Lines Matching +full:srp +full:- +full:capable

1 // SPDX-License-Identifier: GPL-2.0-only
3 * Copyright (C) 2007 Casey Schaufler <casey@schaufler-ca.com>
6 * Casey Schaufler <casey@schaufler-ca.com>
38 SMK_CIPSO = 4, /* load label -> CIPSO mapping */
43 SMK_ONLYCAP = 9, /* the only "capable" label */
51 SMK_CIPSO2 = 17, /* load long label -> CIPSO mapping */
52 SMK_REVOKE_SUBJ = 18, /* set rules with subject label to '-' */
99 * debugging and application bring-up purposes only.
162 #define SMK_OACCESSLEN (sizeof(SMK_OACCESS) - 1)
163 #define SMK_ACCESSLEN (sizeof(SMK_ACCESS) - 1)
176 catsetp[(cat - 1) / 8] |= 0x80 >> ((cat - 1) % 8); in smack_catset_bit()
180 * smk_netlabel_audit_set - fill a netlbl_audit struct
187 nap->loginuid = audit_get_loginuid(current); in smk_netlabel_audit_set()
188 nap->sessionid = audit_get_sessionid(current); in smk_netlabel_audit_set()
189 nap->secid = skp->smk_secid; in smk_netlabel_audit_set()
199 * smk_set_access - add a rule to the rule list or replace an old rule
200 * @srp: the rule to add or replace
209 * Returns 0 if nothing goes wrong or -ENOMEM if it fails
212 static int smk_set_access(struct smack_parsed_rule *srp, in smk_set_access() argument
227 if (sp->smk_object == srp->smk_object && in smk_set_access()
228 sp->smk_subject == srp->smk_subject) { in smk_set_access()
230 sp->smk_access |= srp->smk_access1; in smk_set_access()
231 sp->smk_access &= ~srp->smk_access2; in smk_set_access()
239 rc = -ENOMEM; in smk_set_access()
243 sp->smk_subject = srp->smk_subject; in smk_set_access()
244 sp->smk_object = srp->smk_object; in smk_set_access()
245 sp->smk_access = srp->smk_access1 & ~srp->smk_access2; in smk_set_access()
247 list_add_rcu(&sp->list, rule_list); in smk_set_access()
256 * smk_perm_from_str - parse smack accesses from a text string
268 case '-': in smk_perm_from_str()
304 * smk_fill_rule - Fill Smack rule from strings
310 * @import: if non-zero, import labels
324 rule->smk_subject = smk_import_entry(subject, len); in smk_fill_rule()
325 if (IS_ERR(rule->smk_subject)) in smk_fill_rule()
326 return PTR_ERR(rule->smk_subject); in smk_fill_rule()
328 rule->smk_object = smk_import_entry(object, len); in smk_fill_rule()
329 if (IS_ERR(rule->smk_object)) in smk_fill_rule()
330 return PTR_ERR(rule->smk_object); in smk_fill_rule()
338 return -ENOENT; in smk_fill_rule()
339 rule->smk_subject = skp; in smk_fill_rule()
347 return -ENOENT; in smk_fill_rule()
348 rule->smk_object = skp; in smk_fill_rule()
351 rule->smk_access1 = smk_perm_from_str(access1); in smk_fill_rule()
353 rule->smk_access2 = smk_perm_from_str(access2); in smk_fill_rule()
355 rule->smk_access2 = ~rule->smk_access1; in smk_fill_rule()
361 * smk_parse_rule - parse Smack rule from load string
364 * @import: if non-zero, import labels
366 * Returns 0 on success, -1 on errors.
380 * smk_parse_long_rule - parse Smack rule from rule string
383 * @import: if non-zero, import labels
386 * Returns number of processed bytes on success, -ERRNO on failure.
397 * Parsing the rule in-place, filling all white-spaces with '\0' in smk_parse_long_rule()
405 return -EINVAL; in smk_parse_long_rule()
426 * smk_write_rules_list - write() for any /smack rule file
430 * @ppos: where to start - must be 0
433 * @format: /smack/load or /smack/load2 or /smack/change-rule format.
