Searched refs:filterkey (Results 1 – 7 of 7) sorted by relevance
/Linux-v5.10/kernel/ |
D | auditfilter.c | 93 kfree(erule->filterkey); in audit_free_rule() 566 if (entry->rule.filterkey || f_val > AUDIT_MAX_KEY_LEN) in audit_data_to_entry() 574 entry->rule.filterkey = str; in audit_data_to_entry() 672 audit_pack_string(&bufp, krule->filterkey); in audit_krule_to_data() 738 if (strcmp(a->filterkey, b->filterkey)) in audit_compare_rule() 863 fk = kstrdup(old->filterkey, GFP_KERNEL); in audit_dupe_rule() 867 new->filterkey = fk; in audit_dupe_rule() 1111 audit_log_key(ab, rule->filterkey); in audit_log_rule_change()
|
D | auditsc.c | 748 if (rule->filterkey) { in audit_filter_rules() 749 kfree(ctx->filterkey); in audit_filter_rules() 750 ctx->filterkey = kstrdup(rule->filterkey, GFP_ATOMIC); in audit_filter_rules() 779 *key = kstrdup(e->rule.filterkey, GFP_ATOMIC); in audit_filter_task() 964 context->filterkey = key; in audit_alloc() 978 kfree(context->filterkey); in audit_free_context() 1504 audit_log_key(ab, context->filterkey); in audit_log_exit() 1760 kfree(context->filterkey); in __audit_syscall_exit() 1761 context->filterkey = NULL; in __audit_syscall_exit()
|
D | audit_fsnotify.c | 127 audit_log_key(ab, rule->filterkey); in audit_mark_log_rule_change()
|
D | audit.h | 120 char *filterkey; /* key for rule that triggered record */ member
|
D | audit_watch.c | 238 audit_log_key(ab, r->filterkey); in audit_watch_log_rule_change()
|
D | audit_tree.c | 537 audit_log_key(ab, rule->filterkey); in audit_tree_log_remove_rule()
|
/Linux-v5.10/include/linux/ |
D | audit.h | 46 char *filterkey; /* ties events to rules */ member
|