Home
last modified time | relevance | path

Searched full:denied (Results 1 – 25 of 189) sorted by relevance

12345678

/Linux-v5.15/security/selinux/include/
Davc.h53 u32 denied; member
70 u32 denied, audited; in avc_audit_required() local
71 denied = requested & ~avd->allowed; in avc_audit_required()
72 if (unlikely(denied)) { in avc_audit_required()
73 audited = denied & avd->auditdeny; in avc_audit_required()
79 * actual permissions that were denied. As an example lets in avc_audit_required()
82 * denied == READ in avc_audit_required()
86 * We will NOT audit the denial even though the denied in avc_audit_required()
93 audited = denied = requested; in avc_audit_required()
96 *deniedp = denied; in avc_audit_required()
[all …]
/Linux-v5.15/include/trace/events/
Davc.h26 __field(u32, denied)
36 __entry->denied = sad->denied;
44 TP_printk("requested=0x%x denied=0x%x audited=0x%x result=%d scontext=%s tcontext=%s tclass=%s",
45 __entry->requested, __entry->denied, __entry->audited, __entry->result,
/Linux-v5.15/security/apparmor/
Dlib.c272 if (aad(sa)->denied) { in aa_audit_perms_cb()
274 aa_audit_perm_mask(ab, aad(sa)->denied, aa_file_perm_chrs, in aa_audit_perms_cb()
434 u32 denied = request & (~perms->allow | perms->deny); in aa_check_perms() local
436 if (likely(!denied)) { in aa_check_perms()
447 if (denied & perms->kill) in aa_check_perms()
449 else if (denied == (denied & perms->complain)) in aa_check_perms()
454 if (denied == (denied & perms->hide)) in aa_check_perms()
457 denied &= ~perms->quiet; in aa_check_perms()
458 if (!sa || !denied) in aa_check_perms()
465 aad(sa)->denied = denied; in aa_check_perms()
Dfile.c55 if (aad(sa)->denied & AA_AUDIT_FILE_MASK) { in file_audit_cb()
57 map_mask_to_chr_mask(aad(sa)->denied)); in file_audit_cb()
123 /* only report permissions that were denied */ in aa_audit_file()
140 aad(&sa)->denied = aad(&sa)->request & ~perms->allow; in aa_audit_file()
313 * Returns: %0 else error if access denied or other error
509 u32 request, u32 denied, bool in_atomic) in __file_path_perm() argument
521 if (!denied && aa_label_is_subset(flabel, label)) in __file_path_perm()
534 if (denied && !error) { in __file_path_perm()
564 u32 request, u32 denied) in __file_sock_perm() argument
572 if (!denied && aa_label_is_subset(flabel, label)) in __file_sock_perm()
[all …]
Dipc.c51 if (aad(sa)->denied & AA_PTRACE_PERM_MASK) { in audit_ptrace_cb()
53 audit_ptrace_mask(aad(sa)->denied)); in audit_ptrace_cb()
116 * Returns: %0 else error code if permission denied or error
169 if (aad(sa)->denied & AA_SIGNAL_PERM_MASK) { in audit_signal_cb()
171 audit_signal_mask(aad(sa)->denied)); in audit_signal_cb()
Dnet.c94 if (aad(sa)->denied & NET_PERMS_MASK) { in audit_net_cb()
96 aa_audit_perm_mask(ab, aad(sa)->denied, NULL, 0, in audit_net_cb()
/Linux-v5.15/security/selinux/
Davc.c394 u32 denied, audited; in avc_xperms_audit_required() local
396 denied = requested & ~avd->allowed; in avc_xperms_audit_required()
397 if (unlikely(denied)) { in avc_xperms_audit_required()
398 audited = denied & avd->auditdeny; in avc_xperms_audit_required()
404 audited = denied = requested; in avc_xperms_audit_required()
413 *deniedp = denied; in avc_xperms_audit_required()
424 u32 audited, denied; in avc_xperms_audit() local
427 requested, avd, xpd, perm, result, &denied); in avc_xperms_audit()
431 audited, denied, result, ad); in avc_xperms_audit()
672 audit_log_format(ab, "avc: %s ", sad->denied ? "denied" : "granted"); in avc_audit_pre_callback()
[all …]
/Linux-v5.15/Documentation/ABI/stable/
Dsysfs-hypervisor-xen7 Might return "<denied>" in case of special security settings
16 Might return "<denied>" in case of special security settings
25 Might return "<denied>" in case of special security settings
56 Might return "<denied>" in case of special security settings
105 Might return "<denied>" in case of special security settings
/Linux-v5.15/security/apparmor/include/
Dcapability.h23 * @denied: caps that are explicitly denied
31 kernel_cap_t denied; member
Daudit.h27 AUDIT_QUIET_DENIED, /* quiet all denied access messages */
