/UDP getpeersec | Catherine Zhang | 2006-03-20 | 1 | -0/+2 |
* | [PATCH] selinux: remove security struct magic number fields and tests | Stephen Smalley | 2006-02-01 | 1 | -8/+0 |
* | [LSM-IPSec]: Corrections to LSM-IPSec Nethooks | Trent Jaeger | 2006-01-06 | 2 | -4/+2 |
* | [LSM-IPSec]: Per-packet access control. | Trent Jaeger | 2006-01-03 | 3 | -0/+58 |