summaryrefslogtreecommitdiff
path: root/src/security
Commit message (Expand)AuthorAgeFilesLines
* security: do not remember/recall labels for VFIO MDEVsEric Farman2023-04-132-4/+4
* security: Update format strings in translated messagesJiri Denemark2023-04-017-120/+99
* security: make it possible to set SELinux label of child process from its binaryLaine Stump2023-03-108-4/+87
* security: make args to virSecuritySELinuxContextAddRange() constLaine Stump2023-03-101-2/+2
* apparmor: Enable passt supportAndrea Bolognani2023-03-101-0/+15
* security: Add support for SUSE edk2 firmware pathsJim Fehlig2023-03-022-1/+2
* selinux: Don't ignore ENOENT in Permissive modeMichal Privoznik2023-02-201-3/+5
* selinux: Swap two blocks handling setfilecon_raw() failureMichal Privoznik2023-02-201-15/+15
* apparmor: Allow umount(/dev)Andrea Bolognani2023-01-182-0/+2
* security_selinux: Set and restore /dev/sgx_* labelsMichal Privoznik2023-01-133-5/+26
* conf: rename virDomainNetBackend* to virDomainNetDriver*Laine Stump2023-01-091-1/+1
* security: selinux: Handle security labelling of FD-passed imagesPeter Krempa2023-01-091-1/+31
* secuirity: DAC: Don't relabel FD-passed virStorageSource imagesPeter Krempa2023-01-091-2/+14
* conf: Add 'fdgroup' attribute for 'file' disksPeter Krempa2023-01-091-1/+2
* security: use g_autofree and remove unnecessary labelJiang Jiacheng2023-01-091-63/+31
* qemu: add external backend for tpmJán Tomko2022-12-192-0/+4
* security: Extend TPM label APIsMichal Privoznik2022-12-055-27/+47
* selinux: Reflect context_str() type changeMichal Privoznik2022-11-291-2/+2
* lib: Use the same style in the 'struct option'Jiang Jiacheng2022-11-221-11/+11
* apparmor: allow getattr on usb devicesChristian Ehrhardt2022-11-221-0/+1
* security_dac: Set DAC label on SGX /dev nodesMichal Privoznik2022-11-111-18/+28
* conf: Introduce SGX EPC element into device memory xmlLin Yang2022-11-113-0/+5
* security: aa-helper: Use virXMLParse instead of virXMLParseStringPeter Krempa2022-10-061-7/+2
* virt-aa-helper: allow common riscv64 loader pathsChristian Ehrhardt2022-10-041-5/+7
* security_selinux: Don't ignore NVMe disks when setting image labelMichal Privoznik2022-09-221-1/+5
* conf: extend xmlopt with job config & add job object into domain objectKristina Hanicova2022-09-071-1/+1
* conf: Move _virDomainTPMDef::version into _virDomainTPMDef::data::emulatorMichal Privoznik2022-08-011-1/+1
* security_selinux.c: Relabel existing mode="bind" UNIX socketsDavid Michael2022-07-011-2/+7
* qemu: Properly setup the NVRAM virStorageSourcePeter Krempa2022-06-143-25/+25
* conf: Convert def->os.loader->nvram a virStorageSourceRohit Kumar2022-06-143-6/+11
* security: Remove unused includesPeng Liang2022-06-076-8/+0
* apparmor: report error when removing profile failedJán Tomko2022-05-251-1/+1
* apparmor: Allow locking AAVMF firmwareAndrea Bolognani2022-05-231-1/+1
* Allow VM to read sysfs PCI config, revision filesMax Goodhart2022-05-201-1/+1
* apparmor: Add support for dbus chardevMartin Kletzander2022-05-191-0/+2
* conf: add <serial type='dbus'>Marc-André Lureau2022-05-191-0/+2
* conf: add qemu-vdagent channelJonathon Jongsma2022-05-102-0/+4
* apparmor: Allow swtpm to use its own apparmor profileLena Voytek2022-04-202-1/+3
* security_manager: Use automatic mutex managementTim Wiederhake2022-04-141-309/+215
* meson: Use dicts to initialize cfg_data objectsAndrea Bolognani2022-04-011-5/+6
* apparmor: Fix QEMU access for UEFI variable filesMartin Pitt2022-03-091-3/+7
* Include sys/wait.h instead of wait.hMartin Kletzander2022-03-071-1/+1
* lib: Use g_clear_pointer() moreMichal Privoznik2022-02-082-6/+3
* conf: Convert virDomainHostdevDefParseXMLSubsys() to virXMLProp*()Michal Privoznik2022-01-211-1/+1
* util: Check for errors in virLogSetFromEnvMartin Kletzander2022-01-051-1/+2
* security: apparmor: use automatic cleanup in load_profileJán Tomko2021-12-131-11/+4
* Switch away from virHashFreePeter Krempa2021-12-011-3/+3
* virSecurityLabelDef: Declare 'type' as 'virDomainSeclabelType'Peter Krempa2021-11-241-1/+2
* conf: Properly instantiate virDomainChrSourceDef in virDomainTPMDefPeter Krempa2021-11-192-6/+6
* conf: Convert 'chr' in virDomainShmemDef to proper pointerPeter Krempa2021-11-191-2/+2