115 u32 denied; member
/Linux-v5.15/Documentation/admin-guide/cgroup-v1/
Ddevices.rst19 never receive a device access which is denied by its parent.
77 If a device is denied in group A::
84 group whitelist entries denied devices
97 group whitelist entries denied devices
107 group whitelist entries denied devices
/Linux-v5.15/security/landlock/
Dptrace.c83 * the same rules. Else denied.
86 * granted, -errno if denied.
101 * or more rules. Else denied.
104 * process, returning 0 if permission is granted, -errno if denied.
/Linux-v5.15/arch/um/os-Linux/
Dexecvp.c92 /* Record the we got a `Permission denied' error. If we end in execvp_noalloc()
94 that we did find one but were denied access. */ in execvp_noalloc()
/Linux-v5.15/security/
Dcommoncap.c109 * information, returning 0 if permission granted, -ve if denied.
128 * Else denied.
131 * granted, -ve if denied.
165 * Else denied.
168 * process, returning 0 if permission is granted, -ve if denied.
987 * permission is granted, -ve if denied.
1022 * permission is granted, -ve if denied.
1196 * Return: 0 if permission is granted, -ve if denied.
1211 * Return: 0 if permission is granted, -ve if denied.
1226 * Return: 0 if permission is granted, -ve if denied.
/Linux-v5.15/include/linux/sunrpc/
Dsvcauth.h103 * DENIED - authp holds reason for denial.
117 * DENIED - authp holds a reason for MSG_DENIED
/Linux-v5.15/Documentation/ABI/testing/
Dsysfs-class-power-wilco26 be denied by Wilco EC when Long Life mode is enabled.
/Linux-v5.15/Documentation/userspace-api/
Dlandlock.rst34 actions will be denied. The ruleset then needs to handle both of these kind of
66 denied by the ruleset. To add ``/usr`` to the ruleset, we open it with the
251 :manpage:`pivot_root(2)`. However, :manpage:`chroot(2)` calls are not denied.
/Linux-v5.15/security/loadpin/
Dloadpin.c150 report_load(origin, NULL, "old-api-denied"); in loadpin_read_file()
183 report_load(origin, file, "denied"); in loadpin_read_file()
/Linux-v5.15/drivers/hid/amd-sfh-hid/hid_descriptor/
Damd_sfh_hid_report_desc.h71 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
126 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
238 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
293 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
399 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
466 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
572 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
618 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
705 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
731 0x0A, 0x05, 0x08, /* HID usage sensor state access denied sel */
/Linux-v5.15/Documentation/networking/
Dmptcp-sysctl.rst40 accepted or denied.
/Linux-v5.15/drivers/gpu/drm/nouveau/nvkm/subdev/mmu/
Duvmm.c125 VMM_DEBUG(vmm, "denied %016llx: %d", addr, vma->busy); in nvkm_uvmm_mthd_unmap()
175 VMM_DEBUG(vmm, "denied %016llx: %d", addr, vma->busy); in nvkm_uvmm_mthd_map()
244 VMM_DEBUG(vmm, "denied %016llx: %d", addr, vma->busy); in nvkm_uvmm_mthd_put()
/Linux-v5.15/Documentation/admin-guide/LSM/
DSmack.rst482 1. Any access requested by a task labeled "*" is denied.
492 7. Any other access is denied.
621 be denied otherwise. CAP_MAC_ADMIN allows a process to change
832 By default, all denied events will be audited. You can change this behavior by
836 1 : log denied (default)
838 3 : log denied & accepted
/Linux-v5.15/net/9p/
Derror.c55 {"Permission denied", EACCES},
122 {"permission denied", EACCES},
/Linux-v5.15/fs/ocfs2/dlm/
Ddlmapi.h20 DLM_DENIED, /* 2: request denied */
21 DLM_DENIED_NOLOCKS, /* 3: request denied, out of system resources */
/Linux-v5.15/drivers/scsi/
Dsense_codes.h250 SENSE_CODE(0x2001, "Access denied - initiator pending-enrolled")
251 SENSE_CODE(0x2002, "Access denied - no access rights")
252 SENSE_CODE(0x2003, "Access denied - invalid mgmt id key")
257 SENSE_CODE(0x2008, "Access denied - enrollment conflict")
258 SENSE_CODE(0x2009, "Access denied - invalid LU identifier")
259 SENSE_CODE(0x200A, "Access denied - invalid proxy token")
260 SENSE_CODE(0x200B, "Access denied - ACL LUN conflict")

12345678