/security/selinux/ss/ |
D | services.c | 244 int security_mls_enabled(struct selinux_state *state) in security_mls_enabled() 718 static int security_validtrans_handle_fail(struct selinux_state *state, in security_validtrans_handle_fail() 748 static int security_compute_validatetrans(struct selinux_state *state, in security_compute_validatetrans() 828 int security_validate_transition_user(struct selinux_state *state, in security_validate_transition_user() 836 int security_validate_transition(struct selinux_state *state, in security_validate_transition() 853 int security_bounded_transition(struct selinux_state *state, in security_bounded_transition() 935 static void avd_init(struct selinux_state *state, struct av_decision *avd) in avd_init() 998 void security_compute_xperms_decision(struct selinux_state *state, in security_compute_xperms_decision() 1092 void security_compute_av(struct selinux_state *state, in security_compute_av() 1149 void security_compute_av_user(struct selinux_state *state, in security_compute_av_user() [all …]
|
D | status.c | 42 struct page *selinux_kernel_status_page(struct selinux_state *state) in selinux_kernel_status_page() 79 void selinux_status_update_setenforce(struct selinux_state *state, in selinux_status_update_setenforce() 105 void selinux_status_update_policyload(struct selinux_state *state, in selinux_status_update_policyload()
|
D | policydb.h | 147 int state; member
|
/security/apparmor/include/ |
D | file.h | 143 #define dfa_user_allow(dfa, state) (((ACCEPT_TABLE(dfa)[state]) & 0x7f) | \ argument 145 #define dfa_user_audit(dfa, state) ((ACCEPT_TABLE2(dfa)[state]) & 0x7f) argument 146 #define dfa_user_quiet(dfa, state) (((ACCEPT_TABLE2(dfa)[state]) >> 7) & 0x7f) argument 147 #define dfa_user_xindex(dfa, state) \ argument 150 #define dfa_other_allow(dfa, state) ((((ACCEPT_TABLE(dfa)[state]) >> 14) & \ argument 153 #define dfa_other_audit(dfa, state) (((ACCEPT_TABLE2(dfa)[state]) >> 14) & 0x7f) argument 154 #define dfa_other_quiet(dfa, state) \ argument 156 #define dfa_other_xindex(dfa, state) \ argument
|
D | label.h | 336 unsigned int state; in aa_label_strn_split() local 348 unsigned int state; in aa_label_str_split() local
|
D | policy.h | 228 unsigned int state = PROFILE_MEDIATES(profile, AA_CLASS_NET); in PROFILE_MEDIATES_AF() local
|
/security/selinux/include/ |
D | security.h | 121 static inline bool enforcing_enabled(struct selinux_state *state) in enforcing_enabled() 126 static inline void enforcing_set(struct selinux_state *state, bool value) in enforcing_set() 131 static inline bool enforcing_enabled(struct selinux_state *state) in enforcing_enabled() 136 static inline void enforcing_set(struct selinux_state *state, bool value) in enforcing_set() 143 struct selinux_state *state = &selinux_state; in selinux_policycap_netpeer() local 150 struct selinux_state *state = &selinux_state; in selinux_policycap_openperm() local 157 struct selinux_state *state = &selinux_state; in selinux_policycap_extsockclass() local 164 struct selinux_state *state = &selinux_state; in selinux_policycap_alwaysnetwork() local 171 struct selinux_state *state = &selinux_state; in selinux_policycap_cgroupseclabel() local 178 struct selinux_state *state = &selinux_state; in selinux_policycap_nnp_nosuid_transition() local [all …]
|
D | avc.h | 55 struct selinux_state *state; member 125 static inline int avc_audit(struct selinux_state *state, in avc_audit()
|
/security/apparmor/ |
D | match.c | 375 #define match_char(state, def, base, next, check, C) \ argument 412 unsigned int state = start; in aa_dfa_match_len() local 452 unsigned int state = start; in aa_dfa_match() local 484 unsigned int aa_dfa_next(struct aa_dfa *dfa, unsigned int state, in aa_dfa_next() 524 unsigned int state = start, pos; in aa_dfa_match_until() local 585 unsigned int state = start, pos; in aa_dfa_matchn_until() local 629 static bool is_loop(struct match_workbuf *wb, unsigned int state, in is_loop() 660 unsigned int state = start, pos; in leftmatch_fb() local
|
