apparmor
Thread
Date
Earlier messages
Later messages
Messages by Thread
Re: [apparmor] [PATCH] treewide: const qualify ctl_tables where applicable
Jani Nikula
Re: [apparmor] [PATCH] treewide: const qualify ctl_tables where applicable
Martin K. Petersen
Re: [apparmor] [PATCH] treewide: const qualify ctl_tables where applicable
Corey Minyard
[PATCH] security: fix typos and spelling errors
Tanya Agarwal
Re: [PATCH] security: fix typos and spelling errors
Günther Noack
[PATCH V2] security: fix typos and spelling errors
Tanya Agarwal
Re: [apparmor] [PATCH V2] security: fix typos and spelling errors
Tetsuo Handa
Re: [PATCH V2] security: fix typos and spelling errors
Günther Noack
Re: [PATCH V2] security: fix typos and spelling errors
Mimi Zohar
Re: [PATCH V2] security: fix typos and spelling errors
Tanya Agarwal
Re: [PATCH V2] security: fix typos and spelling errors
Paul Moore
[apparmor] ImHex pattern for binary AppArmor profiles
Zygmunt Krynicki
[apparmor] irc meeting Tues Dec 10 Postpone
John Johansen
Re: [apparmor] irc meeting Tues Dec 10 Postpone
Ryan Lee
Re: [apparmor] irc meeting Tues Dec 10 Postpone
John Johansen
[apparmor] [RESEND PATCH] apparmor: Use str_yes_no() helper function
Thorsten Blum
[apparmor] [RESEND PATCH] apparmor: Use str_yes_no() helper function
Thorsten Blum
Re: [apparmor] [RESEND PATCH] apparmor: Use str_yes_no() helper function
John Johansen
Re: [apparmor] [RESEND PATCH] apparmor: Use str_yes_no() helper function
Thorsten Blum
Re: [apparmor] [RESEND PATCH] apparmor: Use str_yes_no() helper function
John Johansen
[apparmor] [PATCH] apparmor: audit mqueue-via-path access as getattr instead of unlink
Ryan Lee
[apparmor] Exploring CI pipeline for integration tests of selected features
Zygmunt Krynicki
Re: [apparmor] Exploring CI pipeline for integration tests of selectedfeatures
Zygmunt Krynicki
[apparmor] [syzbot] linux-next build error (18)
syzbot
Re: [apparmor] [syzbot] linux-next build error (18)
Nathan Chancellor
[apparmor] [PATCH] apparmor: Use str_yes_no() helper function
Thorsten Blum
[apparmor] [PATCH] apparmor: Add empty statement between label and declaration in profile_transition(()
Nathan Chancellor
Re: [apparmor] [PATCH] apparmor: Add empty statement between label and declaration in profile_transition(()
John Johansen
Re: [apparmor] [PATCH] apparmor: Add empty statement between label and declaration in profile_transition(()
Nathan Chancellor
[apparmor] Apparmor profile acting as in enforce mode when set to complain mode
mikolaj_archusr
Re: [apparmor] Apparmor profile acting as in enforce mode when set to complain mode
John Johansen
[apparmor] Restricted userns
valoq
Re: [apparmor] Restricted userns
John Johansen
Re: [apparmor] Restricted userns
valoq
Re: [apparmor] Restricted userns
valoq
Re: [apparmor] Restricted userns
John Johansen
[apparmor] [syzbot] [apparmor?] KASAN: slab-use-after-free Read in apparmor_sk_free_security
syzbot
[apparmor] [RESEND PATCH] apparmor: Remove unnecessary NULL check before kvfree()
Thorsten Blum
[apparmor] [RESEND PATCH] apparmor: Remove unnecessary NULL check before kvfree()
Thorsten Blum
Re: [apparmor] [RESEND PATCH] apparmor: Remove unnecessary NULL check before kvfree()
John Johansen
Re: [apparmor] [RESEND PATCH] apparmor: Remove unnecessary NULL check before kvfree()
Thorsten Blum
[apparmor] [syzbot] [apparmor?] [ext4?] INFO: rcu detected stall in sys_getdents64
syzbot
Re: [apparmor] [syzbot] [apparmor?] [ext4?] INFO: rcu detected stall in sys_getdents64
Tetsuo Handa
Re: [apparmor] [syzbot] [net] INFO: rcu detected stall in sys_getdents64
syzbot
[apparmor] [PATCH] apparmor: test: Fix memory leak for aa_unpack_strdup()
Jinjie Ruan
Re: [apparmor] [PATCH] apparmor: test: Fix memory leak for aa_unpack_strdup()
John Johansen
[apparmor] [PATCH v4 01/13] LSM: Add the lsm_prop data structure.
