diff options
| author | Russell King <rmk+kernel@arm.linux.org.uk> | 2009-12-06 12:00:33 -0500 |
|---|---|---|
| committer | Russell King <rmk+kernel@arm.linux.org.uk> | 2009-12-06 12:00:33 -0500 |
| commit | 3d14b5beba35250c548d3851a2b84fce742d8311 (patch) | |
| tree | 065e3d93c3fcbc5ee4c44fa78662393cddbdf6de /security/selinux/include | |
| parent | 0719dc341389882cc834ed18fc9b7fc6006b2b85 (diff) | |
| parent | 1bf8e6219552d5dd27012d567ec8c4bb9c2d86b4 (diff) | |
Merge branch 'sa1100' into devel
Diffstat (limited to 'security/selinux/include')
| -rw-r--r-- | security/selinux/include/av_inherit.h | 34 | ||||
| -rw-r--r-- | security/selinux/include/av_perm_to_string.h | 183 | ||||
| -rw-r--r-- | security/selinux/include/av_permissions.h | 870 | ||||
| -rw-r--r-- | security/selinux/include/avc_ss.h | 21 | ||||
| -rw-r--r-- | security/selinux/include/class_to_string.h | 80 | ||||
| -rw-r--r-- | security/selinux/include/classmap.h | 150 | ||||
| -rw-r--r-- | security/selinux/include/common_perm_to_string.h | 58 | ||||
| -rw-r--r-- | security/selinux/include/flask.h | 91 | ||||
| -rw-r--r-- | security/selinux/include/security.h | 13 |
9 files changed, 164 insertions, 1336 deletions
diff --git a/security/selinux/include/av_inherit.h b/security/selinux/include/av_inherit.h deleted file mode 100644 index abedcd704dae..000000000000 --- a/security/selinux/include/av_inherit.h +++ /dev/null | |||
| @@ -1,34 +0,0 @@ | |||
| 1 | /* This file is automatically generated. Do not edit. */ | ||
| 2 | S_(SECCLASS_DIR, file, 0x00020000UL) | ||
| 3 | S_(SECCLASS_FILE, file, 0x00020000UL) | ||
| 4 | S_(SECCLASS_LNK_FILE, file, 0x00020000UL) | ||
| 5 | S_(SECCLASS_CHR_FILE, file, 0x00020000UL) | ||
| 6 | S_(SECCLASS_BLK_FILE, file, 0x00020000UL) | ||
| 7 | S_(SECCLASS_SOCK_FILE, file, 0x00020000UL) | ||
| 8 | S_(SECCLASS_FIFO_FILE, file, 0x00020000UL) | ||
| 9 | S_(SECCLASS_SOCKET, socket, 0x00400000UL) | ||
| 10 | S_(SECCLASS_TCP_SOCKET, socket, 0x00400000UL) | ||
| 11 | S_(SECCLASS_UDP_SOCKET, socket, 0x00400000UL) | ||
| 12 | S_(SECCLASS_RAWIP_SOCKET, socket, 0x00400000UL) | ||
| 13 | S_(SECCLASS_NETLINK_SOCKET, socket, 0x00400000UL) | ||
| 14 | S_(SECCLASS_PACKET_SOCKET, socket, 0x00400000UL) | ||
| 15 | S_(SECCLASS_KEY_SOCKET, socket, 0x00400000UL) | ||
| 16 | S_(SECCLASS_UNIX_STREAM_SOCKET, socket, 0x00400000UL) | ||
| 17 | S_(SECCLASS_UNIX_DGRAM_SOCKET, socket, 0x00400000UL) | ||
| 18 | S_(SECCLASS_TUN_SOCKET, socket, 0x00400000UL) | ||
| 19 | S_(SECCLASS_IPC, ipc, 0x00000200UL) | ||
| 20 | S_(SECCLASS_SEM, ipc, 0x00000200UL) | ||
| 21 | S_(SECCLASS_MSGQ, ipc, 0x00000200UL) | ||
| 22 | S_(SECCLASS_SHM, ipc, 0x00000200UL) | ||
| 23 | S_(SECCLASS_NETLINK_ROUTE_SOCKET, socket, 0x00400000UL) | ||
| 24 | S_(SECCLASS_NETLINK_FIREWALL_SOCKET, socket, 0x00400000UL) | ||
| 25 | S_(SECCLASS_NETLINK_TCPDIAG_SOCKET, socket, 0x00400000UL) | ||
| 26 | S_(SECCLASS_NETLINK_NFLOG_SOCKET, socket, 0x00400000UL) | ||
