/Linux-v5.4/security/selinux/ |
D | avc.c | 48 struct av_decision avd; member 384 struct av_decision *avd, in avc_xperms_audit_required() argument 392 denied = requested & ~avd->allowed; in avc_xperms_audit_required() 394 audited = denied & avd->auditdeny; in avc_xperms_audit_required() 402 audited = requested & avd->auditallow; in avc_xperms_audit_required() 415 u32 requested, struct av_decision *avd, in avc_xperms_audit() argument 423 requested, avd, xpd, perm, result, &denied); in avc_xperms_audit() 515 …d avc_node_populate(struct avc_node *node, u32 ssid, u32 tsid, u16 tclass, struct av_decision *avd) in avc_node_populate() argument 520 memcpy(&node->ae.avd, avd, sizeof(node->ae.avd)); in avc_node_populate() 614 struct av_decision *avd, in avc_insert() argument [all …]
|
D | selinuxfs.c | 819 struct av_decision avd; in sel_write_access() local 850 security_compute_av_user(state, ssid, tsid, tclass, &avd); in sel_write_access() 854 avd.allowed, 0xffffffff, in sel_write_access() 855 avd.auditallow, avd.auditdeny, in sel_write_access() 856 avd.seqno, avd.flags); in sel_write_access()
|
D | hooks.c | 1632 struct av_decision avd; in cred_has_capability() local 1655 sid, sid, sclass, av, 0, &avd); in cred_has_capability() 1658 sid, sid, sclass, av, &avd, rc, &ad, 0); in cred_has_capability() 3043 struct av_decision avd; in selinux_inode_permission() local 3069 &avd); in selinux_inode_permission() 3070 audited = avc_audit_required(perms, &avd, rc, in selinux_inode_permission()
|
/Linux-v5.4/security/selinux/include/ |
D | avc.h | 65 struct av_decision *avd, in avc_audit_required() argument 71 denied = requested & ~avd->allowed; in avc_audit_required() 73 audited = denied & avd->auditdeny; in avc_audit_required() 90 if (auditdeny && !(auditdeny & avd->auditdeny)) in avc_audit_required() 95 audited = requested & avd->auditallow; in avc_audit_required() 129 struct av_decision *avd, in avc_audit() argument 135 audited = avc_audit_required(requested, avd, result, 0, &denied); in avc_audit() 150 struct av_decision *avd);
|
D | security.h | 227 u16 tclass, struct av_decision *avd, 237 u16 tclass, struct av_decision *avd);
|
/Linux-v5.4/security/selinux/ss/ |
D | services.c | 98 struct av_decision *avd, 206 u16 tclass, struct av_decision *avd, in map_decision() argument 215 if (avd->allowed & mapping->perms[i]) in map_decision() 220 avd->allowed = result; in map_decision() 223 if (avd->auditallow & mapping->perms[i]) in map_decision() 225 avd->auditallow = result; in map_decision() 228 if (avd->auditdeny & mapping->perms[i]) in map_decision() 240 avd->auditdeny = result; in map_decision() 536 struct av_decision *avd) in type_attribute_bounds_av() argument 571 masked = ~lo_avd.allowed & avd->allowed; in type_attribute_bounds_av() [all …]
|
D | conditional.c | 633 struct av_decision *avd, struct extended_perms *xperms) in cond_compute_av() argument 637 if (!ctab || !key || !avd) in cond_compute_av() 644 avd->allowed |= node->datum.u.data; in cond_compute_av() 652 avd->auditdeny &= node->datum.u.data; in cond_compute_av() 655 avd->auditallow |= node->datum.u.data; in cond_compute_av()
|
D | conditional.h | 75 struct av_decision *avd, struct extended_perms *xperms);
|