Casey Schaufler
Re: [apparmor] [PATCH v4 1/13] LSM: Add the lsm_prop data structure.
Paul Moore
Re: [apparmor] [PATCH v4 1/13] LSM: Add the lsm_prop data structure.
Casey Schaufler
Re: [apparmor] [PATCH v4 01/13] LSM: Add the lsm_prop data structure.
John Johansen
[apparmor] irc meeting Tues Oct 8
John Johansen
[apparmor] [PATCH V2 RESEND] Docs: Update LSM/apparmor.rst
Siddharth Menon
Re: [apparmor] [PATCH V2 RESEND] Docs: Update LSM/apparmor.rst
John Johansen
Re: [apparmor] [PATCH V2 RESEND] Docs: Update LSM/apparmor.rst
Sid
[apparmor] [PATCH] apparmor: audit_cap dedup based on subj_cred instead of profile
Ryan Lee
Re: [apparmor] [PATCH] apparmor: audit_cap dedup based on subj_cred instead of profile
John Johansen
[apparmor] [PATCH] apparmor: document capability.c:profile_capable ad ptr not being NULL
Ryan Lee
Re: [apparmor] [PATCH] apparmor: document capability.c:profile_capable ad ptr not being NULL
John Johansen
[apparmor] [PATCH] apparmor: Remove deadcode
linux
Re: [apparmor] [PATCH] apparmor: Remove deadcode
Dr. David Alan Gilbert
Re: [apparmor] [PATCH] apparmor: Remove deadcode
John Johansen
[apparmor] [PATCH v2] apparmor: add a cache entry expiration time aging out capability audit cache
Ryan Lee
Re: [apparmor] [PATCH v2] apparmor: add a cache entry expiration time aging out capability audit cache
John Johansen
Re: [RFC 6/6] apparmor: Switch labels to percpu ref managed mode
kernel test robot
[apparmor] [RFC, PATCH 1/3] apparmor: add a cache entry expiration time aging out capability audit cache
Ryan Lee
[apparmor] [RFC, PATCH 2/3] apparmor: Add an apparmor_can_read_douintvec for unsigned int apparmor sysctls
Ryan Lee
Re: [apparmor] [RFC, PATCH 2/3] apparmor: Add an apparmor_can_read_douintvec for unsigned int apparmor sysctls
John Johansen
[apparmor] [RFC, PATCH 3/3] apparmor: Make the audit cap cache timeout a sysctl
Ryan Lee
Re: [apparmor] [RFC, PATCH 3/3] apparmor: Make the audit cap cache timeout a sysctl
John Johansen
Re: [apparmor] [RFC, PATCH 1/3] apparmor: add a cache entry expiration time aging out capability audit cache
Ryan Lee
[apparmor] [PATCH] apparmor: hide aa_unprivileged_uring_restricted from userspace when io_uring is disabled
Ryan Lee
Re: [apparmor] [PATCH] apparmor: hide aa_unprivileged_uring_restricted from userspace when io_uring is disabled
John Johansen
[apparmor] [PATCH] apparmor: Remove unnecessary NULL check before kvfree()
Thorsten Blum
[apparmor] [PATCH v3 01/13] LSM: Add the lsm_prop data structure.