| 27 | S_(SECCLASS_NETLINK_XFRM_SOCKET, socket, 0x00400000UL) | ||
| 28 | S_(SECCLASS_NETLINK_SELINUX_SOCKET, socket, 0x00400000UL) | ||
| 29 | S_(SECCLASS_NETLINK_AUDIT_SOCKET, socket, 0x00400000UL) | ||
| 30 | S_(SECCLASS_NETLINK_IP6FW_SOCKET, socket, 0x00400000UL) | ||
| 31 | S_(SECCLASS_NETLINK_DNRT_SOCKET, socket, 0x00400000UL) | ||
| 32 | S_(SECCLASS_NETLINK_KOBJECT_UEVENT_SOCKET, socket, 0x00400000UL) | ||
| 33 | S_(SECCLASS_APPLETALK_SOCKET, socket, 0x00400000UL) | ||
| 34 | S_(SECCLASS_DCCP_SOCKET, socket, 0x00400000UL) | ||
diff --git a/security/selinux/include/av_perm_to_string.h b/security/selinux/include/av_perm_to_string.h deleted file mode 100644 index 2b683ad83d21..000000000000 --- a/security/selinux/include/av_perm_to_string.h +++ /dev/null | |||
| @@ -1,183 +0,0 @@ | |||
| 1 | /* This file is automatically generated. Do not edit. */ | ||
| 2 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__MOUNT, "mount") | ||
| 3 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__REMOUNT, "remount") | ||
| 4 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__UNMOUNT, "unmount") | ||
| 5 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__GETATTR, "getattr") | ||
| 6 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__RELABELFROM, "relabelfrom") | ||
| 7 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__RELABELTO, "relabelto") | ||
| 8 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__TRANSITION, "transition") | ||
| 9 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__ASSOCIATE, "associate") | ||
| 10 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__QUOTAMOD, "quotamod") | ||
| 11 | S_(SECCLASS_FILESYSTEM, FILESYSTEM__QUOTAGET, "quotaget") | ||
| 12 | S_(SECCLASS_DIR, DIR__ADD_NAME, "add_name") | ||
| 13 | S_(SECCLASS_DIR, DIR__REMOVE_NAME, "remove_name") | ||
| 14 | S_(SECCLASS_DIR, DIR__REPARENT, "reparent") | ||
| 15 | S_(SECCLASS_DIR, DIR__SEARCH, "search") | ||
| 16 | S_(SECCLASS_DIR, DIR__RMDIR, "rmdir") | ||
| 17 | S_(SECCLASS_DIR, DIR__OPEN, "open") | ||
| 18 | S_(SECCLASS_FILE, FILE__EXECUTE_NO_TRANS, "execute_no_trans") | ||
| 19 | S_(SECCLASS_FILE, FILE__ENTRYPOINT, "entrypoint") | ||
| 20 | S_(SECCLASS_FILE, FILE__EXECMOD, "execmod") | ||
| 21 | S_(SECCLASS_FILE, FILE__OPEN, "open") | ||
| 22 | S_(SECCLASS_CHR_FILE, CHR_FILE__EXECUTE_NO_TRANS, "execute_no_trans") | ||
| 23 | S_(SECCLASS_CHR_FILE, CHR_FILE__ENTRYPOINT, "entrypoint") | ||
| 24 | S_(SECCLASS_CHR_FILE, CHR_FILE__EXECMOD, "execmod") | ||
| 25 | S_(SECCLASS_CHR_FILE, CHR_FILE__OPEN, "open") | ||
| 26 | S_(SECCLASS_BLK_FILE, BLK_FILE__OPEN, "open") | ||
| 27 | S_(SECCLASS_SOCK_FILE, SOCK_FILE__OPEN, "open") | ||
| 28 | S_(SECCLASS_FIFO_FILE, FIFO_FILE__OPEN, "open") | ||
| 29 | S_(SECCLASS_FD, FD__USE, "use") | ||
| 30 | S_(SECCLASS_TCP_SOCKET, TCP_SOCKET__CONNECTTO, "connectto") | ||
| 31 | S_(SECCLASS_TCP_SOCKET, TCP_SOCKET__NEWCONN, "newconn") | ||
