2021-08-10bpf: Add lockdown check for probe_write_user helperDaniel Borkmann
2021-08-09bpf: Add _kernel suffix to internal lockdown_bpf_readDaniel Borkmann
2021-08-05Merge tag 'selinux-pr-20210805' of git:// Torvalds
2021-08-02selinux: correct the return value when loads initial sidsXiu Jianfeng
2021-07-02Merge tag 'asm-generic-unaligned-5.14' of git:// Torvalds
2021-06-30Merge tag 'safesetid-5.14' of git:// Torvalds
2021-06-30Merge tag 'Smack-for-5.14' of git:// Torvalds
2021-06-30Merge tag 'audit-pr-20210629' of git:// Torvalds
2021-06-30Merge tag 'selinux-pr-20210629' of git:// Torvalds
2021-06-28Merge tag 'integrity-v5.14' of git:// Torvalds
2021-06-21evm: Check xattr size discrepancy between kernel and userRoberto Sassu
2021-06-20evm: output EVM digest calculation infoMimi Zohar
2021-06-16tomoyo: fix doc warningsChenXiaoSong
2021-06-11audit: remove unnecessary 'ret' initializationAustin Kim
2021-06-11selinux: kill 'flags' argument in avc_has_perm_flags() and avc_audit()Al Viro
2021-06-11selinux: slow_avc_audit has become non-blockingAl Viro
2021-06-11selinux: Fix kernel-docYang Li
2021-06-11IMA: support for duplicate measurement recordsTushar Sugandhi
2021-06-11ima: Fix warning: no previous prototype for function 'ima_add_kexec_buffer'Lakshmi Ramasubramanian
2021-06-10selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVCMinchan Kim
2021-06-10ima: differentiate between EVM failures in the audit logMimi Zohar
2021-06-10LSM: SafeSetID: Mark safesetid_initialized as __initdataAustin Kim
2021-06-08ima: Fix fall-through warning for ClangGustavo A. R. Silva
2021-06-08ima: Pass NULL instead of 0 to ima_get_action() in ima_file_mprotect()Roberto Sassu
2021-06-08ima: Include header defining ima_post_key_create_or_update()Roberto Sassu
2021-06-08ima/evm: Fix type mismatchRoberto Sassu
2021-06-08ima: Set correct casting typesRoberto Sassu
2021-06-08Smack: fix doc warningChenXiaoSong
2021-06-03evm: Don't return an error in evm_write_xattrs() if audit is not enabledRoberto Sassu
2021-06-03ima: Define new template evm-sigRoberto Sassu
2021-06-02ima: Define new template fields xattrnames, xattrlengths and xattrvaluesRoberto Sassu
2021-06-01evm: Verify portable signatures against all protected xattrsRoberto Sassu
2021-06-01ima: Define new template field imodeRoberto Sassu
2021-06-01ima: Define new template fields iuid and igidRoberto Sassu
2021-06-01ima: Add ima_show_template_uint() template library functionRoberto Sassu
2021-06-01ima: Don't remove security.ima if file must not be appraisedRoberto Sassu
2021-06-01ima: Introduce template field evmsig and write to field sig as fallbackRoberto Sassu
2021-06-01ima: Allow imasig requirement to be satisfied by EVM portable signaturesRoberto Sassu
2021-06-01evm: Allow setxattr() and setattr() for unmodified metadataRoberto Sassu
2021-05-21evm: Pass user namespace to set/remove xattr hooksRoberto Sassu
2021-05-21evm: Allow xattr/attr operations for portable signaturesRoberto Sassu
2021-05-21evm: Introduce evm_hmac_disabled() to safely ignore verification errorsRoberto Sassu
2021-05-21evm: Introduce evm_revalidate_status()Roberto Sassu
2021-05-21evm: Refuse EVM_ALLOW_METADATA_WRITES only if an HMAC key is loadedRoberto Sassu
2021-05-21evm: Load EVM key in ima_load_x509() to avoid appraisalRoberto Sassu
2021-05-21evm: Execute evm_inode_init_security() only when an HMAC key is loadedRoberto Sassu
2021-05-20evm: fix writing <securityfs>/evm overflowMimi Zohar
2021-05-18Revert "Smack: Handle io_uring kernel thread privileges"Jens Axboe
2021-05-17apparmor: use get_unaligned() only for multi-byte wordsArnd Bergmann
2021-05-14lsm_audit,selinux: pass IB device name by referenceOndrej Mosnacek