Casey Schaufler
[apparmor] irc meeting Tues Sept 10
John Johansen
[apparmor] [PATCH -next] apparmor: Remove unused parameter L1 in macro next_comb
Jinjie Ruan
Re: [apparmor] [PATCH -next] apparmor: Remove unused parameter L1 in macro next_comb
John Johansen
[apparmor] [PATCH -next] apparmor: Use IS_ERR_OR_NULL() helper function
Hongbo Li
Re: [apparmor] [PATCH -next] apparmor: Use IS_ERR_OR_NULL() helper function
John Johansen
[apparmor] [PATCH v2 01/13] LSM: Add the lsmblob data structure.
Casey Schaufler
Re: [apparmor] [PATCH v2 1/13] LSM: Add the lsmblob data structure.
Paul Moore
Re: [apparmor] [PATCH v2 1/13] LSM: Add the lsmblob data structure.
Casey Schaufler
Re: [apparmor] [PATCH v2 1/13] LSM: Add the lsmblob data structure.
Paul Moore
Re: [apparmor] [PATCH v2 1/13] LSM: Add the lsmblob data structure.
Casey Schaufler
Re: [apparmor] [PATCH v2 1/13] LSM: Add the lsmblob data structure.
Paul Moore
[apparmor] [PATCH] apparmor: replace misleading 'scrubbing environment' phrase in debug print
Ryan Lee
Re: [apparmor] [PATCH] apparmor: replace misleading 'scrubbing environment' phrase in debug print
John Johansen
[apparmor] [PATCH] apparmor: properly handle cx/px lookup failure for complain mode profiles
Ryan Lee
Re: [apparmor] [PATCH] apparmor: properly handle cx/px lookup failure for complain mode profiles
John Johansen
[apparmor] [PATCH v1] security/apparmor: remove duplicate unpacking in unpack_perm function
Shen Lichuan
Re: [apparmor] [PATCH v1] security/apparmor: remove duplicate unpacking in unpack_perm function
John Johansen
Re: [apparmor] [PATCH v1] security/apparmor: remove duplicate unpacking in unpack_perm function
Serge E. Hallyn
Re: [apparmor] [PATCH v1] security/apparmor: remove duplicate unpacking in unpack_perm function
John Johansen
[apparmor] [PATCH] apparmor: fix null pointer deref in find_attach when xmatch is null
Ryan Lee
Re: [apparmor] [PATCH] apparmor: fix null pointer deref in find_attach when xmatch is null
Ryan Lee
Re: [apparmor] [PATCH] apparmor: fix null pointer deref in find_attach when xmatch is null
Ryan Lee
Re: [apparmor] [PATCH] apparmor: fix null pointer deref in find_attach when xmatch is null
John Johansen
[apparmor] [PATCH] apparmor: fix policy_unpack_test on big endian systems
Guenter Roeck
Re: [apparmor] [PATCH] apparmor: fix policy_unpack_test on big endian systems
Kees Cook
Re: [apparmor] [PATCH] apparmor: fix policy_unpack_test on big endian systems
John Johansen
Re: [apparmor] [PATCH] apparmor: fix policy_unpack_test on big endian systems
Guenter Roeck
[apparmor] [linus:master] f4fee216df: will-it-scale.per_process_ops 86.8% improvement
kernel test robot
[apparmor] [PATCH v2 0/2] get rid of cred_transfer
Jann Horn
[apparmor] [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Jann Horn
Re: [apparmor] [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Jarkko Sakkinen
Re: [apparmor] [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Paul Moore
Re: [apparmor] [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Jann Horn
[apparmor] [PATCH v2 2/2] security: remove unused cred_alloc_blank/cred_transfer helpers