| 32 | S_(SECCLASS_TCP_SOCKET, TCP_SOCKET__ACCEPTFROM, "acceptfrom") | ||
| 33 | S_(SECCLASS_TCP_SOCKET, TCP_SOCKET__NODE_BIND, "node_bind") | ||
| 34 | S_(SECCLASS_TCP_SOCKET, TCP_SOCKET__NAME_CONNECT, "name_connect") | ||
| 35 | S_(SECCLASS_UDP_SOCKET, UDP_SOCKET__NODE_BIND, "node_bind") | ||
| 36 | S_(SECCLASS_RAWIP_SOCKET, RAWIP_SOCKET__NODE_BIND, "node_bind") | ||
| 37 | S_(SECCLASS_NODE, NODE__TCP_RECV, "tcp_recv") | ||
| 38 | S_(SECCLASS_NODE, NODE__TCP_SEND, "tcp_send") | ||
| 39 | S_(SECCLASS_NODE, NODE__UDP_RECV, "udp_recv") | ||
| 40 | S_(SECCLASS_NODE, NODE__UDP_SEND, "udp_send") | ||
| 41 | S_(SECCLASS_NODE, NODE__RAWIP_RECV, "rawip_recv") | ||
| 42 | S_(SECCLASS_NODE, NODE__RAWIP_SEND, "rawip_send") | ||
| 43 | S_(SECCLASS_NODE, NODE__ENFORCE_DEST, "enforce_dest") | ||
| 44 | S_(SECCLASS_NODE, NODE__DCCP_RECV, "dccp_recv") | ||
| 45 | S_(SECCLASS_NODE, NODE__DCCP_SEND, "dccp_send") | ||
| 46 | S_(SECCLASS_NODE, NODE__RECVFROM, "recvfrom") | ||
| 47 | S_(SECCLASS_NODE, NODE__SENDTO, "sendto") | ||
| 48 | S_(SECCLASS_NETIF, NETIF__TCP_RECV, "tcp_recv") | ||
| 49 | S_(SECCLASS_NETIF, NETIF__TCP_SEND, "tcp_send") | ||
| 50 | S_(SECCLASS_NETIF, NETIF__UDP_RECV, "udp_recv") | ||
| 51 | S_(SECCLASS_NETIF, NETIF__UDP_SEND, "udp_send") | ||
| 52 | S_(SECCLASS_NETIF, NETIF__RAWIP_RECV, "rawip_recv") | ||
| 53 | S_(SECCLASS_NETIF, NETIF__RAWIP_SEND, "rawip_send") | ||
| 54 | S_(SECCLASS_NETIF, NETIF__DCCP_RECV, "dccp_recv") | ||
| 55 | S_(SECCLASS_NETIF, NETIF__DCCP_SEND, "dccp_send") | ||
| 56 | S_(SECCLASS_NETIF, NETIF__INGRESS, "ingress") | ||
| 57 | S_(SECCLASS_NETIF, NETIF__EGRESS, "egress") | ||
| 58 | S_(SECCLASS_UNIX_STREAM_SOCKET, UNIX_STREAM_SOCKET__CONNECTTO, "connectto") | ||
| 59 | S_(SECCLASS_UNIX_STREAM_SOCKET, UNIX_STREAM_SOCKET__NEWCONN, "newconn") | ||
| 60 | S_(SECCLASS_UNIX_STREAM_SOCKET, UNIX_STREAM_SOCKET__ACCEPTFROM, "acceptfrom") | ||
| 61 | S_(SECCLASS_PROCESS, PROCESS__FORK, "fork") | ||
| 62 | S_(SECCLASS_PROCESS, PROCESS__TRANSITION, "transition") | ||
| 63 | S_(SECCLASS_PROCESS, PROCESS__SIGCHLD, "sigchld") | ||
| 64 | S_(SECCLASS_PROCESS, PROCESS__SIGKILL, "sigkill") | ||
| 65 | S_(SECCLASS_PROCESS, PROCESS__SIGSTOP, "sigstop") | ||
| 66 | S_(SECCLASS_PROCESS, PROCESS__SIGNULL, "signull") | ||
| 67 | S_(SECCLASS_PROCESS, PROCESS__SIGNAL, "signal") | ||
| 68 | S_(SECCLASS_PROCESS, PROCESS__PTRACE, "ptrace") | ||
| 69 | S_(SECCLASS_PROCESS, PROCESS__GETSCHED, "getsched") | ||
| 70 | S_(SECCLASS_PROCESS, PROCESS__SETSCHED, "setsched") | ||
| 71 | S_(SECCLASS_PROCESS, PROCESS__GETSESSION, "getsession") | ||
| 72 | S_(SECCLASS_PROCESS, PROCESS__GETPGID, "getpgid") | ||
| 73 | S_(SECCLASS_PROCESS, PROCESS__SETPGID, "setpgid") | ||
| 74 | S_(SECCLASS_PROCESS, PROCESS__GETCAP, "getcap") | ||
| 75 | S_(SECCLASS_PROCESS, PROCESS__SETCAP, "setcap") | ||
| 76 | S_(SECCLASS_PROCESS, PROCESS__SHARE, "share") | ||
