Home
last modified time | relevance | path

Searched refs:aa_label (Results 1 – 25 of 32) sorted by relevance

12

/linux-5.19.10/security/apparmor/include/
Dlabel.h59 struct aa_label *aa_vec_find_or_create_label(struct aa_profile **vec, int len,
100 struct aa_label;
103 struct aa_label __rcu *label;
121 struct aa_label { struct
151 int aa_label_next_confined(struct aa_label *l, int i); argument
275 void aa_label_destroy(struct aa_label *label);
276 void aa_label_free(struct aa_label *label);
278 bool aa_label_init(struct aa_label *label, int size, gfp_t gfp);
279 struct aa_label *aa_label_alloc(int size, struct aa_proxy *proxy, gfp_t gfp);
281 bool aa_label_is_subset(struct aa_label *set, struct aa_label *sub);
[all …]
Dcred.h22 static inline struct aa_label *cred_label(const struct cred *cred) in cred_label()
24 struct aa_label **blob = cred->security + apparmor_blob_sizes.lbs_cred; in cred_label()
31 struct aa_label *label) in set_cred_label()
33 struct aa_label **blob = cred->security + apparmor_blob_sizes.lbs_cred; in set_cred_label()
47 static inline struct aa_label *aa_cred_raw_label(const struct cred *cred) in aa_cred_raw_label()
49 struct aa_label *label = cred_label(cred); in aa_cred_raw_label()
61 static inline struct aa_label *aa_get_newest_cred_label(const struct cred *cred) in aa_get_newest_cred_label()
74 static inline struct aa_label *__aa_task_raw_label(struct task_struct *task) in __aa_task_raw_label()
87 static inline struct aa_label *aa_current_raw_label(void) in aa_current_raw_label()
101 static inline struct aa_label *aa_get_current_label(void) in aa_get_current_label()
[all …]
Dmount.h28 int aa_remount(struct aa_label *label, const struct path *path,
31 int aa_bind_mount(struct aa_label *label, const struct path *path,
35 int aa_mount_change_type(struct aa_label *label, const struct path *path,
38 int aa_move_mount(struct aa_label *label, const struct path *path,
41 int aa_new_mount(struct aa_label *label, const char *dev_name,
45 int aa_umount(struct aa_label *label, struct vfsmount *mnt, int flags);
47 int aa_pivotroot(struct aa_label *label, const struct path *old_path,
Dtask.h26 struct aa_label *nnp;
27 struct aa_label *onexec;
28 struct aa_label *previous;
32 int aa_replace_current_label(struct aa_label *label);
33 int aa_set_current_onexec(struct aa_label *label, bool stack);
34 int aa_set_current_hat(struct aa_label *label, u64 token);
36 struct aa_label *aa_get_task_label(struct task_struct *task);
Dipc.h32 int aa_may_ptrace(struct aa_label *tracer, struct aa_label *tracee,
34 int aa_may_signal(struct aa_label *sender, struct aa_label *target, int sig);
Dsecid.h16 struct aa_label;
24 struct aa_label *aa_secid_to_label(u32 secid);
30 int aa_alloc_secid(struct aa_label *label, gfp_t gfp);
32 void aa_secid_update(u32 secid, struct aa_label *label);
Dpolicy.h162 struct aa_label label;
188 struct aa_profile *aa_fqlookupn_profile(struct aa_label *base,
192 ssize_t aa_replace_profiles(struct aa_ns *view, struct aa_label *label,
194 ssize_t aa_remove_profiles(struct aa_ns *view, struct aa_label *label,
304 bool aa_policy_view_capable(struct aa_label *label, struct aa_ns *ns);
305 bool aa_policy_admin_capable(struct aa_label *label, struct aa_ns *ns);
306 int aa_may_manage_policy(struct aa_label *label, struct aa_ns *ns,
Dfile.h43 struct aa_label __rcu *label;
54 static inline struct aa_file_ctx *aa_alloc_file_ctx(struct aa_label *label, in aa_alloc_file_ctx()
79 static inline struct aa_label *aa_get_file_label(struct aa_file_ctx *ctx) in aa_get_file_label()
161 const char *target, struct aa_label *tlabel, kuid_t ouid,
192 int aa_path_perm(const char *op, struct aa_label *label,
196 int aa_path_link(struct aa_label *label, struct dentry *old_dentry,
199 int aa_file_perm(const char *op, struct aa_label *label, struct file *file,
Dnet.h50 struct aa_label *label;
51 struct aa_label *peer;
