Re: [PATCH ghak124 v3fix] audit: add gfp parameter to audit_log_nfcfg

2020-06-29 Thread Paul Moore
On Sat, Jun 27, 2020 at 11:25 PM Richard Guy Briggs wrote: > > Fixed an inconsistent use of GFP flags in nft_obj_notify() that used > GFP_KERNEL when a GFP flag was passed in to that function. Given this > allocated memory was then used in audit_log_nfcfg() it led to an audit > of all other GFP

Re: [PATCH] ima: Rename internal audit rule functions

2020-06-29 Thread Mimi Zohar
[Cc'ing the audit mailing list] On Mon, 2020-06-29 at 10:30 -0500, Tyler Hicks wrote: > > diff --git a/security/integrity/ima/ima.h b/security/integrity/ima/ima.h > index ff2bf57ff0c7..5d62ee8319f4 100644 > --- a/security/integrity/ima/ima.h > +++ b/security/integrity/ima/ima.h > @@ -419,24

Re: [PATCH v3 2/2] IMA: Add audit log for failure conditions

2020-06-29 Thread Mimi Zohar
On Thu, 2020-06-25 at 15:14 -0400, Paul Moore wrote: > On Wed, Jun 24, 2020 at 1:25 PM Lakshmi Ramasubramanian > wrote: > > > > On 6/23/20 12:58 PM, Mimi Zohar wrote: > > > > Hi Steve\Paul, > > > > >> Sample audit messages: > > >> > > >> [6.303048] audit: type=1804 audit(1592506281.627:2):