-
- Downloads
Merge tag 'selinux-pr-20180403' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux
Pull SELinux updates from Paul Moore: "A bigger than usual pull request for SELinux, 13 patches (lucky!) along with a scary looking diffstat. Although if you look a bit closer, excluding the usual minor tweaks/fixes, there are really only two significant changes in this pull request: the addition of proper SELinux access controls for SCTP and the encapsulation of a lot of internal SELinux state. The SCTP changes are the result of a multi-month effort (maybe even a year or longer?) between the SELinux folks and the SCTP folks to add proper SELinux controls. A special thanks go to Richard for seeing this through and keeping the effort moving forward. The state encapsulation work is a bit of janitorial work that came out of some early work on SELinux namespacing. The question of namespacing is still an open one, but I believe there is some real value in the encapsulation work so we've split that out and are now sending that up to you" * tag 'selinux-pr-20180403' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux: selinux: wrap AVC state selinux: wrap selinuxfs state selinux: fix handling of uninitialized selinux state in get_bools/classes selinux: Update SELinux SCTP documentation selinux: Fix ltp test connect-syscall failure selinux: rename the {is,set}_enforcing() functions selinux: wrap global selinux state selinux: fix typo in selinux_netlbl_sctp_sk_clone declaration selinux: Add SCTP support sctp: Add LSM hooks sctp: Add ip option support security: Add support for SCTP security hooks netlabel: If PF_INET6, check sk_buff ip header version
No related branches found
No related tags found
Showing
- Documentation/security/LSM-sctp.rst 175 additions, 0 deletionsDocumentation/security/LSM-sctp.rst
- Documentation/security/SELinux-sctp.rst 158 additions, 0 deletionsDocumentation/security/SELinux-sctp.rst
- include/linux/lsm_hooks.h 36 additions, 0 deletionsinclude/linux/lsm_hooks.h
- include/linux/security.h 25 additions, 0 deletionsinclude/linux/security.h
- include/net/sctp/sctp.h 3 additions, 1 deletioninclude/net/sctp/sctp.h
- include/net/sctp/structs.h 12 additions, 0 deletionsinclude/net/sctp/structs.h
- include/uapi/linux/sctp.h 1 addition, 0 deletionsinclude/uapi/linux/sctp.h
- net/netlabel/netlabel_unlabeled.c 10 additions, 0 deletionsnet/netlabel/netlabel_unlabeled.c
- net/sctp/chunk.c 7 additions, 3 deletionsnet/sctp/chunk.c
- net/sctp/ipv6.c 38 additions, 7 deletionsnet/sctp/ipv6.c
- net/sctp/output.c 21 additions, 13 deletionsnet/sctp/output.c
- net/sctp/protocol.c 43 additions, 0 deletionsnet/sctp/protocol.c
- net/sctp/sm_make_chunk.c 12 additions, 0 deletionsnet/sctp/sm_make_chunk.c
- net/sctp/sm_statefuns.c 18 additions, 0 deletionsnet/sctp/sm_statefuns.c
- net/sctp/socket.c 66 additions, 4 deletionsnet/sctp/socket.c
- security/security.c 22 additions, 0 deletionssecurity/security.c
- security/selinux/avc.c 163 additions, 119 deletionssecurity/selinux/avc.c
- security/selinux/hooks.c 690 additions, 232 deletionssecurity/selinux/hooks.c
- security/selinux/ibpkey.c 2 additions, 1 deletionsecurity/selinux/ibpkey.c
- security/selinux/include/avc.h 21 additions, 17 deletionssecurity/selinux/include/avc.h
Loading
Please register or sign in to comment