94 int aa_af_perm(struct aa_label *label, const char *op, u32 request, u16 family,
106 int aa_sock_file_perm(struct aa_label *label, const char *op, u32 request,
109 int apparmor_secmark_check(struct aa_label *label, char *op, u32 request,
Dresource.h36 int aa_task_setrlimit(struct aa_label *label, struct task_struct *task,
39 void __aa_transition_rlimits(struct aa_label *old, struct aa_label *new);
Dcapability.h18 struct aa_label;
39 int aa_capable(struct aa_label *label, int cap, unsigned int opts);
Daudit.h111 struct aa_label *label;
119 struct aa_label *peer;
Dprocattr.h14 int aa_getprocattr(struct aa_label *label, char **string);
/linux-5.19.10/security/apparmor/
Dlabel.c48 RCU_INIT_POINTER(proxy->label, (struct aa_label *)PROXY_POISON); in free_proxy()
60 struct aa_proxy *aa_alloc_proxy(struct aa_label *label, gfp_t gfp) in aa_alloc_proxy()
73 void __aa_proxy_redirect(struct aa_label *orig, struct aa_label *new) in __aa_proxy_redirect()
75 struct aa_label *tmp; in __aa_proxy_redirect()
88 static void __proxy_share(struct aa_label *old, struct aa_label *new) in __proxy_share()
312 void aa_label_destroy(struct aa_label *label) in aa_label_destroy()
339 void aa_label_free(struct aa_label *label) in aa_label_free()
348 static void label_free_switch(struct aa_label *label) in label_free_switch()
360 struct aa_label *label = container_of(head, struct aa_label, rcu); in label_free_rcu()
369 struct aa_label *label = container_of(kref, struct aa_label, count); in aa_label_kref()
[all …]
Dtask.c24 struct aa_label *aa_get_task_label(struct task_struct *task) in aa_get_task_label()
26 struct aa_label *p; in aa_get_task_label()
41 int aa_replace_current_label(struct aa_label *label) in aa_replace_current_label()
43 struct aa_label *old = aa_current_raw_label(); in aa_replace_current_label()
60 struct aa_label *tmp = ctx->nnp; in aa_replace_current_label()
93 int aa_set_current_onexec(struct aa_label *label, bool stack) in aa_set_current_onexec()
115 int aa_set_current_hat(struct aa_label *label, u64 token) in aa_set_current_hat()
Dsecid.c46 void aa_secid_update(u32 secid, struct aa_label *label) in aa_secid_update()
59 struct aa_label *aa_secid_to_label(u32 secid) in aa_secid_to_label()
61 struct aa_label *label; in aa_secid_to_label()
73 struct aa_label *label = aa_secid_to_label(secid); in apparmor_secid_to_secctx()
100 struct aa_label *label; in apparmor_secctx_to_secid()
124 int aa_alloc_secid(struct aa_label *label, gfp_t gfp) in aa_alloc_secid()
Dipc.c64 struct aa_label *peer, u32 request, in profile_ptrace_perm()
77 struct aa_label *tracer, u32 request, in profile_tracee_perm()
88 struct aa_label *tracee, u32 request, in profile_tracer_perm()
118 int aa_may_ptrace(struct aa_label *tracer, struct aa_label *tracee, in aa_may_ptrace()
188 struct aa_label *peer, u32 request, in profile_signal_perm()
208 int aa_may_signal(struct aa_label *sender, struct aa_label *target, int sig) in aa_may_signal()
Ddomain.c60 static int may_change_ptraced_domain(struct aa_label *to_label, in may_change_ptraced_domain()
64 struct aa_label *tracerl = NULL; in may_change_ptraced_domain()
134 struct aa_label *label, bool stack, in label_compound_match()
194 struct aa_label *label, bool stack, in label_components_match()
254 static int label_match(struct aa_profile *profile, struct aa_label *label, in label_match()
288 struct aa_label *target, bool stack, in change_profile_perms()
387 static struct aa_label *find_attach(const struct linux_binprm *bprm, in find_attach()
510 struct aa_label *x_table_lookup(struct aa_profile *profile, u32 xindex, in x_table_lookup()
513 struct aa_label *label = NULL; in x_table_lookup()
556 static struct aa_label *x_to_label(struct aa_profile *profile, in x_to_label()
[all …]
Dfile.c94 const char *target, struct aa_label *tlabel, in aa_audit_file()
157 static int path_name(const char *op, struct aa_label *label, in path_name()