Jann Horn
Re: [apparmor] [PATCH v2 2/2] security: remove unused cred_alloc_blank/cred_transfer helpers
Jarkko Sakkinen
[apparmor] Can KEYCTL_SESSION_TO_PARENT be dropped entirely? -- was Re: [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
David Howells
Re: [apparmor] Can KEYCTL_SESSION_TO_PARENT be dropped entirely? -- was Re: [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Jann Horn
Re: [apparmor] Can KEYCTL_SESSION_TO_PARENT be dropped entirely? -- was Re: [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Jarkko Sakkinen
Re: [apparmor] Can KEYCTL_SESSION_TO_PARENT be dropped entirely? -- was Re: [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Paul Moore
Re: [apparmor] Can KEYCTL_SESSION_TO_PARENT be dropped entirely? -- was Re: [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Paul Moore
Re: [apparmor] Can KEYCTL_SESSION_TO_PARENT be dropped entirely? -- was Re: [PATCH v2 1/2] KEYS: use synchronous task work for changing parent credentials
Jann Horn
[apparmor] [PATCH RFC] security/KEYS: get rid of cred_alloc_blank and cred_transfer
Jann Horn
Re: [apparmor] [PATCH RFC] security/KEYS: get rid of cred_alloc_blank and cred_transfer
Jarkko Sakkinen
Re: [apparmor] [PATCH RFC] security/KEYS: get rid of cred_alloc_blank and cred_transfer
Jann Horn
Re: [apparmor] [PATCH RFC] security/KEYS: get rid of cred_alloc_blank and cred_transfer
Jarkko Sakkinen
[apparmor] [PATCH AUTOSEL 5.15 1/2] apparmor: fix possible NULL pointer dereference
Sasha Levin
[apparmor] [PATCH AUTOSEL 6.10 1/2] apparmor: fix possible NULL pointer dereference
Sasha Levin
[apparmor] [PATCH AUTOSEL 6.6 1/2] apparmor: fix possible NULL pointer dereference
Sasha Levin
[apparmor] [PATCH AUTOSEL 5.4 1/2] apparmor: fix possible NULL pointer dereference
Sasha Levin
[apparmor] [PATCH AUTOSEL 4.19 1/2] apparmor: fix possible NULL pointer dereference
Sasha Levin
[apparmor] [PATCH AUTOSEL 6.1 1/2] apparmor: fix possible NULL pointer dereference
Sasha Levin
[apparmor] [PATCH AUTOSEL 5.10 1/2] apparmor: fix possible NULL pointer dereference
Sasha Levin
[apparmor] [PATCH v2 1/1] Docs: Update LSM/apparmor.rst
Siddharth Menon
[apparmor] Specific kernel version required specific apparmor-utils version?
xoip
Re: [apparmor] Specific kernel version required specific apparmor-utils version?
John Johansen
Re: [apparmor] Specific kernel version required specific apparmor-utils version?
Seth Arnold
[GIT PULL] sysctl constification changes for v6.11-rc1
Joel Granados
Re: [GIT PULL] sysctl constification changes for v6.11-rc1
Linus Torvalds
Re: [GIT PULL] sysctl constification changes for v6.11-rc1
patchwork-bot+linux-riscv
Re: [GIT PULL] sysctl constification changes for v6.11-rc1
patchwork-bot+linux-riscv
[apparmor] AppArmor 4.0.2 Released
John Johansen
[apparmor] [PATCH bpf-next v4 00/20] Add return value range check for BPF LSM
Xu Kuohai
[apparmor] [PATCH bpf-next v4 05/20] lsm: Refactor return value of LSM hook inode_copy_up_xattr
Xu Kuohai
Re: [apparmor] [PATCH v4 5/20] lsm: Refactor return value of LSM hook inode_copy_up_xattr