| 77 | S_(SECCLASS_PROCESS, PROCESS__GETATTR, "getattr") | ||
| 78 | S_(SECCLASS_PROCESS, PROCESS__SETEXEC, "setexec") | ||
| 79 | S_(SECCLASS_PROCESS, PROCESS__SETFSCREATE, "setfscreate") | ||
| 80 | S_(SECCLASS_PROCESS, PROCESS__NOATSECURE, "noatsecure") | ||
| 81 | S_(SECCLASS_PROCESS, PROCESS__SIGINH, "siginh") | ||
| 82 | S_(SECCLASS_PROCESS, PROCESS__SETRLIMIT, "setrlimit") | ||
| 83 | S_(SECCLASS_PROCESS, PROCESS__RLIMITINH, "rlimitinh") | ||
| 84 | S_(SECCLASS_PROCESS, PROCESS__DYNTRANSITION, "dyntransition") | ||
| 85 | S_(SECCLASS_PROCESS, PROCESS__SETCURRENT, "setcurrent") | ||
| 86 | S_(SECCLASS_PROCESS, PROCESS__EXECMEM, "execmem") | ||
| 87 | S_(SECCLASS_PROCESS, PROCESS__EXECSTACK, "execstack") | ||
| 88 | S_(SECCLASS_PROCESS, PROCESS__EXECHEAP, "execheap") | ||
| 89 | S_(SECCLASS_PROCESS, PROCESS__SETKEYCREATE, "setkeycreate") | ||
| 90 | S_(SECCLASS_PROCESS, PROCESS__SETSOCKCREATE, "setsockcreate") | ||
| 91 | S_(SECCLASS_MSGQ, MSGQ__ENQUEUE, "enqueue") | ||
| 92 | S_(SECCLASS_MSG, MSG__SEND, "send") | ||
| 93 | S_(SECCLASS_MSG, MSG__RECEIVE, "receive") | ||
| 94 | S_(SECCLASS_SHM, SHM__LOCK, "lock") | ||
| 95 | S_(SECCLASS_SECURITY, SECURITY__COMPUTE_AV, "compute_av") | ||
| 96 | S_(SECCLASS_SECURITY, SECURITY__COMPUTE_CREATE, "compute_create") | ||
| 97 | S_(SECCLASS_SECURITY, SECURITY__COMPUTE_MEMBER, "compute_member") | ||
| 98 | S_(SECCLASS_SECURITY, SECURITY__CHECK_CONTEXT, "check_context") | ||
| 99 | S_(SECCLASS_SECURITY, SECURITY__LOAD_POLICY, "load_policy") | ||
| 100 | S_(SECCLASS_SECURITY, SECURITY__COMPUTE_RELABEL, "compute_relabel") | ||
| 101 | S_(SECCLASS_SECURITY, SECURITY__COMPUTE_USER, "compute_user") | ||
| 102 | S_(SECCLASS_SECURITY, SECURITY__SETENFORCE, "setenforce") | ||
| 103 | S_(SECCLASS_SECURITY, SECURITY__SETBOOL, "setbool") | ||
| 104 | S_(SECCLASS_SECURITY, SECURITY__SETSECPARAM, "setsecparam") | ||
| 105 | S_(SECCLASS_SECURITY, SECURITY__SETCHECKREQPROT, "setcheckreqprot") | ||
| 106 | S_(SECCLASS_SYSTEM, SYSTEM__IPC_INFO, "ipc_info") | ||
| 107 | S_(SECCLASS_SYSTEM, SYSTEM__SYSLOG_READ, "syslog_read") | ||
| 108 | S_(SECCLASS_SYSTEM, SYSTEM__SYSLOG_MOD, "syslog_mod") | ||
| 109 | S_(SECCLASS_SYSTEM, SYSTEM__SYSLOG_CONSOLE, "syslog_console") | ||
| 110 | S_(SECCLASS_SYSTEM, SYSTEM__MODULE_REQUEST, "module_request") | ||
| 111 | S_(SECCLASS_CAPABILITY, CAPABILITY__CHOWN, "chown") | ||
| 112 | S_(SECCLASS_CAPABILITY, CAPABILITY__DAC_OVERRIDE, "dac_override") | ||
| 113 | S_(SECCLASS_CAPABILITY, CAPABILITY__DAC_READ_SEARCH, "dac_read_search") | ||
| 114 | S_(SECCLASS_CAPABILITY, CAPABILITY__FOWNER, "fowner") | ||
| 115 | S_(SECCLASS_CAPABILITY, CAPABILITY__FSETID, "fsetid") | ||
| 116 | S_(SECCLASS_CAPABILITY, CAPABILITY__KILL, "kill") | ||
| 117 | S_(SECCLASS_CAPABILITY, CAPABILITY__SETGID, "setgid") | ||
| 118 | S_(SECCLASS_CAPABILITY, CAPABILITY__SETUID, "setuid") | ||
| 119 | S_(SECCLASS_CAPABILITY, CAPABILITY__SETPCAP, "setpcap") | ||
