/Linux-v6.1/security/selinux/ |
D | avc.c | 51 struct av_decision avd; member 388 struct av_decision *avd, in avc_xperms_audit_required() argument 396 denied = requested & ~avd->allowed; in avc_xperms_audit_required() 398 audited = denied & avd->auditdeny; in avc_xperms_audit_required() 406 audited = requested & avd->auditallow; in avc_xperms_audit_required() 419 u32 requested, struct av_decision *avd, in avc_xperms_audit() argument 427 requested, avd, xpd, perm, result, &denied); in avc_xperms_audit() 519 …d avc_node_populate(struct avc_node *node, u32 ssid, u32 tsid, u16 tclass, struct av_decision *avd) in avc_node_populate() argument 524 memcpy(&node->ae.avd, avd, sizeof(node->ae.avd)); in avc_node_populate() 620 struct av_decision *avd, in avc_insert() argument [all …]
|
D | selinuxfs.c | 919 struct av_decision avd; in sel_write_access() local 950 security_compute_av_user(state, ssid, tsid, tclass, &avd); in sel_write_access() 954 avd.allowed, 0xffffffff, in sel_write_access() 955 avd.auditallow, avd.auditdeny, in sel_write_access() 956 avd.seqno, avd.flags); in sel_write_access()
|
D | hooks.c | 1580 struct av_decision avd; in cred_has_capability() local 1603 sid, sid, sclass, av, 0, &avd); in cred_has_capability() 1606 sid, sid, sclass, av, &avd, rc, &ad); in cred_has_capability() 3065 struct av_decision avd; in selinux_inode_permission() local 3090 &avd); in selinux_inode_permission() 3091 audited = avc_audit_required(perms, &avd, rc, in selinux_inode_permission()
|
/Linux-v6.1/security/selinux/include/ |
D | avc.h | 65 struct av_decision *avd, in avc_audit_required() argument 71 denied = requested & ~avd->allowed; in avc_audit_required() 73 audited = denied & avd->auditdeny; in avc_audit_required() 90 if (auditdeny && !(auditdeny & avd->auditdeny)) in avc_audit_required() 95 audited = requested & avd->auditallow; in avc_audit_required() 128 struct av_decision *avd, in avc_audit() argument 133 audited = avc_audit_required(requested, avd, result, 0, &denied); in avc_audit() 147 struct av_decision *avd);
|
D | security.h | 292 u16 tclass, struct av_decision *avd, 302 u16 tclass, struct av_decision *avd);
|
/Linux-v6.1/security/selinux/ss/ |
D | services.c | 98 struct av_decision *avd, 206 u16 tclass, struct av_decision *avd, in map_decision() argument 215 if (avd->allowed & mapping->perms[i]) in map_decision() 220 avd->allowed = result; in map_decision() 223 if (avd->auditallow & mapping->perms[i]) in map_decision() 225 avd->auditallow = result; in map_decision() 228 if (avd->auditdeny & mapping->perms[i]) in map_decision() 240 avd->auditdeny = result; in map_decision() 542 struct av_decision *avd) in type_attribute_bounds_av() argument 577 masked = ~lo_avd.allowed & avd->allowed; in type_attribute_bounds_av() [all …]
|
D | conditional.c | 575 struct av_decision *avd, struct extended_perms *xperms) in cond_compute_av() argument 579 if (!ctab || !key || !avd) in cond_compute_av() 586 avd->allowed |= node->datum.u.data; in cond_compute_av() 594 avd->auditdeny &= node->datum.u.data; in cond_compute_av() 597 avd->auditallow |= node->datum.u.data; in cond_compute_av()
|
D | conditional.h | 78 struct av_decision *avd, struct extended_perms *xperms);
|