2008-07-24security: filesystem capabilities no longer experimentalAndrew G. Morgan
2008-07-24security: protect legacy applications from executing with insufficient privilegeAndrew G. Morgan
2008-07-15Revert "SELinux: allow fstype unknown to policy to use xattrs if present"James Morris
2008-07-14security: remove register_security hookJames Morris
2008-07-14security: remove dummy module fixMiklos Szeredi
2008-07-14security: remove dummy moduleMiklos Szeredi
2008-07-14security: remove unused sb_get_mnt_opts hookMiklos Szeredi
2008-07-14LSM/SELinux: show LSM mount options in /proc/mountsEric Paris
2008-07-14SELinux: allow fstype unknown to policy to use xattrs if presentEric Paris
2008-07-14security: fix return of void-valued expressionsJames Morris
2008-07-14SELinux: use do_each_thread as a proper do/while blockJames Morris
2008-07-14SELinux: remove unused and shadowed addrlen variableJames Morris
2008-07-14SELinux: more user friendly unknown handling printkEric Paris
2008-07-14selinux: change handling of invalid classes (Was: Re: 2.6.26-rc5-mm1 selinux ...Stephen Smalley
2008-07-14SELinux: drop load_mutex in security_load_policyEric Paris
2008-07-14SELinux: fix off by 1 reference of class_to_string in context_struct_compute_avEric Paris
2008-07-14SELinux: open code sidtab lockJames Morris
2008-07-14SELinux: open code load_mutexJames Morris
2008-07-14SELinux: open code policy_rwlockJames Morris
2008-07-14selinux: fix endianness bug in network node address handlingStephen Smalley
2008-07-14selinux: simplify ioctl checkingStephen Smalley
2008-07-14SELinux: enable processes with mac_admin to get the raw inode contextsStephen Smalley
2008-07-14Security: split proc ptrace checking into read vs. attachStephen Smalley
2008-07-14SELinux: remove inherit field from inode_security_structJames Morris
2008-07-14SELinux: reorder inode_security_struct to increase objs/slab on 64bitRichard Kennedy
2008-07-14SELinux: keep the code clean formating and syntaxEric Paris
2008-07-14SELinux: fix sleeping allocation in security_context_to_sidStephen Smalley
2008-07-14selinux: support deferred mapping of contextsStephen Smalley
2008-07-13devcgroup: fix permission check when adding entry to child cgroupLi Zefan
2008-07-13devcgroup: always show positive major/minor numLi Zefan
2008-07-04devcgroup: fix odd behaviour when writing 'a' to devices.allowLi Zefan
2008-07-04security: filesystem capabilities: fix CAP_SETPCAP handlingAndrew G. Morgan
2008-06-12capabilities: add (back) dummy support for KEEPCAPSAndrew G. Morgan
2008-06-06keys: remove unused key_alloc_semDaniel Walker
2008-06-06devscgroup: make white list more compact in some casesPavel Emelyanov
2008-06-06devscgroup: relax task to dev_cgroup conversionPavel Emelyanov
2008-06-06devcgroup: make a helper to convert cgroup_subsys_state to devs_cgroupPavel Emelyanov
2008-06-04Smack: fuse mount hang fixCasey Schaufler
2008-05-01[PATCH] split linux/file.hAl Viro
2008-04-30signals: cleanup security_task_kill() usage/implementationOleg Nesterov
2008-04-30Smack: Integrate Smack with AuditAhmed S. Darwish
2008-04-30Security: Make secctx_to_secid() take const secdataDavid Howells
2008-04-29Merge branch 'audit.b50' of git:// Torvalds
2008-04-29keys: explicitly include required slab.h header file.Robert P. J. Day
2008-04-29keys: make the keyring quotas controllable through /proc/sysDavid Howells
2008-04-29keys: don't generate user and user session keyrings unless they're accessedDavid Howells
2008-04-29keys: allow clients to set key perms in key_create_or_update()Arun Raghavan
2008-04-29keys: switch to proc_create()Alexey Dobriyan
2008-04-29keys: add keyctl function to get a security labelDavid Howells
2008-04-29keys: allow the callout data to be passed as a blob rather than a stringDavid Howells