1. 18 May, 2022 2 commits
  2. 03 Sep, 2021 1 commit
  3. 27 Jun, 2021 4 commits
  4. 05 Jun, 2021 1 commit
  5. 05 May, 2021 1 commit
    • Shawn Webb's avatar
      Bring in rename protection · a4049349
      Shawn Webb authored
      This is a modified version of the rename protection patches from Airbus.
      While importing and testing their patches, I discovered there were a few
      more places that needed the same fix applied for issue #1
      
      .
      Signed-off-by: Shawn Webb's avatarShawn Webb <shawn.webb@hardenedbsd.org>
      Submitted-by:	Airbus CyberSecurity SAS
      a4049349
  6. 04 May, 2021 1 commit
    • Shawn Webb's avatar
      Resolve kernel crash · 3622ed16
      Shawn Webb authored
      
      
      We need to force setting NAMEI_DBG_INITED because, being out-of-tree,
      we're not not able to check whether INVARIANTS is enabled. When
      INVARIANTS is enabled, the namei function performs a KASSERT on the
      debug flags being set.
      
      Ideally, this would be set by calling the NDBINIT_DBG macro, but that's
      gated by INVARIANTS.
      Signed-off-by: Shawn Webb's avatarShawn Webb <shawn.webb@hardenedbsd.org>
      Reported-by:	@loic
      issue:		#1
      3622ed16
  7. 30 Apr, 2021 2 commits
  8. 09 Apr, 2021 1 commit
    • Shawn Webb's avatar
      Fix SMAP violation · 730801e0
      Shawn Webb authored
      
      
      Under the right conditions, secadm may cause a kernel panic due to an
      SMAP violation:
      
      1. kldload secadm
      2. secadm add integriforce
      3. secadm show
      4. secadm flush
      5. secadm add integriforce
      6. secadm show <- panic here
      Signed-off-by: Shawn Webb's avatarShawn Webb <shawn.webb@hardenedbsd.org>
      Reported-by:	Airbus CyberSecurity SAS
      Submitted-by:	Airbus CyberSecurity SAS
      730801e0
  9. 21 Nov, 2020 2 commits
  10. 04 Jan, 2020 1 commit
  11. 03 Dec, 2018 1 commit
  12. 02 Oct, 2017 2 commits
  13. 14 Sep, 2017 2 commits
  14. 05 Sep, 2017 1 commit
  15. 30 Aug, 2017 1 commit
  16. 20 Jul, 2017 1 commit
  17. 09 Jul, 2017 1 commit
  18. 01 Dec, 2016 1 commit
  19. 14 Nov, 2016 1 commit
  20. 04 Nov, 2016 1 commit
  21. 21 Sep, 2016 4 commits
  22. 23 Aug, 2016 1 commit
  23. 11 Jun, 2016 1 commit
  24. 09 Jun, 2016 2 commits
  25. 11 Apr, 2016 2 commits
  26. 04 Apr, 2016 1 commit
    • Johannes Meixner's avatar
      Invert logic · 4987d9a4
      Johannes Meixner authored
      - add WITHOUT_KMOD variable for ports/hardenedbsd/secadm
      - add WITHOUT_CLI variable for ports/hardenedbsd/secadm-kmod
      4987d9a4
  27. 26 Mar, 2016 1 commit