461 return -EINVAL; in smk_write_rules_list()
468 return -EINVAL; in smk_write_rules_list()
471 count = PAGE_SIZE - 1; in smk_write_rules_list()
485 while (count > 0 && (data[count - 1] != '\n')) in smk_write_rules_list()
486 --count; in smk_write_rules_list()
488 rc = -EINVAL; in smk_write_rules_list()
506 rc = -EINVAL; in smk_write_rules_list()
513 rc = smk_set_access(&rule, &rule.smk_subject->smk_rules, in smk_write_rules_list()
514 &rule.smk_subject->smk_rules_lock); in smk_write_rules_list()
542 if (i-- == 0) in smk_seq_start()
565 static void smk_rule_show(struct seq_file *s, struct smack_rule *srp, int max) in smk_rule_show() argument
573 if (strlen(srp->smk_subject->smk_known) >= max || in smk_rule_show()
574 strlen(srp->smk_object->smk_known) >= max) in smk_rule_show()
577 if (srp->smk_access == 0) in smk_rule_show()
581 srp->smk_subject->smk_known, in smk_rule_show()
582 srp->smk_object->smk_known); in smk_rule_show()
586 if (srp->smk_access & MAY_READ) in smk_rule_show()
588 if (srp->smk_access & MAY_WRITE) in smk_rule_show()
590 if (srp->smk_access & MAY_EXEC) in smk_rule_show()
592 if (srp->smk_access & MAY_APPEND) in smk_rule_show()
594 if (srp->smk_access & MAY_TRANSMUTE) in smk_rule_show()
596 if (srp->smk_access & MAY_LOCK) in smk_rule_show()
598 if (srp->smk_access & MAY_BRINGUP) in smk_rule_show()
621 struct smack_rule *srp; in load_seq_show() local
625 list_for_each_entry_rcu(srp, &skp->smk_rules, list) in load_seq_show()
626 smk_rule_show(s, srp, SMK_LABELLEN); in load_seq_show()
639 * smk_open_load - open() for /smack/load
651 * smk_write_load - write() for /smack/load
655 * @ppos: where to start - must be 0
667 return -EPERM; in smk_write_load()
682 * smk_cipso_doi - initialize the CIPSO domain
698 doip->map.std = NULL; in smk_cipso_doi()
699 doip->doi = smk_cipso_doi_value; in smk_cipso_doi()
700 doip->type = CIPSO_V4_MAP_PASS; in smk_cipso_doi()
701 doip->tags[0] = CIPSO_V4_TAG_RBITMAP; in smk_cipso_doi()
703 doip->tags[rc] = CIPSO_V4_TAG_INVALID; in smk_cipso_doi()
712 rc = netlbl_cfg_cipsov4_map_add(doip->doi, NULL, NULL, NULL, &nai); in smk_cipso_doi()
716 netlbl_cfg_cipsov4_del(doip->doi, &nai); in smk_cipso_doi()
722 * smk_unlbl_ambient - initialize the unlabeled domain
741 rc = netlbl_cfg_unlbl_map_add(smack_net_ambient->smk_known, PF_INET, in smk_unlbl_ambient()
771 struct netlbl_lsm_catmap *cmp = skp->smk_netlabel.attr.mls.cat; in cipso_seq_show()
783 if (strlen(skp->smk_known) >= SMK_LABELLEN) in cipso_seq_show()
786 seq_printf(s, "%s %3d", skp->smk_known, skp->smk_netlabel.attr.mls.lvl); in cipso_seq_show()
807 * smk_open_cipso - open() for /smack/cipso
820 * smk_set_cipso - do the work for write() for cipso and cipso2
840 ssize_t rc = -EINVAL; in smk_set_cipso()
852 return -EPERM; in smk_set_cipso()
854 return -EINVAL; in smk_set_cipso()
857 return -EINVAL; in smk_set_cipso()
859 return -EINVAL; in smk_set_cipso()
881 rule += strlen(skp->smk_known) + 1; in smk_set_cipso()
884 rc = -EOVERFLOW; in smk_set_cipso()
894 rc = -EOVERFLOW; in smk_set_cipso()
911 rc = -EOVERFLOW; in smk_set_cipso()
926 new_cat->next = ncats.attr.mls.cat; in smk_set_cipso()
928 skp->smk_netlabel.flags &= ~(1U << 3); in smk_set_cipso()