Paul Moore
[apparmor] [PATCH bpf-next v4 08/20] lsm: Refactor return value of LSM hook getprocattr
Xu Kuohai
Re: [apparmor] [PATCH v4 8/20] lsm: Refactor return value of LSM hook getprocattr
Paul Moore
[apparmor] [PATCH bpf-next v4 09/20] lsm: Refactor return value of LSM hook key_getsecurity
Xu Kuohai
Re: [apparmor] [PATCH v4 9/20] lsm: Refactor return value of LSM hook key_getsecurity
Paul Moore
[apparmor] [PATCH bpf-next v4 10/20] lsm: Refactor return value of LSM hook audit_rule_match
Xu Kuohai
Re: [apparmor] [PATCH v4 10/20] lsm: Refactor return value of LSM hook audit_rule_match
Paul Moore
Re: [apparmor] [PATCH v4 10/20] lsm: Refactor return value of LSM hook audit_rule_match
Xu Kuohai
[apparmor] [PATCH bpf-next v4 07/20] lsm: Refactor return value of LSM hook setprocattr
Xu Kuohai
Re: [apparmor] [PATCH v4 7/20] lsm: Refactor return value of LSM hook setprocattr
Paul Moore
[apparmor] [PATCH bpf-next v4 03/20] lsm: Refactor return value of LSM hook inode_getsecurity
Xu Kuohai
Re: [apparmor] [PATCH bpf-next v4 03/20] lsm: Refactor return value of LSM hook inode_getsecurity
Simon Horman
Re: [apparmor] [PATCH bpf-next v4 03/20] lsm: Refactor return value of LSM hook inode_getsecurity
Xu Kuohai
Re: [apparmor] [PATCH v4 3/20] lsm: Refactor return value of LSM hook inode_getsecurity
Paul Moore
[apparmor] [PATCH bpf-next v4 11/20] bpf, lsm: Add disabled BPF LSM hook list
Xu Kuohai
Re: [apparmor] [PATCH bpf-next v4 11/20] bpf, lsm: Add disabled BPF LSM hook list
Alexei Starovoitov
Re: [apparmor] [PATCH bpf-next v4 11/20] bpf, lsm: Add disabled BPF LSM hook list
Xu Kuohai
[apparmor] [PATCH bpf-next v4 01/20] lsm: Refactor return value of LSM hook vm_enough_memory
Xu Kuohai
Re: [apparmor] [PATCH bpf-next v4 01/20] lsm: Refactor return value of LSM hook vm_enough_memory
Serge Hallyn
Re: [apparmor] [PATCH v4 1/20] lsm: Refactor return value of LSM hook vm_enough_memory
Paul Moore
[apparmor] [PATCH bpf-next v4 12/20] bpf, lsm: Enable BPF LSM prog to read/write return value parameters
Xu Kuohai
[apparmor] [PATCH bpf-next v4 06/20] lsm: Refactor return value of LSM hook getselfattr
Xu Kuohai
Re: [apparmor] [PATCH v4 6/20] lsm: Refactor return value of LSM hook getselfattr
Paul Moore
Re: [apparmor] [PATCH v4 6/20] lsm: Refactor return value of LSM hook getselfattr
Xu Kuohai
[apparmor] [PATCH bpf-next v4 04/20] lsm: Refactor return value of LSM hook inode_listsecurity
Xu Kuohai
Re: [apparmor] [PATCH v4 4/20] lsm: Refactor return value of LSM hook inode_listsecurity
Paul Moore
[apparmor] [PATCH bpf-next v4 02/20] lsm: Refactor return value of LSM hook inode_need_killpriv
Xu Kuohai
Re: [apparmor] [PATCH bpf-next v4 02/20] lsm: Refactor return value of LSM hook inode_need_killpriv
Serge Hallyn
Re: [apparmor] [PATCH bpf-next v4 02/20] lsm: Refactor return value of LSM hook inode_need_killpriv
Xu Kuohai
Re: [apparmor] [PATCH v4 2/20] lsm: Refactor return value of LSM hook inode_need_killpriv
Paul Moore
Re: [apparmor] [PATCH bpf-next v4 00/20] Add return value range check for BPF LSM
Paul Moore
Re: [apparmor] [PATCH bpf-next v4 00/20] Add return value range check for BPF LSM