| 120 | S_(SECCLASS_CAPABILITY, CAPABILITY__LINUX_IMMUTABLE, "linux_immutable") | ||
| 121 | S_(SECCLASS_CAPABILITY, CAPABILITY__NET_BIND_SERVICE, "net_bind_service") | ||
| 122 | S_(SECCLASS_CAPABILITY, CAPABILITY__NET_BROADCAST, "net_broadcast") | ||
| 123 | S_(SECCLASS_CAPABILITY, CAPABILITY__NET_ADMIN, "net_admin") | ||
| 124 | S_(SECCLASS_CAPABILITY, CAPABILITY__NET_RAW, "net_raw") | ||
| 125 | S_(SECCLASS_CAPABILITY, CAPABILITY__IPC_LOCK, "ipc_lock") | ||
| 126 | S_(SECCLASS_CAPABILITY, CAPABILITY__IPC_OWNER, "ipc_owner") | ||
| 127 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_MODULE, "sys_module") | ||
| 128 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_RAWIO, "sys_rawio") | ||
| 129 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_CHROOT, "sys_chroot") | ||
| 130 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_PTRACE, "sys_ptrace") | ||
| 131 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_PACCT, "sys_pacct") | ||
| 132 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_ADMIN, "sys_admin") | ||
| 133 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_BOOT, "sys_boot") | ||
| 134 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_NICE, "sys_nice") | ||
| 135 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_RESOURCE, "sys_resource") | ||
| 136 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_TIME, "sys_time") | ||
| 137 | S_(SECCLASS_CAPABILITY, CAPABILITY__SYS_TTY_CONFIG, "sys_tty_config") | ||
| 138 | S_(SECCLASS_CAPABILITY, CAPABILITY__MKNOD, "mknod") | ||
| 139 | S_(SECCLASS_CAPABILITY, CAPABILITY__LEASE, "lease") | ||
| 140 | S_(SECCLASS_CAPABILITY, CAPABILITY__AUDIT_WRITE, "audit_write") | ||
| 141 | S_(SECCLASS_CAPABILITY, CAPABILITY__AUDIT_CONTROL, "audit_control") | ||
| 142 | S_(SECCLASS_CAPABILITY, CAPABILITY__SETFCAP, "setfcap") | ||
| 143 | S_(SECCLASS_CAPABILITY2, CAPABILITY2__MAC_OVERRIDE, "mac_override") | ||
| 144 | S_(SECCLASS_CAPABILITY2, CAPABILITY2__MAC_ADMIN, "mac_admin") | ||
| 145 | S_(SECCLASS_NETLINK_ROUTE_SOCKET, NETLINK_ROUTE_SOCKET__NLMSG_READ, "nlmsg_read") | ||
| 146 | S_(SECCLASS_NETLINK_ROUTE_SOCKET, NETLINK_ROUTE_SOCKET__NLMSG_WRITE, "nlmsg_write") | ||
| 147 | S_(SECCLASS_NETLINK_FIREWALL_SOCKET, NETLINK_FIREWALL_SOCKET__NLMSG_READ, "nlmsg_read") | ||
| 148 | S_(SECCLASS_NETLINK_FIREWALL_SOCKET, NETLINK_FIREWALL_SOCKET__NLMSG_WRITE, "nlmsg_write") | ||
| 149 | S_(SECCLASS_NETLINK_TCPDIAG_SOCKET, NETLINK_TCPDIAG_SOCKET__NLMSG_READ, "nlmsg_read") | ||
| 150 | S_(SECCLASS_NETLINK_TCPDIAG_SOCKET, NETLINK_TCPDIAG_SOCKET__NLMSG_WRITE, "nlmsg_write") | ||
| 151 | S_(SECCLASS_NETLINK_XFRM_SOCKET, NETLINK_XFRM_SOCKET__NLMSG_READ, "nlmsg_read") | ||
| 152 | S_(SECCLASS_NETLINK_XFRM_SOCKET, NETLINK_XFRM_SOCKET__NLMSG_WRITE, "nlmsg_write") | ||
| 153 | S_(SECCLASS_NETLINK_AUDIT_SOCKET, NETLINK_AUDIT_SOCKET__NLMSG_READ, "nlmsg_read") | ||