934 old_cat = skp->smk_netlabel.attr.mls.cat; in smk_set_cipso()
935 skp->smk_netlabel.attr.mls.cat = ncats.attr.mls.cat; in smk_set_cipso()
936 skp->smk_netlabel.attr.mls.lvl = ncats.attr.mls.lvl; in smk_set_cipso()
953 * smk_write_cipso - write() for /smack/cipso
989 struct netlbl_lsm_catmap *cmp = skp->smk_netlabel.attr.mls.cat; in cipso2_seq_show()
993 seq_printf(s, "%s %3d", skp->smk_known, skp->smk_netlabel.attr.mls.lvl); in cipso2_seq_show()
1014 * smk_open_cipso2 - open() for /smack/cipso2
1027 * smk_write_cipso2 - write() for /smack/cipso2
1074 if (skp->smk_label != NULL) in net4addr_seq_show()
1075 kp = skp->smk_label->smk_known; in net4addr_seq_show()
1076 seq_printf(s, "%pI4/%d %s\n", &skp->smk_host.s_addr, in net4addr_seq_show()
1077 skp->smk_masks, kp); in net4addr_seq_show()
1090 * smk_open_net4addr - open() for /smack/netlabel
1117 list_add_rcu(&new->list, &smk_net4addr_list); in smk_net4addr_insert()
1125 if (new->smk_masks > m->smk_masks) { in smk_net4addr_insert()
1126 list_add_rcu(&new->list, &smk_net4addr_list); in smk_net4addr_insert()
1131 if (list_is_last(&m->list, &smk_net4addr_list)) { in smk_net4addr_insert()
1132 list_add_rcu(&new->list, &m->list); in smk_net4addr_insert()
1135 m_next = list_entry_rcu(m->list.next, in smk_net4addr_insert()
1137 if (new->smk_masks > m_next->smk_masks) { in smk_net4addr_insert()
1138 list_add_rcu(&new->list, &m->list); in smk_net4addr_insert()
1146 * smk_write_net4addr - write() for /smack/netlabel
1182 return -EPERM; in smk_write_net4addr()
1184 return -EINVAL; in smk_write_net4addr()
1185 if (count < SMK_NETLBLADDRMIN || count > PAGE_SIZE - 1) in smk_write_net4addr()
1186 return -EINVAL; in smk_write_net4addr()
1194 rc = -ENOMEM; in smk_write_net4addr()
1204 rc = -EINVAL; in smk_write_net4addr()
1210 rc = -EINVAL; in smk_write_net4addr()
1215 * If smack begins with '-', it is an option, don't import it in smk_write_net4addr()
1217 if (smack[0] != '-') { in smk_write_net4addr()
1225 * Only the -CIPSO option is supported for IPv4 in smk_write_net4addr()
1228 rc = -EINVAL; in smk_write_net4addr()
1233 for (m = masks, temp_mask = 0; m > 0; m--) { in smk_write_net4addr()
1250 if (snp->smk_host.s_addr == nsa && snp->smk_masks == masks) { in smk_write_net4addr()
1260 rc = -ENOMEM; in smk_write_net4addr()
1263 snp->smk_host.s_addr = newname.sin_addr.s_addr; in smk_write_net4addr()
1264 snp->smk_mask.s_addr = mask.s_addr; in smk_write_net4addr()
1265 snp->smk_label = skp; in smk_write_net4addr()
1266 snp->smk_masks = masks; in smk_write_net4addr()
1274 if (snp->smk_label != NULL) in smk_write_net4addr()
1276 &snp->smk_host, &snp->smk_mask, in smk_write_net4addr()
1280 snp->smk_label = skp; in smk_write_net4addr()
1290 &snp->smk_host, &snp->smk_mask, PF_INET, in smk_write_net4addr()
1291 snp->smk_label->smk_secid, &audit_info); in smk_write_net4addr()
1338 if (skp->smk_label != NULL) in net6addr_seq_show()
1339 seq_printf(s, "%pI6/%d %s\n", &skp->smk_host, skp->smk_masks, in net6addr_seq_show()
1340 skp->smk_label->smk_known); in net6addr_seq_show()
1353 * smk_open_net6addr - open() for /smack/netlabel
1380 list_add_rcu(&new->list, &smk_net6addr_list); in smk_net6addr_insert()