D | domain.c | 99 bool stack, unsigned int state) in match_component() 134 unsigned int state, bool subns, u32 request, in label_compound_match() 201 unsigned int state = 0; in label_components_match() local 254 bool stack, unsigned int state, bool subns, u32 request, in label_match() 310 struct aa_profile *profile, unsigned int state) in aa_xattrs_match() 411 unsigned int state, count; in find_attach() local 626 unsigned int state = profile->file.start; in profile_transition() local 748 unsigned int state = profile->file.start; in profile_onexec() local
|
D | mount.c | 193 static unsigned int match_mnt_flags(struct aa_dfa *dfa, unsigned int state, in match_mnt_flags() 214 unsigned int state) in compute_mnt_perms() 245 unsigned int state; in do_match_mnt() local 559 unsigned int state; in profile_umount() local 616 unsigned int state; in build_pivotroot() local
|
D | file.c | 224 struct aa_perms aa_compute_fperms(struct aa_dfa *dfa, unsigned int state, in aa_compute_fperms() 270 unsigned int state; in aa_str_perms() local 374 unsigned int state; in profile_path_link() local
|
D | lib.c | 325 void aa_compute_perms(struct aa_dfa *dfa, unsigned int state, in aa_compute_perms() 385 unsigned int state; in aa_profile_match_label() local
|
D | ipc.c | 192 unsigned int state; in profile_signal_perm() local
|
D | net.c | 110 unsigned int state; in aa_profile_af_perm() local
|
D | label.c | 1276 unsigned int state) in match_component() 1308 unsigned int state, bool subns, u32 request, in label_compound_match() 1372 unsigned int state = 0; in label_components_match() local 1424 unsigned int state, bool subns, u32 request, in aa_label_match()
|
D | lsm.c | 1620 const struct nf_hook_state *state) in apparmor_ip_postroute() 1643 const struct nf_hook_state *state) in apparmor_ipv4_postroute() 1651 const struct nf_hook_state *state) in apparmor_ipv6_postroute()
|
/security/smack/ |
D | smack_netfilter.c | 25 const struct nf_hook_state *state) in smack_ipv6_output() 43 const struct nf_hook_state *state) in smack_ipv4_output()
|
/security/selinux/ |
D | selinuxfs.c | 79 struct selinux_state *state; member 139 struct selinux_state *state = fsi->state; in sel_write_enforce() local 203 struct selinux_state *state = fsi->state; in sel_read_handle_unknown() local 376 struct selinux_state *state = fsi->state; in sel_open_policy() local 595 struct selinux_state *state = fsi->state; in sel_write_context() local 686 struct selinux_state *state = fsi->state; in sel_write_validatetrans() local 815 struct selinux_state *state = fsi->state; in sel_write_access() local 866 struct selinux_state *state = fsi->state; in sel_write_create() local 970 struct selinux_state *state = fsi->state; in sel_write_relabel() local 1031 struct selinux_state *state = fsi->state; in sel_write_user() local [all …]
|
D | avc.c | 414 static inline int avc_xperms_audit(struct selinux_state *state, in avc_xperms_audit() 756 noinline int slow_avc_audit(struct selinux_state *state, in slow_avc_audit() 996 struct avc_node *avc_compute_av(struct selinux_state *state, in avc_compute_av() 1008 static noinline int avc_denied(struct selinux_state *state, in avc_denied() 1033 int avc_has_extended_perms(struct selinux_state *state, in avc_has_extended_perms() 1130 inline int avc_has_perm_noaudit(struct selinux_state *state, in avc_has_perm_noaudit() 1177 int avc_has_perm(struct selinux_state *state, u32 ssid, u32 tsid, u16 tclass, in avc_has_perm() 1193 int avc_has_perm_flags(struct selinux_state *state, in avc_has_perm_flags() 1212 u32 avc_policy_seqno(struct selinux_state *state) in avc_policy_seqno()
|
D | hooks.c | 5702 const struct nf_hook_state *state) in selinux_ipv4_forward() 5710 const struct nf_hook_state *state) in selinux_ipv6_forward() 5760 const struct nf_hook_state *state) in selinux_ipv4_output() 5768 const struct nf_hook_state *state) in selinux_ipv6_output() 5950 const struct nf_hook_state *state) in selinux_ipv4_postroute() 5958 const struct nf_hook_state *state) in selinux_ipv6_postroute() 7359 int selinux_disable(struct selinux_state *state) in selinux_disable()
|
/security/keys/ |
D | gc.c | 127 short state = key->state; in key_gc_unused_keys() local
|
D | proc.c | 161 short state; in proc_keys_show() local
|
D | keyring.c | 579 short state = READ_ONCE(key->state); in keyring_search_iterator() local
|
/security/lockdown/ |
D | lockdown.c | 148 char *state; in lockdown_write() local
|