[ghak90,V7,14/21] audit: contid check descendancy and nesting |
|
|
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,13/21] audit: NETFILTER_PKT: record each container ID associated with a netNS |
1 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,12/21] audit: add support for containerid to network namespaces |
1 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,11/21] audit: add containerid filtering |
2 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,10/21] audit: add containerid support for user records |
1 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,09/21] audit: add support for non-syscall auxiliary records |
2 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,08/21] audit: add contid support for signalling the audit daemon |
|
|
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,07/21] audit: log container info of syscalls |
3 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,06/21] audit: contid limit of 32k imposed to avoid DoS |
|
|
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,05/21] audit: log drop of contid on exit of last task |
|
|
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,04/21] audit: convert to contid list to check for orch/engine ownership |
|
|
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,03/21] audit: read container ID of a process |
2 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,02/21] audit: add container id |
3 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[ghak90,V7,01/21] audit: collect audit task parameters |
1 |
1 |
|
2019-09-19 |
Richard Guy Briggs |
|
New |
[v12,05/12] namei: obey trailing magic-link DAC permissions |
|
|
|
2019-09-17 |
Jann Horn via Containers |
|
New |
[9/9] restart_block: Make common timeout |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[8/9] select/restart_block: Convert poll's timeout to u64 |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[7/9] select: Use ktime_t in do_sys_poll() and do_poll() |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[6/9] select: Extract common code into do_sys_ppoll() |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[5/9] select: Convert select_estimate_accuracy() to take ktime_t |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[4/9] select: Micro-optimise __estimate_accuracy() |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[3/9] select: Convert __esimate_accuracy() to ktime_t |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[2/9] restart_block: Prevent userspace set part of the block |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[1/9] futex: Remove unused uaddr2 in restart_block |
|
|
|
2019-09-09 |
Jann Horn via Containers |
|
New |
[v12,12/12] selftests: add openat2(2) selftests |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,11/12] open: openat2(2) syscall |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,10/12] namei: aggressively check for nd->root escape on ".." resolution |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,09/12] namei: LOOKUP_IN_ROOT: chroot-like path resolution |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,08/12] namei: O_BENEATH-style path resolution flags |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,07/12] open: O_EMPTYPATH: procfs-less file descriptor re-opening |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,06/12] procfs: switch magic-link modes to be more sane |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,05/12] namei: obey trailing magic-link DAC permissions |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,04/12] perf_event_open: switch to copy_struct_from_user() |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,03/12] sched_setattr: switch to copy_struct_{to, from}_user() |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,02/12] clone3: switch to copy_struct_from_user() |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[v12,01/12] lib: introduce copy_struct_{to,from}_user helpers |
|
|
|
2019-09-04 |
Aleksa Sarai |
|
New |
[RESEND,v11,8/8] selftests: add openat2(2) selftests |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[RESEND,v11,7/8] open: openat2(2) syscall |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[RESEND,v11,6/8] namei: aggressively check for nd->root escape on ".." resolution |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[RESEND,v11,5/8] namei: LOOKUP_IN_ROOT: chroot-like path resolution |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[RESEND,v11,4/8] namei: O_BENEATH-style path resolution flags |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[RESEND,v11,3/8] open: O_EMPTYPATH: procfs-less file descriptor re-opening |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[RESEND,v11,2/8] procfs: switch magic-link modes to be more sane |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[RESEND,v11,1/8] namei: obey trailing magic-link DAC permissions |
|
|
|
2019-08-20 |
Aleksa Sarai |
|
New |
[PATCHv6,23/36] x86/vdso: Allocate timens vdso |
|
|
|
2019-08-18 |
Thomas Gleixner |
|
New |
[PATCHv6,23/36] x86/vdso: Allocate timens vdso |
|
|
|
2019-08-18 |
Thomas Gleixner |
|
New |
[PATCHv6,23/36] x86/vdso: Allocate timens vdso |
|
|
|
2019-08-18 |
Thomas Gleixner |
|
New |
[PATCHv6,05/36] alarmtimer: Rename gettime() callback to get_ktime() |
|
|
|
2019-08-15 |
Jann Horn via Containers |
|
New |
[PATCHv6,04/36] posix-clocks: Rename .clock_get_timespec() callbacks accordingly |
|
|
|
2019-08-15 |
Jann Horn via Containers |
|
New |
[PATCHv6,03/36] posix-clocks: Rename the clock_get() into clock_get_timespec() |