1387 if (new->smk_masks > m->smk_masks) { in smk_net6addr_insert()
1388 list_add_rcu(&new->list, &smk_net6addr_list); in smk_net6addr_insert()
1393 if (list_is_last(&m->list, &smk_net6addr_list)) { in smk_net6addr_insert()
1394 list_add_rcu(&new->list, &m->list); in smk_net6addr_insert()
1397 m_next = list_entry_rcu(m->list.next, in smk_net6addr_insert()
1399 if (new->smk_masks > m_next->smk_masks) { in smk_net6addr_insert()
1400 list_add_rcu(&new->list, &m->list); in smk_net6addr_insert()
1408 * smk_write_net6addr - write() for /smack/netlabel
1441 return -EPERM; in smk_write_net6addr()
1443 return -EINVAL; in smk_write_net6addr()
1444 if (count < SMK_NETLBLADDRMIN || count > PAGE_SIZE - 1) in smk_write_net6addr()
1445 return -EINVAL; in smk_write_net6addr()
1453 rc = -ENOMEM; in smk_write_net6addr()
1467 rc = -EINVAL; in smk_write_net6addr()
1472 rc = -EINVAL; in smk_write_net6addr()
1477 rc = -EINVAL; in smk_write_net6addr()
1484 * If smack begins with '-', it is an option, don't import it in smk_write_net6addr()
1486 if (smack[0] != '-') { in smk_write_net6addr()
1494 * Only -DELETE is supported for IPv6 in smk_write_net6addr()
1497 rc = -EINVAL; in smk_write_net6addr()
1505 m -= 16; in smk_write_net6addr()
1507 fullmask.s6_addr16[i] = (1 << m) - 1; in smk_write_net6addr()
1523 if (mask != snp->smk_masks) in smk_write_net6addr()
1527 snp->smk_host.s6_addr16[i]) { in smk_write_net6addr()
1538 rc = -ENOMEM; in smk_write_net6addr()
1540 snp->smk_host = newname; in smk_write_net6addr()
1541 snp->smk_mask = fullmask; in smk_write_net6addr()
1542 snp->smk_masks = mask; in smk_write_net6addr()
1543 snp->smk_label = skp; in smk_write_net6addr()
1547 snp->smk_label = skp; in smk_write_net6addr()
1573 * smk_read_doi - read() for /smack/doi
1597 * smk_write_doi - write() for /smack/doi
1612 return -EPERM; in smk_write_doi()
1615 return -EINVAL; in smk_write_doi()
1618 return -EFAULT; in smk_write_doi()
1623 return -EINVAL; in smk_write_doi()
1639 * smk_read_direct - read() for /smack/direct
1663 * smk_write_direct - write() for /smack/direct
1679 return -EPERM; in smk_write_direct()
1682 return -EINVAL; in smk_write_direct()
1685 return -EFAULT; in smk_write_direct()
1690 return -EINVAL; in smk_write_direct()
1700 if (skp->smk_netlabel.attr.mls.lvl == in smk_write_direct()
1702 skp->smk_netlabel.attr.mls.lvl = i; in smk_write_direct()
1717 * smk_read_mapped - read() for /smack/mapped
1741 * smk_write_mapped - write() for /smack/mapped
1757 return -EPERM; in smk_write_mapped()
1760 return -EINVAL; in smk_write_mapped()
1763 return -EFAULT; in smk_write_mapped()
1768 return -EINVAL; in smk_write_mapped()
1778 if (skp->smk_netlabel.attr.mls.lvl == in smk_write_mapped()
1780 skp->smk_netlabel.attr.mls.lvl = i; in smk_write_mapped()
1795 * smk_read_ambient - read() for /smack/ambient
1817 asize = strlen(smack_net_ambient->smk_known) + 1; in smk_read_ambient()
1821 smack_net_ambient->smk_known, in smk_read_ambient()
1824 rc = -EINVAL; in smk_read_ambient()
1832 * smk_write_ambient - write() for /smack/ambient
1849 return -EPERM; in smk_write_ambient()
1853 return -EINVAL; in smk_write_ambient()
1867 oldambient = smack_net_ambient->smk_known; in smk_write_ambient()
