/Linux-v5.4/security/selinux/include/ |
D | security.h | 100 struct selinux_state { struct 115 extern struct selinux_state selinux_state; argument 118 static inline bool enforcing_enabled(struct selinux_state *state) in enforcing_enabled() 123 static inline void enforcing_set(struct selinux_state *state, bool value) in enforcing_set() 128 static inline bool enforcing_enabled(struct selinux_state *state) in enforcing_enabled() 133 static inline void enforcing_set(struct selinux_state *state, bool value) in enforcing_set() 140 struct selinux_state *state = &selinux_state; in selinux_policycap_netpeer() 147 struct selinux_state *state = &selinux_state; in selinux_policycap_openperm() 154 struct selinux_state *state = &selinux_state; in selinux_policycap_extsockclass() 161 struct selinux_state *state = &selinux_state; in selinux_policycap_alwaysnetwork() [all …]
|
D | avc.h | 55 struct selinux_state *state; 100 int slow_avc_audit(struct selinux_state *state, 126 static inline int avc_audit(struct selinux_state *state, in avc_audit() 146 int avc_has_perm_noaudit(struct selinux_state *state, 152 int avc_has_perm(struct selinux_state *state, 157 int avc_has_extended_perms(struct selinux_state *state, 162 u32 avc_policy_seqno(struct selinux_state *state);
|
D | conditional.h | 16 int security_get_bools(struct selinux_state *state, 19 int security_set_bools(struct selinux_state *state, 22 int security_get_bool_value(struct selinux_state *state,
|
/Linux-v5.4/security/selinux/ |
D | hooks.c | 106 struct selinux_state selinux_state; variable 275 if (selinux_state.initialized && in __inode_security_revalidate() 466 rc = avc_has_perm(&selinux_state, in may_context_mount_sb_relabel() 472 rc = avc_has_perm(&selinux_state, in may_context_mount_sb_relabel() 484 rc = avc_has_perm(&selinux_state, in may_context_mount_inode_relabel() 490 rc = avc_has_perm(&selinux_state, in may_context_mount_inode_relabel() 633 int rc = security_context_str_to_sid(&selinux_state, s, in parse_sid() 662 if (!selinux_state.initialized) { in selinux_set_mnt_opts() 768 rc = security_fs_use(&selinux_state, sb); in selinux_set_mnt_opts() 792 rc = security_transition_sid(&selinux_state, in selinux_set_mnt_opts() [all …]
|
D | xfrm.c | 101 rc = security_context_to_sid(&selinux_state, ctx->ctx_str, str_len, in selinux_xfrm_alloc_user() 106 rc = avc_has_perm(&selinux_state, in selinux_xfrm_alloc_user() 143 return avc_has_perm(&selinux_state, in selinux_xfrm_delete() 166 rc = avc_has_perm(&selinux_state, in selinux_xfrm_policy_lookup() 206 return (avc_has_perm(&selinux_state, in selinux_xfrm_state_pol_flow_match() 357 rc = security_sid_to_context(&selinux_state, secid, &ctx_str, in selinux_xfrm_state_alloc_acquire() 426 return avc_has_perm(&selinux_state, in selinux_xfrm_sock_rcv_skb() 470 return avc_has_perm(&selinux_state, sk_sid, SECINITSID_UNLABELED, in selinux_xfrm_postroute_last()
|
D | netlabel.c | 48 rc = security_netlbl_secattr_to_sid(&selinux_state, secattr, sid); in selinux_netlbl_sidlookup_cached() 79 rc = security_netlbl_sid_to_secattr(&selinux_state, sksec->sid, in selinux_netlbl_sock_genattr() 247 rc = security_netlbl_sid_to_secattr(&selinux_state, sid, in selinux_netlbl_skbuff_setsid() 285 rc = security_netlbl_sid_to_secattr(&selinux_state, in selinux_netlbl_sctp_assoc_request() 333 rc = security_netlbl_sid_to_secattr(&selinux_state, req->secid, in selinux_netlbl_inet_conn_request() 463 rc = avc_has_perm(&selinux_state, in selinux_netlbl_sock_rcv_skb()
|
D | selinuxfs.c | 79 struct selinux_state *state; 93 fsi->state = &selinux_state; in selinux_fs_info_create() 139 struct selinux_state *state = fsi->state; in sel_write_enforce() 163 length = avc_has_perm(&selinux_state, in sel_write_enforce() 203 struct selinux_state *state = fsi->state; in sel_read_handle_unknown() 376 struct selinux_state *state = fsi->state; in sel_open_policy() 384 rc = avc_has_perm(&selinux_state, in sel_open_policy() 446 ret = avc_has_perm(&selinux_state, in sel_read_policy() 540 length = avc_has_perm(&selinux_state, in sel_write_load() 595 struct selinux_state *state = fsi->state; in sel_write_context() [all …]
|
D | avc.c | 413 static inline int avc_xperms_audit(struct selinux_state *state, in avc_xperms_audit() 758 noinline int slow_avc_audit(struct selinux_state *state, in slow_avc_audit() 1011 struct avc_node *avc_compute_av(struct selinux_state *state, in avc_compute_av() 1023 static noinline int avc_denied(struct selinux_state *state, in avc_denied() 1048 int avc_has_extended_perms(struct selinux_state *state, in avc_has_extended_perms() 1145 inline int avc_has_perm_noaudit(struct selinux_state *state, in avc_has_perm_noaudit() 1192 int avc_has_perm(struct selinux_state *state, u32 ssid, u32 tsid, u16 tclass, in avc_has_perm() 1208 u32 avc_policy_seqno(struct selinux_state *state) in avc_policy_seqno() 1227 avc_flush(selinux_state.avc); in avc_disable()
|
D | netnode.c | 207 ret = security_node_sid(&selinux_state, PF_INET, in sel_netnode_sid_slow() 213 ret = security_node_sid(&selinux_state, PF_INET6, in sel_netnode_sid_slow()
|
D | ibpkey.c | 145 ret = security_ib_pkey_sid(&selinux_state, subnet_prefix, pkey_num, in sel_ib_pkey_sid_slow()
|
D | netport.c | 152 ret = security_port_sid(&selinux_state, protocol, pnum, sid); in sel_netport_sid_slow()
|
D | netif.c | 157 ret = security_netif_sid(&selinux_state, dev->name, sid); in sel_netif_sid_slow()
|
/Linux-v5.4/security/selinux/ss/ |
D | services.c | 244 int security_mls_enabled(struct selinux_state *state) in security_mls_enabled() 718 static int security_validtrans_handle_fail(struct selinux_state *state, in security_validtrans_handle_fail() 748 static int security_compute_validatetrans(struct selinux_state *state, in security_compute_validatetrans() 828 int security_validate_transition_user(struct selinux_state *state, in security_validate_transition_user() 836 int security_validate_transition(struct selinux_state *state, in security_validate_transition() 853 int security_bounded_transition(struct selinux_state *state, in security_bounded_transition() 935 static void avd_init(struct selinux_state *state, struct av_decision *avd) in avd_init() 998 void security_compute_xperms_decision(struct selinux_state *state, in security_compute_xperms_decision() 1092 void security_compute_av(struct selinux_state *state, in security_compute_av() 1149 void security_compute_av_user(struct selinux_state *state, in security_compute_av_user() [all …]
|
D | status.c | 42 struct page *selinux_kernel_status_page(struct selinux_state *state) in selinux_kernel_status_page() 79 void selinux_status_update_setenforce(struct selinux_state *state, in selinux_status_update_setenforce() 105 void selinux_status_update_policyload(struct selinux_state *state, in selinux_status_update_policyload()
|