| 154 | S_(SECCLASS_NETLINK_AUDIT_SOCKET, NETLINK_AUDIT_SOCKET__NLMSG_WRITE, "nlmsg_write") | ||
| 155 | S_(SECCLASS_NETLINK_AUDIT_SOCKET, NETLINK_AUDIT_SOCKET__NLMSG_RELAY, "nlmsg_relay") | ||
| 156 | S_(SECCLASS_NETLINK_AUDIT_SOCKET, NETLINK_AUDIT_SOCKET__NLMSG_READPRIV, "nlmsg_readpriv") | ||
| 157 | S_(SECCLASS_NETLINK_AUDIT_SOCKET, NETLINK_AUDIT_SOCKET__NLMSG_TTY_AUDIT, "nlmsg_tty_audit") | ||
| 158 | S_(SECCLASS_NETLINK_IP6FW_SOCKET, NETLINK_IP6FW_SOCKET__NLMSG_READ, "nlmsg_read") | ||
| 159 | S_(SECCLASS_NETLINK_IP6FW_SOCKET, NETLINK_IP6FW_SOCKET__NLMSG_WRITE, "nlmsg_write") | ||
| 160 | S_(SECCLASS_ASSOCIATION, ASSOCIATION__SENDTO, "sendto") | ||
| 161 | S_(SECCLASS_ASSOCIATION, ASSOCIATION__RECVFROM, "recvfrom") | ||
| 162 | S_(SECCLASS_ASSOCIATION, ASSOCIATION__SETCONTEXT, "setcontext") | ||
| 163 | S_(SECCLASS_ASSOCIATION, ASSOCIATION__POLMATCH, "polmatch") | ||
| 164 | S_(SECCLASS_PACKET, PACKET__SEND, "send") | ||
| 165 | S_(SECCLASS_PACKET, PACKET__RECV, "recv") | ||
| 166 | S_(SECCLASS_PACKET, PACKET__RELABELTO, "relabelto") | ||
| 167 | S_(SECCLASS_PACKET, PACKET__FLOW_IN, "flow_in") | ||
| 168 | S_(SECCLASS_PACKET, PACKET__FLOW_OUT, "flow_out") | ||
| 169 | S_(SECCLASS_PACKET, PACKET__FORWARD_IN, "forward_in") | ||
| 170 | S_(SECCLASS_PACKET, PACKET__FORWARD_OUT, "forward_out") | ||
| 171 | S_(SECCLASS_KEY, KEY__VIEW, "view") | ||
| 172 | S_(SECCLASS_KEY, KEY__READ, "read") | ||
| 173 | S_(SECCLASS_KEY, KEY__WRITE, "write") | ||
| 174 | S_(SECCLASS_KEY, KEY__SEARCH, "search") | ||
| 175 | S_(SECCLASS_KEY, KEY__LINK, "link") | ||
| 176 | S_(SECCLASS_KEY, KEY__SETATTR, "setattr") | ||
| 177 | S_(SECCLASS_KEY, KEY__CREATE, "create") | ||
| 178 | S_(SECCLASS_DCCP_SOCKET, DCCP_SOCKET__NODE_BIND, "node_bind") | ||
| 179 | S_(SECCLASS_DCCP_SOCKET, DCCP_SOCKET__NAME_CONNECT, "name_connect") | ||
| 180 | S_(SECCLASS_MEMPROTECT, MEMPROTECT__MMAP_ZERO, "mmap_zero") | ||
| 181 | S_(SECCLASS_PEER, PEER__RECV, "recv") | ||
| 182 | S_(SECCLASS_KERNEL_SERVICE, KERNEL_SERVICE__USE_AS_OVERRIDE, "use_as_override") | ||
| 183 | S_(SECCLASS_KERNEL_SERVICE, KERNEL_SERVICE__CREATE_FILES_AS, "create_files_as") | ||
diff --git a/security/selinux/include/av_permissions.h b/security/selinux/include/av_permissions.h deleted file mode 100644 index 0546d616ccac..000000000000 --- a/security/selinux/include/av_permissions.h +++ /dev/null | |||
| @@ -1,870 +0,0 @@ | |||
| 1 | /* This file is automatically generated. Do not edit. */ | ||
| 2 | #define COMMON_FILE__IOCTL 0x00000001UL | ||
| 3 | #define COMMON_FILE__READ 0x00000002UL | ||
| 4 | #define COMMON_FILE__WRITE 0x00000004UL | ||
| 5 | #define COMMON_FILE__CREATE 0x00000008UL | ||
| 6 | #define COMMON_FILE__GETATTR 0x00000010UL | ||
| 7 | #define COMMON_FILE__SETATTR 0x00000020UL | ||
| 8 | #define COMMON_FILE__LOCK 0x00000040UL | ||
| 9 | #define COMMON_FILE__RELABELFROM 0x00000080UL | ||
| 10 | #define COMMON_FILE__RELABELTO 0x00000100UL | ||