1903 seq_puts(s, sklep->smk_label->smk_known); in onlycap_seq_show()
1922 * smk_list_swap_rcu - swap public list with a private one in RCU-safe way
1939 first = public->next; in smk_list_swap_rcu()
1940 last = public->prev; in smk_list_swap_rcu()
1942 /* Publish private list in place of public in RCU-safe way */ in smk_list_swap_rcu()
1943 private->prev->next = public; in smk_list_swap_rcu()
1944 private->next->prev = public; in smk_list_swap_rcu()
1945 rcu_assign_pointer(public->next, private->next); in smk_list_swap_rcu()
1946 public->prev = private->prev; in smk_list_swap_rcu()
1952 private->next = first; in smk_list_swap_rcu()
1953 private->prev = last; in smk_list_swap_rcu()
1954 first->prev = private; in smk_list_swap_rcu()
1955 last->next = private; in smk_list_swap_rcu()
1960 * smk_parse_label_list - parse list of Smack labels, separated by spaces
1983 return -ENOMEM; in smk_parse_label_list()
1985 sklep->smk_label = skp; in smk_parse_label_list()
1986 list_add(&sklep->list, list); in smk_parse_label_list()
1993 * smk_destroy_label_list - destroy a list of smack_known_list_elem
2008 * smk_write_onlycap - write() for smackfs/onlycap
2024 return -EPERM; in smk_write_onlycap()
2027 return -EINVAL; in smk_write_onlycap()
2040 * Importing will also reject a label beginning with '-', in smk_write_onlycap()
2041 * so "-usecapabilities" will also work. in smk_write_onlycap()
2046 if (!rc || (rc == -EINVAL && list_empty(&list_tmp))) { in smk_write_onlycap()
2068 * smk_read_unconfined - read() for smackfs/unconfined
2080 ssize_t rc = -EINVAL; in smk_read_unconfined()
2087 smack = smack_unconfined->smk_known; in smk_read_unconfined()
2098 * smk_write_unconfined - write() for smackfs/unconfined
2114 return -EPERM; in smk_write_unconfined()
2117 return -EINVAL; in smk_write_unconfined()
2127 * Importing will also reject a label beginning with '-', in smk_write_unconfined()
2128 * so "-confine" will also work. in smk_write_unconfined()
2133 if (PTR_ERR(skp) == -EINVAL) in smk_write_unconfined()
2155 * smk_read_logging - read() for /smack/logging
2178 * smk_write_logging - write() for /smack/logging
2193 return -EPERM; in smk_write_logging()
2196 return -EINVAL; in smk_write_logging()
2199 return -EFAULT; in smk_write_logging()
2204 return -EINVAL; in smk_write_logging()
2206 return -EINVAL; in smk_write_logging()
2220 * Seq_file read operations for /smack/load-self
2227 return smk_seq_start(s, pos, &tsp->smk_rules); in load_self_seq_start()
2234 return smk_seq_next(s, v, pos, &tsp->smk_rules); in load_self_seq_next()
2240 struct smack_rule *srp = in load_self_seq_show() local
2243 smk_rule_show(s, srp, SMK_LABELLEN); in load_self_seq_show()
2257 * smk_open_load_self - open() for /smack/load-self2
2269 * smk_write_load_self - write() for /smack/load-self
2273 * @ppos: where to start - must be 0
2281 return smk_write_rules_list(file, buf, count, ppos, &tsp->smk_rules, in smk_write_load_self()
2282 &tsp->smk_rules_lock, SMK_FIXED24_FMT); in smk_write_load_self()
2294 * smk_user_access - handle access check transaction
2298 * @ppos: where to start - must be 0
2299 * @format: /smack/load or /smack/load2 or /smack/change-rule format.
