| Commit message (Expand) | Author | Age | Files | Lines |
* | Remove unused argument to priv_check_cred. | Mateusz Guzik | 2018-12-11 | 1 | -1/+1 |
* | Allow to specify PCP on packets not belonging to any VLAN. | Konstantin Belousov | 2018-03-27 | 1 | -1/+2 |
* | sys/sys: further adoption of SPDX licensing ID tags. | Pedro F. Giffuni | 2017-11-27 | 1 | -0/+2 |
* | Remove the support for mknod(S_IFMT), which created dummy vnodes with | Konstantin Belousov | 2017-10-22 | 1 | -1/+1 |
* | Add support to priority code point (PCP) that is an 3-bit field | Marcelo Araujo | 2016-06-06 | 1 | -0/+1 |
* | sys/sys: minor spelling fixes. | Pedro F. Giffuni | 2016-05-03 | 1 | -1/+1 |
* | Update comment to note the function, prison_priv_check(), that needs to | Kirk McKusick | 2016-01-21 | 1 | -2/+3 |
* | Add procctl(2) PROC_TRACE_CTL command to enable or disable debugger | Konstantin Belousov | 2015-01-18 | 1 | -0/+1 |
* | Add vxlan interface | Bryan Venteicher | 2014-10-20 | 1 | -0/+1 |
* | Several years after initial development, merge prototype support for | Robert Watson | 2014-03-15 | 1 | -0/+1 |
* | Add placeholders for IPX/SPX and AppleTalk priveledges, to avoid | Gleb Smirnoff | 2014-03-14 | 1 | -0/+11 |
* | Remove AppleTalk support. | Gleb Smirnoff | 2014-03-14 | 1 | -5/+0 |
* | Remove IPX support. | Gleb Smirnoff | 2014-03-14 | 1 | -6/+0 |
* | Fix typo. | Edward Tomasz Napierala | 2013-08-03 | 1 | -1/+2 |
* | Make the comments a little more clear about PRIV_KMEM_*, explicitly | Jamie Gritton | 2013-07-06 | 1 | -3/+3 |
* | Bump up _PRIV_HIGHEST to account for PRIV_KMEM_READ/WRITE. | Jamie Gritton | 2013-07-05 | 1 | -1/+1 |
* | Add new privileges, PRIV_KMEM_READ and PRIV_KMEM_WRITE, used in opening | Jamie Gritton | 2013-07-05 | 1 | -0/+6 |
* | Add infrastructure to allow all frames/packets received on an interface | Bjoern A. Zeeb | 2011-07-03 | 1 | -0/+1 |
* | Rename a misnamed structure field (hr_loginclass), and reorder priv(9) | Edward Tomasz Napierala | 2011-04-10 | 1 | -5/+5 |
* | Add rctl. It's used by racct to take user-configurable actions based | Edward Tomasz Napierala | 2011-03-30 | 1 | -1/+10 |
* | Add two new system calls, setloginclass(2) and getloginclass(2). This makes | Edward Tomasz Napierala | 2011-03-05 | 1 | -0/+1 |
* | Fix typo in comment. | Rui Paulo | 2010-07-20 | 1 | -1/+1 |
* | Revised revision 199201 (add interface description capability as inspired | Xin LI | 2010-01-27 | 1 | -0/+1 |
* | Revert revision 199201 for now as it has introduced a kernel vulnerability | Xin LI | 2009-11-12 | 1 | -1/+0 |
* | Add interface description capability as inspired by OpenBSD. | Xin LI | 2009-11-11 | 1 | -0/+1 |
* | Add two new privileges for use by OpenAFS, which will be supported for | Robert Watson | 2009-07-30 | 1 | -1/+7 |
* | Improve the handling of cpuset with interrupts. | John Baldwin | 2009-07-01 | 1 | -0/+1 |
* | Remove kernel SLIP and PPP privileges, since they are no longer used. | Robert Watson | 2009-06-24 | 1 | -2/+2 |
* | Implement global and per-uid accounting of the anonymous memory. Add | Konstantin Belousov | 2009-06-23 | 1 | -0/+8 |
* | Add placeholder to prevent reuse of privilege 254. | Ed Schouten | 2009-06-20 | 1 | -0/+1 |
* | Improve nested jail awareness of devfs by handling credentials. | Ed Schouten | 2009-06-20 | 1 | -1/+0 |
* | Manage vnets via the jail system. If a jail is given the boolean | Jamie Gritton | 2009-06-15 | 1 | -0/+1 |
* | Fix and add a workaround on an issue of EtherIP packet with reversed | Hiroki Sato | 2009-06-07 | 1 | -0/+1 |
* | - Rename IP_NONLOCALOK IP socket option to IP_BINDANY, to be more consistent | Pawel Jakub Dawidek | 2009-06-01 | 1 | -0/+1 |
* | Place hostnames and similar information fully under the prison system. | Jamie Gritton | 2009-05-29 | 1 | -1/+1 |
* | Add privileges for Capi4BSD to control: | Bjoern A. Zeeb | 2009-05-22 | 1 | -1/+7 |
* | Introduce the extensible jail framework, using the same "name=value" | Jamie Gritton | 2009-04-29 | 1 | -0/+2 |
* | Remove PRIV_ROOT -- all system privileges must now be explicitly named | Robert Watson | 2009-02-28 | 1 | -7/+2 |
* | Update ZFS from version 6 to 13 and bring some FreeBSD-specific changes. | Pawel Jakub Dawidek | 2008-11-17 | 1 | -1/+1 |
* | Per request, keep privilege number 20 reserved. | Ed Schouten | 2008-11-14 | 1 | -0/+1 |
* | Mark uname(), getdomainname() and setdomainname() with COMPAT_FREEBSD4. | Ed Schouten | 2008-11-09 | 1 | -1/+0 |
* | Remove the suser(9) interface from the kernel. It has been replaced from | Attilio Rao | 2008-09-17 | 1 | -6/+0 |
* | - Add cpuctl(4) pseudo-device driver to provide access to some low-level | Stanislav Sedov | 2008-08-08 | 1 | -1/+7 |
* | Add a new priv 'PRIV_SCHED_CPUSET' to check if manipulating cpusets is | Bjoern A. Zeeb | 2008-06-29 | 1 | -0/+1 |
* | Add privilege PRIV_NNPFS_DEBUG for use with Arla/nnpfs. This privilege | Robert Watson | 2008-02-15 | 1 | -1/+6 |
* | Replace the last susers calls in netinet6/ with privilege checks. | Bjoern A. Zeeb | 2008-01-24 | 1 | -0/+1 |
* | Add a new privilage category for DDB(4), and add PRIV_DDB_CAPTURE to | Robert Watson | 2007-12-25 | 1 | -1/+6 |
* | Add PRIV_VFS_STAT privilege, which will allow overriding policy limits on | Robert Watson | 2007-10-21 | 1 | -0/+1 |
* | Update comment: kernel privileges are, in fact sorted by subsytem. | Robert Watson | 2007-06-18 | 1 | -1/+1 |
* | Rather than passing SUSER_RUID into priv_check_cred() to specify when | Robert Watson | 2007-06-16 | 1 | -10/+4 |