315 int aa_path_perm(const char *op, struct aa_label *label, in aa_path_perm()
457 int aa_path_link(struct aa_label *label, struct dentry *old_dentry, in aa_path_link()
486 static void update_file_ctx(struct aa_file_ctx *fctx, struct aa_label *label, in update_file_ctx()
489 struct aa_label *l, *old; in update_file_ctx()
507 static int __file_path_perm(const char *op, struct aa_label *label, in __file_path_perm()
508 struct aa_label *flabel, struct file *file, in __file_path_perm()
562 static int __file_sock_perm(const char *op, struct aa_label *label, in __file_sock_perm()
563 struct aa_label *flabel, struct file *file, in __file_sock_perm()
[all …]
Dresource.c53 unsigned long value, struct aa_label *peer, in audit_resource()
104 int aa_task_setrlimit(struct aa_label *label, struct task_struct *task, in aa_task_setrlimit()
108 struct aa_label *peer; in aa_task_setrlimit()
141 void __aa_transition_rlimits(struct aa_label *old_l, struct aa_label *new_l) in __aa_transition_rlimits()
Dnet.c134 int aa_af_perm(struct aa_label *label, const char *op, u32 request, u16 family, in aa_af_perm()
145 static int aa_label_sk_perm(struct aa_label *label, const char *op, u32 request, in aa_label_sk_perm()
166 struct aa_label *label; in aa_sk_perm()
181 int aa_sock_file_perm(struct aa_label *label, const char *op, u32 request, in aa_sock_file_perm()
194 struct aa_label *label; in apparmor_secmark_init()
246 int apparmor_secmark_check(struct aa_label *label, char *op, u32 request, in apparmor_secmark_check()
Dlsm.c118 struct aa_label *tracer, *tracee; in apparmor_ptrace_access_check()
134 struct aa_label *tracer, *tracee; in apparmor_ptrace_traceme()
150 struct aa_label *label; in apparmor_capget()
183 struct aa_label *label; in apparmor_capable()
206 struct aa_label *label; in common_perm()
342 struct aa_label *label; in apparmor_path_link()
360 struct aa_label *label; in apparmor_path_rename()
430 struct aa_label *label; in apparmor_file_open()
468 struct aa_label *label = begin_current_label_crit_section(); in apparmor_file_alloc_security()
487 struct aa_label *label; in common_file_perm()
[all …]
Dmount.c399 int aa_remount(struct aa_label *label, const struct path *path, in aa_remount()
423 int aa_bind_mount(struct aa_label *label, const struct path *path, in aa_bind_mount()
460 int aa_mount_change_type(struct aa_label *label, const struct path *path, in aa_mount_change_type()
485 int aa_move_mount(struct aa_label *label, const struct path *path, in aa_move_mount()
519 int aa_new_mount(struct aa_label *label, const char *dev_name, in aa_new_mount()
614 int aa_umount(struct aa_label *label, struct vfsmount *mnt, int flags) in aa_umount()
639 static struct aa_label *build_pivotroot(struct aa_profile *profile, in build_pivotroot()
691 int aa_pivotroot(struct aa_label *label, const struct path *old_path, in aa_pivotroot()
695 struct aa_label *target = NULL; in aa_pivotroot()
Dpolicy.c111 struct aa_label *l; in __add_profile()
456 struct aa_profile *aa_fqlookupn_profile(struct aa_label *base, in aa_fqlookupn_profile()
617 static int audit_policy(struct aa_label *label, const char *op, in audit_policy()
637 static int policy_ns_capable(struct aa_label *label, in policy_ns_capable()
659 bool aa_policy_view_capable(struct aa_label *label, struct aa_ns *ns) in aa_policy_view_capable()
678 bool aa_policy_admin_capable(struct aa_label *label, struct aa_ns *ns) in aa_policy_admin_capable()
692 struct aa_label *label; in aa_current_policy_view_capable()
704 struct aa_label *label; in aa_current_policy_admin_capable()
721 int aa_may_manage_policy(struct aa_label *label, struct aa_ns *ns, u32 mask) in aa_may_manage_policy()
897 ssize_t aa_replace_profiles(struct aa_ns *policy_ns, struct aa_label *label, in aa_replace_profiles()
[all …]
Daudit.c75 struct aa_label *label = aad(sa)->label; in audit_pre()
162 struct aa_label *label;
226 struct aa_label *label; in aa_audit_rule_match()

12