2314 return -EINVAL; in smk_user_access()
2318 * simple_transaction_get() returns null-terminated data in smk_user_access()
2326 else if (res != -ENOENT) in smk_user_access()
2343 * smk_write_access - handle access check transaction
2347 * @ppos: where to start - must be 0
2370 struct smack_rule *srp; in load2_seq_show() local
2374 list_for_each_entry_rcu(srp, &skp->smk_rules, list) in load2_seq_show()
2375 smk_rule_show(s, srp, SMK_LONGLABEL); in load2_seq_show()
2388 * smk_open_load2 - open() for /smack/load2
2400 * smk_write_load2 - write() for /smack/load2
2404 * @ppos: where to start - must be 0
2414 return -EPERM; in smk_write_load2()
2429 * Seq_file read operations for /smack/load-self2
2436 return smk_seq_start(s, pos, &tsp->smk_rules); in load_self2_seq_start()
2443 return smk_seq_next(s, v, pos, &tsp->smk_rules); in load_self2_seq_next()
2449 struct smack_rule *srp = in load_self2_seq_show() local
2452 smk_rule_show(s, srp, SMK_LONGLABEL); in load_self2_seq_show()
2465 * smk_open_load_self2 - open() for /smack/load-self2
2477 * smk_write_load_self2 - write() for /smack/load-self2
2481 * @ppos: where to start - must be 0
2489 return smk_write_rules_list(file, buf, count, ppos, &tsp->smk_rules, in smk_write_load_self2()
2490 &tsp->smk_rules_lock, SMK_LONG_FMT); in smk_write_load_self2()
2502 * smk_write_access2 - handle access check transaction
2506 * @ppos: where to start - must be 0
2522 * smk_write_revoke_subj - write() for /smack/revoke-subject
2526 * @ppos: where to start - must be 0
2540 return -EINVAL; in smk_write_revoke_subj()
2543 return -EPERM; in smk_write_revoke_subj()
2546 return -EINVAL; in smk_write_revoke_subj()
2562 rule_list = &skp->smk_rules; in smk_write_revoke_subj()
2563 rule_lock = &skp->smk_rules_lock; in smk_write_revoke_subj()
2568 sp->smk_access = 0; in smk_write_revoke_subj()
2588 * smk_init_sysfs - initialize /sys/fs/smackfs
2597 * smk_write_change_rule - write() for /smack/change-rule
2601 * @ppos: where to start - must be 0
2610 return -EPERM; in smk_write_change_rule()
2624 * smk_read_syslog - read() for smackfs/syslog
2636 ssize_t rc = -EINVAL; in smk_read_syslog()
2647 asize = strlen(skp->smk_known) + 1; in smk_read_syslog()
2650 rc = simple_read_from_buffer(buf, cn, ppos, skp->smk_known, in smk_read_syslog()
2657 * smk_write_syslog - write() for smackfs/syslog
2673 return -EPERM; in smk_write_syslog()
2677 return -EINVAL; in smk_write_syslog()
2700 * Seq_file read operations for /smack/relabel-self
2707 return smk_seq_start(s, pos, &tsp->smk_relabel); in relabel_self_seq_start()
2714 return smk_seq_next(s, v, pos, &tsp->smk_relabel); in relabel_self_seq_next()
2723 seq_puts(s, sklep->smk_label->smk_known); in relabel_self_seq_show()
2737 * smk_open_relabel_self - open() for /smack/relabel-self
2739 * @file: "relabel-self" file pointer
2741 * Connect our relabel_self_seq_* operations with /smack/relabel-self
2750 * smk_write_relabel_self - write() for /smack/relabel-self
2754 * @ppos: where to start - must be 0
2768 return -EPERM; in smk_write_relabel_self()
2775 return -EINVAL; in smk_write_relabel_self()
2777 return -EINVAL; in smk_write_relabel_self()
2786 if (!rc || (rc == -EINVAL && list_empty(&list_tmp))) { in smk_write_relabel_self()
2792 rc = -ENOMEM; in smk_write_relabel_self()
2796 smk_destroy_label_list(&tsp->smk_relabel); in smk_write_relabel_self()
2797 list_splice(&list_tmp, &tsp->smk_relabel); in smk_write_relabel_self()
2815 * smk_read_ptrace - read() for /smack/ptrace
2838 * smk_write_ptrace - write() for /smack/ptrace
2842 * @ppos: where to start - must be 0
2851 return -EPERM; in smk_write_ptrace()
2854 return -EINVAL; in smk_write_ptrace()
2857 return -EFAULT; in smk_write_ptrace()
2862 return -EINVAL; in smk_write_ptrace()
2864 return -EINVAL; in smk_write_ptrace()
2877 * smk_fill_super - fill the smackfs superblock
2907 "load-self", &smk_load_self_ops, S_IRUGO|S_IWUGO}, in smk_fill_super()
2915 "load-self2", &smk_load_self2_ops, S_IRUGO|S_IWUGO}, in smk_fill_super()
2921 "revoke-subject", &smk_revoke_subj_ops, in smk_fill_super()
2924 "change-rule", &smk_change_rule_ops, S_IRUGO|S_IWUSR}, in smk_fill_super()
2938 "relabel-self", &smk_relabel_self_ops, in smk_fill_super()
2955 * smk_get_tree - get the smackfs superblock
2972 * smk_init_fs_context - Initialise a filesystem context for smackfs
2977 fc->ops = &smk_context_ops; in smk_init_fs_context()
2990 * init_smk_fs - get the smackfs superblock