| 11 | #define COMMON_FILE__APPEND 0x00000200UL | ||
| 12 | #define COMMON_FILE__UNLINK 0x00000400UL | ||
| 13 | #define COMMON_FILE__LINK 0x00000800UL | ||
| 14 | #define COMMON_FILE__RENAME 0x00001000UL | ||
| 15 | #define COMMON_FILE__EXECUTE 0x00002000UL | ||
| 16 | #define COMMON_FILE__SWAPON 0x00004000UL | ||
| 17 | #define COMMON_FILE__QUOTAON 0x00008000UL | ||
| 18 | #define COMMON_FILE__MOUNTON 0x00010000UL | ||
| 19 | #define COMMON_SOCKET__IOCTL 0x00000001UL | ||
| 20 | #define COMMON_SOCKET__READ 0x00000002UL | ||
| 21 | #define COMMON_SOCKET__WRITE 0x00000004UL | ||
| 22 | #define COMMON_SOCKET__CREATE 0x00000008UL | ||
| 23 | #define COMMON_SOCKET__GETATTR 0x00000010UL | ||
| 24 | #define COMMON_SOCKET__SETATTR 0x00000020UL | ||
| 25 | #define COMMON_SOCKET__LOCK 0x00000040UL | ||
| 26 | #define COMMON_SOCKET__RELABELFROM 0x00000080UL | ||
| 27 | #define COMMON_SOCKET__RELABELTO 0x00000100UL | ||
| 28 | #define COMMON_SOCKET__APPEND 0x00000200UL | ||
| 29 | #define COMMON_SOCKET__BIND 0x00000400UL | ||
| 30 | #define COMMON_SOCKET__CONNECT 0x00000800UL | ||
| 31 | #define COMMON_SOCKET__LISTEN 0x00001000UL | ||
| 32 | #define COMMON_SOCKET__ACCEPT 0x00002000UL | ||
| 33 | #define COMMON_SOCKET__GETOPT 0x00004000UL | ||
| 34 | #define COMMON_SOCKET__SETOPT 0x00008000UL | ||
| 35 | #define COMMON_SOCKET__SHUTDOWN 0x00010000UL | ||
| 36 | #define COMMON_SOCKET__RECVFROM 0x00020000UL | ||
| 37 | #define COMMON_SOCKET__SENDTO 0x00040000UL | ||
| 38 | #define COMMON_SOCKET__RECV_MSG 0x00080000UL | ||
| 39 | #define COMMON_SOCKET__SEND_MSG 0x00100000UL | ||
| 40 | #define COMMON_SOCKET__NAME_BIND 0x00200000UL | ||
| 41 | #define COMMON_IPC__CREATE 0x00000001UL | ||
| 42 | #define COMMON_IPC__DESTROY 0x00000002UL | ||
| 43 | #define COMMON_IPC__GETATTR 0x00000004UL | ||
| 44 | #define COMMON_IPC__SETATTR 0x00000008UL | ||
| 45 | #define COMMON_IPC__READ 0x00000010UL | ||
| 46 | #define COMMON_IPC__WRITE 0x00000020UL | ||
| 47 | #define COMMON_IPC__ASSOCIATE 0x00000040UL | ||
| 48 | #define COMMON_IPC__UNIX_READ 0x00000080UL | ||
| 49 | #define COMMON_IPC__UNIX_WRITE 0x00000100UL | ||
| 50 | #define FILESYSTEM__MOUNT 0x00000001UL | ||
| 51 | #define FILESYSTEM__REMOUNT 0x00000002UL | ||
| 52 | #define FILESYSTEM__UNMOUNT 0x00000004UL | ||
| 53 | #define FILESYSTEM__GETATTR 0x00000008UL | ||
| 54 | #define FILESYSTEM__RELABELFROM 0x00000010UL | ||
| 55 | #define FILESYSTEM__RELABELTO 0x00000020UL | ||
| 56 | #define FILESYSTEM__TRANSITION 0x00000040UL | ||
| 57 | #define FILESYSTEM__ASSOCIATE 0x00000080UL | ||
| 58 | #define FILESYSTEM__QUOTAMOD 0x00000100UL | ||
| 59 | #define FILESYSTEM__QUOTAGET 0x00000200UL | ||
| 60 | #define DIR__IOCTL 0x00000001UL | ||
| 61 | #define DIR__READ 0x00000002UL | ||
| 62 | #define DIR__WRITE 0x00000004UL | ||
| 63 | #define DIR__CREATE 0x00000008UL | ||
| 64 | #define DIR__GETATTR 0x00000010UL | ||
| 65 | #define DIR__SETATTR 0x00000020UL | ||
