aboutsummaryrefslogtreecommitdiff
path: root/sys/security
Commit message (Expand)AuthorAgeFilesLines
* In mac_bsdextended's auditctl and acct policy access control checks,Robert Watson2008-07-311-11/+8
* Currently, BSM audit pathname token generation for chrooted or jailedChristian S.J. Peron2008-07-311-55/+93
* Further synchronization of copyrights, licenses, white space, etc fromRobert Watson2008-07-319-11/+10
* Minor white space tweak.Robert Watson2008-07-231-1/+1
* If an AUE_SYSCTL_NONADMIN audit event is selected, generate a recordRobert Watson2008-07-221-0/+1
* Further minor style fixes to audit.Robert Watson2008-07-221-5/+10
* Remove unneeded \ at the end of a macro.Robert Watson2008-07-221-1/+1
* Further minor white space tweaks.Robert Watson2008-07-221-2/+2
* Generally avoid <space><tab> as a white space anomoly.Robert Watson2008-07-225-18/+18
* Use #define<tab> rather than #define<space>.Robert Watson2008-07-222-9/+9
* Comment fix.Robert Watson2008-07-221-1/+1
* Comment typo fix.Robert Watson2008-07-221-1/+1
* Minor white space synchronization to Apple version of security audit.Robert Watson2008-07-221-4/+4
* In preparation to sync Apple and FreeBSD versions of security audit,Robert Watson2008-07-229-18/+18
* Use unsigned int when iterating over groupsets in audit_arg_groupset().Robert Watson2008-07-221-1/+1
* Rework the lifetime management of the kernel implementation of POSIXJohn Baldwin2008-06-277-42/+136
* Add missing counter increments for posix shm checks.John Baldwin2008-06-261-0/+5
* Remove the posixsem_check_destroy() MAC check. It is semantically identicalJohn Baldwin2008-06-237-39/+0
* The TrustedBSD MAC Framework named struct ipq instances 'ipq', which is theRobert Watson2008-06-138-74/+73
* Don't enforce unique device minor number policy anymore.Ed Schouten2008-06-111-1/+1
* When the file-system containing the audit log file is running low onSimon L. B. Nielsen2008-06-101-1/+3
* Add an XXX comment regarding a bug I introduced when modifying the behaviorRobert Watson2008-06-031-0/+3
* Plug a memory leak which can occur when multiple MAC policies are loadedChristian S.J. Peron2008-05-271-0/+4
* Don't use LK_DRAIN before calling VOP_FSYNC() in the two furtherRobert Watson2008-05-211-2/+2
* Don't use LK_DRAIN before calling VOP_FSYNC() in the panic case forRobert Watson2008-05-211-1/+1
* When testing whether to enter the audit argument gathering code, ratherRobert Watson2008-05-061-1/+1
* Fix include guard spelling.Robert Watson2008-04-271-1/+1
* Use logic or, not binary or, when deciding whether or not a system callRobert Watson2008-04-241-1/+1
* When auditing state from an IPv4 or IPv6 socket, use read locks on theRobert Watson2008-04-191-2/+2
* When propagating a MAC label from an inpcb to an mbuf, allow read andRobert Watson2008-04-191-1/+1
* Convert pcbinfo and inpcb mutexes to rwlocks, and modify macros toRobert Watson2008-04-172-5/+5
* Use __FBSDID() for $FreeBSD$ IDs in the audit code.Robert Watson2008-04-139-18/+27
* Make naming of include guards for MAC Framework include files moreRobert Watson2008-04-133-9/+9
* Add the support for the AT_FDCWD and fd-relative name lookups to theKonstantin Belousov2008-03-311-0/+1
* In keeping with style(9)'s recommendations on macros, use a ';'Robert Watson2008-03-161-1/+1
* Remove XXX to remind me to check the free space calculation, which to myRobert Watson2008-03-101-3/+0
* Change auditon(2) so that if somebody supplies an invalid command, itChristian S.J. Peron2008-03-061-0/+3
* Rather than copying out the full audit trigger record, which includesRobert Watson2008-03-021-1/+1
* Add audit_prefixes to two more globally visible functions in the AuditRobert Watson2008-03-013-7/+7
* Rename globally exposed symbol send_trigger() to audit_send_trigger().Robert Watson2008-03-014-6/+7
* Replace somewhat awkward audit trail rotation scheme, which involved theRobert Watson2008-02-271-156/+91
* Rename several audit functions in the global kernel symbol namespace toRobert Watson2008-02-255-11/+11
* Make sure that the termid type is initialized to AU_IPv4 by default.Christian S.J. Peron2008-01-281-0/+2
* Properly return the error from mls_subject_privileged() in the ifnetRobert Watson2008-01-281-3/+1
* Fix gratuitous whitespace bugChristian S.J. Peron2008-01-181-1/+2
* Add a case for AUE_LISTEN. This removes the following console error message:Christian S.J. Peron2008-01-181-0/+1
* VOP_LOCK1() (and so VOP_LOCK()) and VOP_UNLOCK() are only used inAttilio Rao2008-01-135-15/+15
* vn_lock() is currently only used with the 'curthread' passed as argument.Attilio Rao2008-01-105-8/+8
* Add a new file descriptor type for IPC shared memory objects and use it toJohn Baldwin2008-01-085-0/+339
* Add a new 'why' argument to kdb_enter(), and a set of constants to useRobert Watson2007-12-251-1/+1