forked from torvalds/linux
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Rename the se_str and se_rule audit fields elements to lsm_str and lsm_rule to avoid confusion. Signed-off-by: Casey Schaufler <[email protected]> Signed-off-by: Ahmed S. Darwish <[email protected]> Acked-by: James Morris <[email protected]>
- Loading branch information
Showing
4 changed files
with
93 additions
and
28 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,65 @@ | ||
/* | ||
* SELinux support for the Audit LSM hooks | ||
* | ||
* Most of below header was moved from include/linux/selinux.h which | ||
* is released under below copyrights: | ||
* | ||
* Author: James Morris <[email protected]> | ||
* | ||
* Copyright (C) 2005 Red Hat, Inc., James Morris <[email protected]> | ||
* Copyright (C) 2006 Trusted Computer Solutions, Inc. <[email protected]> | ||
* Copyright (C) 2006 IBM Corporation, Timothy R. Chavez <[email protected]> | ||
* | ||
* This program is free software; you can redistribute it and/or modify | ||
* it under the terms of the GNU General Public License version 2, | ||
* as published by the Free Software Foundation. | ||
*/ | ||
|
||
#ifndef _SELINUX_AUDIT_H | ||
#define _SELINUX_AUDIT_H | ||
|
||
/** | ||
* selinux_audit_rule_init - alloc/init an selinux audit rule structure. | ||
* @field: the field this rule refers to | ||
* @op: the operater the rule uses | ||
* @rulestr: the text "target" of the rule | ||
* @rule: pointer to the new rule structure returned via this | ||
* | ||
* Returns 0 if successful, -errno if not. On success, the rule structure | ||
* will be allocated internally. The caller must free this structure with | ||
* selinux_audit_rule_free() after use. | ||
*/ | ||
int selinux_audit_rule_init(u32 field, u32 op, char *rulestr, void **rule); | ||
|
||
/** | ||
* selinux_audit_rule_free - free an selinux audit rule structure. | ||
* @rule: pointer to the audit rule to be freed | ||
* | ||
* This will free all memory associated with the given rule. | ||
* If @rule is NULL, no operation is performed. | ||
*/ | ||
void selinux_audit_rule_free(void *rule); | ||
|
||
/** | ||
* selinux_audit_rule_match - determine if a context ID matches a rule. | ||
* @sid: the context ID to check | ||
* @field: the field this rule refers to | ||
* @op: the operater the rule uses | ||
* @rule: pointer to the audit rule to check against | ||
* @actx: the audit context (can be NULL) associated with the check | ||
* | ||
* Returns 1 if the context id matches the rule, 0 if it does not, and | ||
* -errno on failure. | ||
*/ | ||
int selinux_audit_rule_match(u32 sid, u32 field, u32 op, void *rule, | ||
struct audit_context *actx); | ||
|
||
/** | ||
* selinux_audit_rule_known - check to see if rule contains selinux fields. | ||
* @rule: rule to be checked | ||
* Returns 1 if there are selinux fields specified in the rule, 0 otherwise. | ||
*/ | ||
int selinux_audit_rule_known(struct audit_krule *krule); | ||
|
||
#endif /* _SELINUX_AUDIT_H */ | ||
|