Lines Matching refs:iint

116 				     struct integrity_iint_cache *iint,  in ima_rdwr_violation_check()  argument
128 if (!iint) in ima_rdwr_violation_check()
129 iint = integrity_iint_find(inode); in ima_rdwr_violation_check()
131 if (iint && test_bit(IMA_MUST_MEASURE, in ima_rdwr_violation_check()
132 &iint->atomic_flags)) in ima_rdwr_violation_check()
137 set_bit(IMA_MUST_MEASURE, &iint->atomic_flags); in ima_rdwr_violation_check()
148 ima_add_violation(file, *pathname, iint, in ima_rdwr_violation_check()
151 ima_add_violation(file, *pathname, iint, in ima_rdwr_violation_check()
155 static void ima_check_last_writer(struct integrity_iint_cache *iint, in ima_check_last_writer() argument
164 mutex_lock(&iint->mutex); in ima_check_last_writer()
169 &iint->atomic_flags); in ima_check_last_writer()
170 if ((iint->flags & IMA_NEW_FILE) || in ima_check_last_writer()
175 stat.change_cookie != iint->version) { in ima_check_last_writer()
176 iint->flags &= ~(IMA_DONE_MASK | IMA_NEW_FILE); in ima_check_last_writer()
177 iint->measured_pcrs = 0; in ima_check_last_writer()
179 ima_update_xattr(iint, file); in ima_check_last_writer()
182 mutex_unlock(&iint->mutex); in ima_check_last_writer()
194 struct integrity_iint_cache *iint; in ima_file_free() local
199 iint = integrity_iint_find(inode); in ima_file_free()
200 if (!iint) in ima_file_free()
203 ima_check_last_writer(iint, inode, file); in ima_file_free()
211 struct integrity_iint_cache *iint = NULL; in process_measurement() local
250 iint = integrity_inode_get(inode); in process_measurement()
251 if (!iint) in process_measurement()
256 ima_rdwr_violation_check(file, iint, action & IMA_MEASURE, in process_measurement()
266 mutex_lock(&iint->mutex); in process_measurement()
268 if (test_and_clear_bit(IMA_CHANGE_ATTR, &iint->atomic_flags)) in process_measurement()
270 iint->flags &= ~(IMA_APPRAISE | IMA_APPRAISED | in process_measurement()
279 if (test_and_clear_bit(IMA_CHANGE_XATTR, &iint->atomic_flags) || in process_measurement()
283 iint->flags &= ~IMA_DONE_MASK; in process_measurement()
284 iint->measured_pcrs = 0; in process_measurement()
291 iint->flags |= action; in process_measurement()
293 action &= ~((iint->flags & (IMA_DONE_MASK ^ IMA_MEASURED)) >> 1); in process_measurement()
296 if ((action & IMA_MEASURE) && (iint->measured_pcrs & (0x1 << pcr))) in process_measurement()
301 !(test_bit(IMA_DIGSIG, &iint->atomic_flags))) { in process_measurement()
306 set_bit(IMA_DIGSIG, &iint->atomic_flags); in process_measurement()
307 iint->flags |= IMA_HASHED; in process_measurement()
309 set_bit(IMA_UPDATE_XATTR, &iint->atomic_flags); in process_measurement()
318 rc = ima_get_cache_status(iint, func); in process_measurement()
334 if (iint->flags & IMA_MODSIG_ALLOWED) { in process_measurement()
338 iint->flags & IMA_MEASURED) in process_measurement()
345 rc = ima_collect_measurement(iint, file, buf, size, hash_algo, modsig); in process_measurement()
353 ima_store_measurement(iint, file, pathname, in process_measurement()
357 rc = ima_check_blacklist(iint, modsig, pcr); in process_measurement()
360 rc = ima_appraise_measurement(func, iint, file, in process_measurement()
370 ima_audit_measurement(iint, pathname); in process_measurement()
372 if ((file->f_flags & O_DIRECT) && (iint->flags & IMA_PERMIT_DIRECTIO)) in process_measurement()
385 if ((mask & MAY_WRITE) && test_bit(IMA_DIGSIG, &iint->atomic_flags) && in process_measurement()
386 !(iint->flags & IMA_NEW_FILE)) in process_measurement()
388 mutex_unlock(&iint->mutex); in process_measurement()
398 set_bit(IMA_UPDATE_XATTR, &iint->atomic_flags); in process_measurement()
552 struct integrity_iint_cache *iint = NULL, tmp_iint; in __ima_inode_hash() local
556 iint = integrity_iint_find(inode); in __ima_inode_hash()
557 if (iint) in __ima_inode_hash()
558 mutex_lock(&iint->mutex); in __ima_inode_hash()
561 if ((!iint || !(iint->flags & IMA_COLLECTED)) && file) { in __ima_inode_hash()
562 if (iint) in __ima_inode_hash()
563 mutex_unlock(&iint->mutex); in __ima_inode_hash()
579 iint = &tmp_iint; in __ima_inode_hash()
580 mutex_lock(&iint->mutex); in __ima_inode_hash()
583 if (!iint) in __ima_inode_hash()
590 if (!iint->ima_hash || !(iint->flags & IMA_COLLECTED)) { in __ima_inode_hash()
591 mutex_unlock(&iint->mutex); in __ima_inode_hash()
598 copied_size = min_t(size_t, iint->ima_hash->length, buf_size); in __ima_inode_hash()
599 memcpy(buf, iint->ima_hash->digest, copied_size); in __ima_inode_hash()
601 hash_algo = iint->ima_hash->algo; in __ima_inode_hash()
602 mutex_unlock(&iint->mutex); in __ima_inode_hash()
604 if (iint == &tmp_iint) in __ima_inode_hash()
605 kfree(iint->ima_hash); in __ima_inode_hash()
675 struct integrity_iint_cache *iint; in ima_post_create_tmpfile() local
687 iint = integrity_inode_get(inode); in ima_post_create_tmpfile()
688 if (!iint) in ima_post_create_tmpfile()
692 set_bit(IMA_UPDATE_XATTR, &iint->atomic_flags); in ima_post_create_tmpfile()
693 iint->ima_file_status = INTEGRITY_PASS; in ima_post_create_tmpfile()
707 struct integrity_iint_cache *iint; in ima_post_path_mknod() local
720 iint = integrity_inode_get(inode); in ima_post_path_mknod()
721 if (!iint) in ima_post_path_mknod()
725 iint->flags |= IMA_NEW_FILE; in ima_post_path_mknod()
923 struct integrity_iint_cache iint = {}; in process_buffer_measurement() local
924 struct ima_event_data event_data = {.iint = &iint, in process_buffer_measurement()
968 iint.ima_hash = &hash.hdr; in process_buffer_measurement()
969 iint.ima_hash->algo = ima_hash_algo; in process_buffer_measurement()
970 iint.ima_hash->length = hash_digest_size[ima_hash_algo]; in process_buffer_measurement()
972 ret = ima_calc_buffer_hash(buf, size, iint.ima_hash); in process_buffer_measurement()
982 iint.ima_hash); in process_buffer_measurement()
993 memcpy(digest, iint.ima_hash->digest, digest_hash_len); in process_buffer_measurement()