index
:
linux
debian
progress-linux
upstream
debian 10 security: linux
Progress Linux
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
debian
/
patches
/
features
/
all
/
lockdown
Mode
Name
Size
-rw-r--r--
0001-Add-the-ability-to-lock-down-access-to-the-running-k.patch
5367
log
stats
plain
-rw-r--r--
0003-ima-require-secure_boot-rules-in-lockdown-mode.patch
2832
log
stats
plain
-rw-r--r--
0004-Enforce-module-signatures-if-the-kernel-is-locked-do.patch
3252
log
stats
plain
-rw-r--r--
0005-Restrict-dev-mem-kmem-port-when-the-kernel-is-locked.patch
1357
log
stats
plain
-rw-r--r--
0006-kexec-Disable-at-runtime-if-the-kernel-is-locked-dow.patch
1554
log
stats
plain
-rw-r--r--
0007-Copy-secure_boot-flag-in-boot-params-across-kexec-re.patch
1517
log
stats
plain
-rw-r--r--
0008-kexec_file-Restrict-at-runtime-if-the-kernel-is-lock.patch
1538
log
stats
plain
-rw-r--r--
0009-hibernate-Disable-when-the-kernel-is-locked-down.patch
1164
log
stats
plain
-rw-r--r--
0010-uswsusp-Disable-when-the-kernel-is-locked-down.patch
1173
log
stats
plain
-rw-r--r--
0011-PCI-Lock-down-BAR-access-when-the-kernel-is-locked-d.patch
3485
log
stats
plain
-rw-r--r--
0012-x86-Lock-down-IO-port-access-when-the-kernel-is-lock.patch
1740
log
stats
plain
-rw-r--r--
0013-x86-msr-Restrict-MSR-access-when-the-kernel-is-locke.patch
1684
log
stats
plain
-rw-r--r--
0014-asus-wmi-Restrict-debugfs-interface-when-the-kernel-.patch
1918
log
stats
plain
-rw-r--r--
0015-ACPI-Limit-access-to-custom_method-when-the-kernel-i.patch
1262
log
stats
plain
-rw-r--r--
0016-acpi-Ignore-acpi_rsdp-kernel-param-when-the-kernel-h.patch
1204
log
stats
plain
-rw-r--r--
0017-acpi-Disable-ACPI-table-override-if-the-kernel-is-lo.patch
1498
log
stats
plain
-rw-r--r--
0018-acpi-Disable-APEI-error-injection-if-the-kernel-is-l.patch
1794
log
stats
plain
-rw-r--r--
0020-Prohibit-PCMCIA-CIS-storage-when-the-kernel-is-locke.patch
1032
log
stats
plain
-rw-r--r--
0021-Lock-down-TIOCSSERIAL.patch
1379
log
stats
plain
-rw-r--r--
0022-Lock-down-module-params-that-specify-hardware-parame.patch
2693
log
stats
plain
-rw-r--r--
0023-x86-mmiotrace-Lock-down-the-testmmiotrace-module.patch
1316
log
stats
plain
-rw-r--r--
0024-debugfs-Disallow-use-of-debugfs-files-when-the-kerne.patch
1811
log
stats
plain
-rw-r--r--
0025-Lock-down-proc-kcore.patch
879
log
stats
plain
-rw-r--r--
0026-Lock-down-kprobes.patch
1065
log
stats
plain
-rw-r--r--
0027-bpf-Restrict-kernel-image-access-functions-when-the-.patch
1515
log
stats
plain
-rw-r--r--
0028-efi-Add-an-EFI_SECURE_BOOT-flag-to-indicate-secure-b.patch
5294
log
stats
plain
-rw-r--r--
0029-efi-Lock-down-the-kernel-if-booted-in-secure-boot-mo.patch
2685
log
stats
plain
-rw-r--r--
0032-efi-Restrict-efivar_ssdt_load-when-the-kernel-is-loc.patch
1233
log
stats
plain
-rw-r--r--
ACPI-configfs-Disallow-loading-ACPI-tables-when-lock.patch
1624
log
stats
plain
-rw-r--r--
arm64-add-kernel-config-option-to-lock-down-when.patch
3530
log
stats
plain
-rw-r--r--
enable-cold-boot-attack-mitigation.patch
1718
log
stats
plain
-rw-r--r--
lockdown-refer-to-debian-wiki-until-manual-page-exists.patch
1275
log
stats
plain
-rw-r--r--
mtd-disable-slram-and-phram-when-locked-down.patch
1447
log
stats
plain