Searched refs:secmark (Results 1 – 14 of 14) sorted by relevance
/Linux-v4.19/net/netfilter/ |
D | xt_CONNSECMARK.c | 38 if (skb->secmark) { in secmark_save() 43 if (ct && !ct->secmark) { in secmark_save() 44 ct->secmark = skb->secmark; in secmark_save() 56 if (!skb->secmark) { in secmark_restore() 61 if (ct && ct->secmark) in secmark_restore() 62 skb->secmark = ct->secmark; in secmark_restore()
|
D | xt_SECMARK.c | 35 u32 secmark = 0; in secmark_tg() local 42 secmark = info->secid; in secmark_tg() 48 skb->secmark = secmark; in secmark_tg()
|
D | nft_meta.c | 153 *dest = skb->secmark; in nft_meta_get_eval()
|
D | nf_conntrack_standalone.c | 175 ret = security_secid_to_secctx(ct->secmark, &secctx, &len); in ct_show_secctx()
|
D | nfnetlink_queue.c | 317 if (skb->secmark) in nfqnl_get_sk_secctx() 318 security_secid_to_secctx(skb->secmark, secdata, &seclen); in nfqnl_get_sk_secctx()
|
D | nf_conntrack_netlink.c | 336 ret = security_secid_to_secctx(ct->secmark, &secctx, &len); in ctnetlink_dump_secctx() 621 ret = security_secid_to_secctx(ct->secmark, NULL, &len); in ctnetlink_secctx_size() 769 if ((events & (1 << IPCT_SECMARK) || ct->secmark) in ctnetlink_conntrack_event() 2414 if (ct->secmark && ctnetlink_dump_secctx(skb, ct) < 0) in __ctnetlink_glue_build()
|
D | nf_conntrack_core.c | 1413 ct->secmark = exp->master->secmark; in init_conntrack()
|
D | nft_ct.c | 106 *dest = ct->secmark; in nft_ct_get_eval()
|
/Linux-v4.19/security/smack/ |
D | smack_netfilter.c | 37 skb->secmark = skp->smk_secid; in smack_ipv6_output() 55 skb->secmark = skp->smk_secid; in smack_ipv4_output()
|
D | smack_lsm.c | 3949 if (skb && skb->secmark != 0) { in smack_socket_sock_rcv_skb() 3950 skp = smack_from_secid(skb->secmark); in smack_socket_sock_rcv_skb() 3995 if (skb && skb->secmark != 0) in smack_socket_sock_rcv_skb() 3996 skp = smack_from_secid(skb->secmark); in smack_socket_sock_rcv_skb() 4097 s = skb->secmark; in smack_socket_getpeersec_dgram() 4116 s = skb->secmark; in smack_socket_getpeersec_dgram() 4194 if (skb && skb->secmark != 0) { in smack_inet_conn_request() 4195 skp = smack_from_secid(skb->secmark); in smack_inet_conn_request()
|
/Linux-v4.19/include/net/netfilter/ |
D | nf_conntrack.h | 98 u_int32_t secmark; member
|
/Linux-v4.19/include/linux/ |
D | skbuff.h | 826 __u32 secmark; member 3900 to->secmark = from->secmark; in skb_copy_secmark() 3905 skb->secmark = 0; in skb_init_secmark()
|
/Linux-v4.19/security/selinux/ |
D | hooks.c | 5013 sk_sid, skb->secmark, SECCLASS_PACKET, in selinux_sock_rcv_skb_compat() 5089 sk_sid, skb->secmark, SECCLASS_PACKET, in selinux_socket_sock_rcv_skb() 5634 peer_sid, skb->secmark, in selinux_ip_forward() 5747 sksec->sid, skb->secmark, in selinux_ip_postroute_compat() 5871 peer_sid, skb->secmark, in selinux_ip_postroute()
|
/Linux-v4.19/net/core/ |
D | skbuff.c | 828 CHECK_SKB_FIELD(secmark); in __copy_skb_header()
|