Paul Moore
Re: [apparmor] [PATCH bpf-next v4 00/20] Add return value range check for BPF LSM
Paul Moore
Re: [apparmor] [PATCH bpf-next v4 00/20] Add return value range check for BPF LSM
Paul Moore
[apparmor] [PATCH bpf-next v4 13/20] bpf, lsm: Add check for BPF LSM return value
Xu Kuohai
[apparmor] [PATCH bpf-next v4 18/20] selftests/bpf: Add return value checks for failed tests
Xu Kuohai
[apparmor] [PATCH bpf-next v4 20/20] selftests/bpf: Add verifier tests for bpf lsm
Xu Kuohai
[apparmor] [PATCH bpf-next v4 19/20] selftests/bpf: Add test for lsm tail call
Xu Kuohai
[apparmor] [PATCH bpf-next v4 15/20] bpf: Fix compare error in function retval_range_within
Xu Kuohai
[apparmor] [PATCH bpf-next v4 14/20] bpf: Prevent tail call between progs attached to different hooks
Xu Kuohai
[apparmor] [PATCH bpf-next v4 17/20] selftests/bpf: Avoid load failure for token_lsm.c
Xu Kuohai
[apparmor] [PATCH bpf-next v4 16/20] bpf: Add a special case for bitwise AND on range [-1, 0]
Xu Kuohai
[apparmor] [PATCH] apparmor: domain: clean up duplicated parts of handle_onexec()
Leesoo Ahn
Re: [apparmor] [PATCH] apparmor: domain: clean up duplicated parts of handle_onexec()
John Johansen
[apparmor] [PATCH] apparmor: take nosymfollow flag into account
Alexander Mikhalitsyn
Re: [apparmor] [PATCH] apparmor: take nosymfollow flag into account
Georgia Garcia
Re: [apparmor] [PATCH] apparmor: take nosymfollow flag into account
John Johansen
[apparmor] [PATCH] apparmor: try to avoid refing the label in apparmor_file_open
Mateusz Guzik
Re: [apparmor] [PATCH] apparmor: try to avoid refing the label in apparmor_file_open
John Johansen
Re: [apparmor] [PATCH] apparmor: try to avoid refing the label in apparmor_file_open
Mateusz Guzik
Re: [apparmor] [PATCH] apparmor: try to avoid refing the label in apparmor_file_open
John Johansen
[apparmor] [PATCH v2] apparmor: try to avoid refing the label in apparmor_file_open
Mateusz Guzik
Re: [apparmor] [PATCH v2] apparmor: try to avoid refing the label in apparmor_file_open
Neeraj Upadhyay
Re: [apparmor] [PATCH v2] apparmor: try to avoid refing the label in apparmor_file_open
Mateusz Guzik
Re: [apparmor] [PATCH v2] apparmor: try to avoid refing the label in apparmor_file_open
John Johansen
Re: [apparmor] [PATCH v2] apparmor: try to avoid refing the label in apparmor_file_open
Neeraj Upadhyay
Re: [apparmor] [PATCH v2] apparmor: try to avoid refing the label in apparmor_file_open
kernel test robot
[apparmor] [PATCH v2 0/4] Introduce user namespace capabilities
Jonathan Calmels
[apparmor] [PATCH v2 2/4] capabilities: Add securebit to restrict userns caps
Jonathan Calmels
Re: [apparmor] [PATCH v2 2/4] capabilities: Add securebit to restrict userns caps
Serge E. Hallyn
Re: [apparmor] [PATCH v2 2/4] capabilities: Add securebit to restrict userns caps
Jonathan Calmels
Re: [apparmor] [PATCH v2 2/4] capabilities: Add securebit to restrict userns caps
Serge E. Hallyn
Re: [apparmor] [PATCH v2 2/4] capabilities: Add securebit to restrict userns caps
Jarkko Sakkinen
Earlier messages
Later messages