summaryrefslogtreecommitdiffstats
path: root/debian/patches/features/all/lockdown
ModeNameSize
-rw-r--r--0001-Add-the-ability-to-lock-down-access-to-the-running-k.patch5367logstatsplain
-rw-r--r--0003-ima-require-secure_boot-rules-in-lockdown-mode.patch2832logstatsplain
-rw-r--r--0004-Enforce-module-signatures-if-the-kernel-is-locked-do.patch3252logstatsplain
-rw-r--r--0005-Restrict-dev-mem-kmem-port-when-the-kernel-is-locked.patch1357logstatsplain
-rw-r--r--0006-kexec-Disable-at-runtime-if-the-kernel-is-locked-dow.patch1554logstatsplain
-rw-r--r--0007-Copy-secure_boot-flag-in-boot-params-across-kexec-re.patch1517logstatsplain
-rw-r--r--0008-kexec_file-Restrict-at-runtime-if-the-kernel-is-lock.patch1538logstatsplain
-rw-r--r--0009-hibernate-Disable-when-the-kernel-is-locked-down.patch1164logstatsplain
-rw-r--r--0010-uswsusp-Disable-when-the-kernel-is-locked-down.patch1173logstatsplain
-rw-r--r--0011-PCI-Lock-down-BAR-access-when-the-kernel-is-locked-d.patch3485logstatsplain
-rw-r--r--0012-x86-Lock-down-IO-port-access-when-the-kernel-is-lock.patch1740logstatsplain
-rw-r--r--0013-x86-msr-Restrict-MSR-access-when-the-kernel-is-locke.patch1684logstatsplain
-rw-r--r--0014-asus-wmi-Restrict-debugfs-interface-when-the-kernel-.patch1918logstatsplain
-rw-r--r--0015-ACPI-Limit-access-to-custom_method-when-the-kernel-i.patch1262logstatsplain
-rw-r--r--0016-acpi-Ignore-acpi_rsdp-kernel-param-when-the-kernel-h.patch1204logstatsplain
-rw-r--r--0017-acpi-Disable-ACPI-table-override-if-the-kernel-is-lo.patch1498logstatsplain
-rw-r--r--0018-acpi-Disable-APEI-error-injection-if-the-kernel-is-l.patch1794logstatsplain
-rw-r--r--0020-Prohibit-PCMCIA-CIS-storage-when-the-kernel-is-locke.patch1032logstatsplain
-rw-r--r--0021-Lock-down-TIOCSSERIAL.patch1379logstatsplain
-rw-r--r--0022-Lock-down-module-params-that-specify-hardware-parame.patch2693logstatsplain
-rw-r--r--0023-x86-mmiotrace-Lock-down-the-testmmiotrace-module.patch1316logstatsplain
-rw-r--r--0024-debugfs-Disallow-use-of-debugfs-files-when-the-kerne.patch1811logstatsplain
-rw-r--r--0025-Lock-down-proc-kcore.patch879logstatsplain
-rw-r--r--0026-Lock-down-kprobes.patch1065logstatsplain
-rw-r--r--0027-bpf-Restrict-kernel-image-access-functions-when-the-.patch1515logstatsplain
-rw-r--r--0028-efi-Add-an-EFI_SECURE_BOOT-flag-to-indicate-secure-b.patch5294logstatsplain
-rw-r--r--0029-efi-Lock-down-the-kernel-if-booted-in-secure-boot-mo.patch2685logstatsplain
-rw-r--r--0032-efi-Restrict-efivar_ssdt_load-when-the-kernel-is-loc.patch1233logstatsplain
-rw-r--r--ACPI-configfs-Disallow-loading-ACPI-tables-when-lock.patch1624logstatsplain
-rw-r--r--arm64-add-kernel-config-option-to-lock-down-when.patch3530logstatsplain
-rw-r--r--enable-cold-boot-attack-mitigation.patch1718logstatsplain
-rw-r--r--lockdown-refer-to-debian-wiki-until-manual-page-exists.patch1275logstatsplain
-rw-r--r--mtd-disable-slram-and-phram-when-locked-down.patch1447logstatsplain