Merge tag 'landlock_v34' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
Pull Landlock LSM from James Morris: "Add Landlock, a new LSM from Mickaël Salaün. Briefly, Landlock provides for unprivileged application sandboxing. From Mickaël's cover letter: "The goal of Landlock is to enable to restrict ambient rights (e.g. global filesystem access) for a set of processes. Because Landlock is a stackable LSM [1], it makes possible to create safe security sandboxes as new security layers in addition to the existing system-wide access-controls. This kind of sandbox is expected to help mitigate the security impact of bugs or unexpected/malicious behaviors in user-space applications. Landlock empowers any process, including unprivileged ones, to securely restrict themselves. Landlock is inspired by seccomp-bpf but instead of filtering syscalls and their raw arguments, a Landlock rule can restrict the use of kernel objects like file hierarchies, according to the kernel semantic. Landlock also takes inspiration from other OS sandbox mechanisms: XNU Sandbox, FreeBSD Capsicum or OpenBSD Pledge/Unveil. In this current form, Landlock misses some access-control features. This enables to minimize this patch series and ease review. This series still addresses multiple use cases, especially with the combined use of seccomp-bpf: applications with built-in sandboxing, init systems, security sandbox tools and security-oriented APIs [2]" The cover letter and v34 posting is here: https://lore.kernel.org/linux-security-module/20210422154123.13086-1-mic@digikod.net/ See also: https://landlock.io/ This code has had extensive design discussion and review over several years" Link: https://lore.kernel.org/lkml/50db058a-7dde-441b-a7f9-f6837fe8b69f@schaufler-ca.com/ [1] Link: https://lore.kernel.org/lkml/f646e1c7-33cf-333f-070c-0a40ad0468cd@digikod.net/ [2] * tag 'landlock_v34' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security: landlock: Enable user space to infer supported features landlock: Add user and kernel documentation samples/landlock: Add a sandbox manager example selftests/landlock: Add user space tests landlock: Add syscall implementations arch: Wire up Landlock syscalls fs,security: Add sb_delete hook landlock: Support filesystem access-control LSM: Infrastructure management of the superblock landlock: Add ptrace restrictions landlock: Set up the security framework and manage credentials landlock: Add ruleset and domain management landlock: Add object management
No related branches found
No related tags found
Showing
- Documentation/security/index.rst 1 addition, 0 deletionsDocumentation/security/index.rst
- Documentation/security/landlock.rst 85 additions, 0 deletionsDocumentation/security/landlock.rst
- Documentation/userspace-api/index.rst 1 addition, 0 deletionsDocumentation/userspace-api/index.rst
- Documentation/userspace-api/landlock.rst 311 additions, 0 deletionsDocumentation/userspace-api/landlock.rst
- MAINTAINERS 15 additions, 0 deletionsMAINTAINERS
- arch/Kconfig 7 additions, 0 deletionsarch/Kconfig
- arch/alpha/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/alpha/kernel/syscalls/syscall.tbl
- arch/arm/tools/syscall.tbl 3 additions, 0 deletionsarch/arm/tools/syscall.tbl
- arch/arm64/include/asm/unistd.h 1 addition, 1 deletionarch/arm64/include/asm/unistd.h
- arch/arm64/include/asm/unistd32.h 6 additions, 0 deletionsarch/arm64/include/asm/unistd32.h
- arch/ia64/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/ia64/kernel/syscalls/syscall.tbl
- arch/m68k/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/m68k/kernel/syscalls/syscall.tbl
- arch/microblaze/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/microblaze/kernel/syscalls/syscall.tbl
- arch/mips/kernel/syscalls/syscall_n32.tbl 3 additions, 0 deletionsarch/mips/kernel/syscalls/syscall_n32.tbl
- arch/mips/kernel/syscalls/syscall_n64.tbl 3 additions, 0 deletionsarch/mips/kernel/syscalls/syscall_n64.tbl
- arch/mips/kernel/syscalls/syscall_o32.tbl 3 additions, 0 deletionsarch/mips/kernel/syscalls/syscall_o32.tbl
- arch/parisc/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/parisc/kernel/syscalls/syscall.tbl
- arch/powerpc/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/powerpc/kernel/syscalls/syscall.tbl
- arch/s390/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/s390/kernel/syscalls/syscall.tbl
- arch/sh/kernel/syscalls/syscall.tbl 3 additions, 0 deletionsarch/sh/kernel/syscalls/syscall.tbl
Loading
Please register or sign in to comment