|
|
|
2019-08-15 |
Jann Horn via Containers |
|
New |
[PATCHv6,02/36] timens: Add timens_offsets |
|
|
|
2019-08-15 |
Jann Horn via Containers |
|
New |
[PATCHv6,01/36] ns: Introduce Time Namespace |
|
|
|
2019-08-15 |
Jann Horn via Containers |
|
New |
[PATCHv6,25/37] x86/vdso: Switch image on setns()/clone() |
|
|
|
2019-08-07 |
Jann Horn via Containers |
|
New |
[PATCHv6,01/37] ns: Introduce Time Namespace |
|
|
|
2019-08-07 |
Jann Horn via Containers |
|
New |
[PATCHv5,13/37] posix-timers: Make timer_settime() time namespace aware |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,12/37] timerfd: Make timerfd_settime() time namespace aware |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,11/37] kernel: Add do_timens_ktime_to_host() helper |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,10/37] posix-clocks: Introduce CLOCK_BOOTTIME time namespace offset |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,09/37] posix-clocks: Introduce CLOCK_MONOTONIC time namespace offsets |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,08/37] posix-timers: Use clock_get_ktime() in common_timer_get() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,07/37] posix-clocks: Introduce clock_get_ktime() callback |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,06/37] alarmtimer: Provide get_timespec() callback |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,05/37] alarmtimer: Rename gettime() callback to get_ktime() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,04/37] posix-clocks: Rename *_clock_get() functions into *_clock_get_timespec() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,03/37] posix-clocks: Rename the clock_get() into clock_get_timespec() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,02/37] timens: Add timens_offsets |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,01/37] ns: Introduce Time Namespace |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,37/37] selftest/timens: Check that a right vdso is mapped after fork and exec |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,36/37] selftests/timens: Add a simple perf test for clock_gettime() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,35/37] selftest/timens: Add timer offsets test |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,34/37] selftest/timens: Add procfs selftest |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,33/37] selftest/timens: Add a test for clock_nanosleep() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,32/37] selftest/timens: Add a test for timerfd |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,31/37] selftest/timens: Add Time Namespace test for supported clocks |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,30/37] fs/proc: Introduce /proc/pid/timens_offsets |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,29/37] posix-clocks: Add align for timens_offsets |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,28/37] x86/vdso: Enable static branches for the timens vdso |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,27/37] x86/vdso2c: Process jump tables |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,26/37] vdso: Introduce vdso_static_branch_unlikely() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,25/37] x86/vdso: Switch image on setns()/clone() |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,24/37] x86/vdso: Allocate timens vdso |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[PATCHv5,23/37] x86/vdso: Add offsets page in vvar |
|
|
|
2019-07-29 |
Jann Horn via Containers |
|
New |
[v11,8/8] selftests: add openat2(2) selftests |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v11,7/8] open: openat2(2) syscall |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v11,6/8] namei: aggressively check for nd->root escape on ".." resolution |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v11,5/8] namei: LOOKUP_IN_ROOT: chroot-like path resolution |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v11,4/8] namei: O_BENEATH-style path resolution flags |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v11,3/8] open: O_EMPTYPATH: procfs-less file descriptor re-opening |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v11,2/8] procfs: switch magic-link modes to be more sane |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v11,1/8] namei: obey trailing magic-link DAC permissions |
|
|
|
2019-07-28 |
Aleksa Sarai |
|
New |
[v10,9/9] selftests: add openat2(2) selftests |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,8/9] kselftest: save-and-restore errno to allow for %m formatting |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,7/9] open: openat2(2) syscall |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,6/9] namei: aggressively check for nd->root escape on ".." resolution |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,5/9] namei: LOOKUP_IN_ROOT: chroot-like path resolution |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,4/9] namei: O_BENEATH-style path resolution flags |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,3/9] open: O_EMPTYPATH: procfs-less file descriptor re-opening |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,2/9] procfs: switch magic-link modes to be more sane |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v10,1/9] namei: obey trailing magic-link DAC permissions |
|
|
|
2019-07-19 |
Aleksa Sarai |
|
New |
[v9,10/10] selftests: add openat2(2) selftests |
|
|
|
2019-07-06 |
Aleksa Sarai |
|
New |