| 66 | #define DIR__LOCK 0x00000040UL | ||
| 67 | #define DIR__RELABELFROM 0x00000080UL | ||
| 68 | #define DIR__RELABELTO 0x00000100UL | ||
| 69 | #define DIR__APPEND 0x00000200UL | ||
| 70 | #define DIR__UNLINK 0x00000400UL | ||
| 71 | #define DIR__LINK 0x00000800UL | ||
| 72 | #define DIR__RENAME 0x00001000UL | ||
| 73 | #define DIR__EXECUTE 0x00002000UL | ||
| 74 | #define DIR__SWAPON 0x00004000UL | ||
| 75 | #define DIR__QUOTAON 0x00008000UL | ||
| 76 | #define DIR__MOUNTON 0x00010000UL | ||
| 77 | #define DIR__ADD_NAME 0x00020000UL | ||
| 78 | #define DIR__REMOVE_NAME 0x00040000UL | ||
| 79 | #define DIR__REPARENT 0x00080000UL | ||
| 80 | #define DIR__SEARCH 0x00100000UL | ||
| 81 | #define DIR__RMDIR 0x00200000UL | ||
| 82 | #define DIR__OPEN 0x00400000UL | ||
| 83 | #define FILE__IOCTL 0x00000001UL | ||
| 84 | #define FILE__READ 0x00000002UL | ||
| 85 | #define FILE__WRITE 0x00000004UL | ||
| 86 | #define FILE__CREATE 0x00000008UL | ||
| 87 | #define FILE__GETATTR 0x00000010UL | ||
| 88 | #define FILE__SETATTR 0x00000020UL | ||
| 89 | #define FILE__LOCK 0x00000040UL | ||
| 90 | #define FILE__RELABELFROM 0x00000080UL | ||
| 91 | #define FILE__RELABELTO 0x00000100UL | ||
| 92 | #define FILE__APPEND 0x00000200UL | ||
| 93 | #define FILE__UNLINK 0x00000400UL | ||
| 94 | #define FILE__LINK 0x00000800UL | ||
| 95 | #define FILE__RENAME 0x00001000UL | ||
| 96 | #define FILE__EXECUTE 0x00002000UL | ||
| 97 | #define FILE__SWAPON 0x00004000UL | ||
| 98 | #define FILE__QUOTAON 0x00008000UL | ||
| 99 | #define FILE__MOUNTON 0x00010000UL | ||
| 100 | #define FILE__EXECUTE_NO_TRANS 0x00020000UL | ||
| 101 | #define FILE__ENTRYPOINT 0x00040000UL | ||
| 102 | #define FILE__EXECMOD 0x00080000UL | ||
| 103 | #define FILE__OPEN 0x00100000UL | ||
| 104 | #define LNK_FILE__IOCTL 0x00000001UL | ||
| 105 | #define LNK_FILE__READ 0x00000002UL | ||
| 106 | #define LNK_FILE__WRITE 0x00000004UL | ||
| 107 | #define LNK_FILE__CREATE 0x00000008UL | ||
| 108 | #define LNK_FILE__GETATTR 0x00000010UL | ||
| 109 | #define LNK_FILE__SETATTR 0x00000020UL | ||
| 110 | #define LNK_FILE__LOCK 0x00000040UL | ||
| 111 | #define LNK_FILE__RELABELFROM 0x00000080UL | ||
| 112 | #define LNK_FILE__RELABELTO 0x00000100UL | ||
| 113 | #define LNK_FILE__APPEND 0x00000200UL | ||
| 114 | #define LNK_FILE__UNLINK 0x00000400UL | ||
| 115 | #define LNK_FILE__LINK 0x00000800UL | ||
| 116 | #define LNK_FILE__RENAME 0x00001000UL | ||
| 117 | #define LNK_FILE__EXECUTE 0x00002000UL | ||
| 118 | #define LNK_FILE__SWAPON 0x00004000UL | ||
| 119 | #define LNK_FILE__QUOTAON 0x00008000UL | ||
| 120 | #define LNK_FILE__MOUNTON 0x00010000UL | ||
| 121 | #define CHR_FILE__IOCTL 0x00000001UL | ||
| 122 | #define CHR_FILE__READ 0x00000002UL | ||
| 123 | #define CHR_FILE__WRITE 0x00000004UL | ||
| 124 | #define CHR_FILE__CREATE 0x00000008UL | ||
| 125 | #define CHR_FILE__GETATTR 0x00000010UL | ||
| 126 | #define CHR_FILE__SETATTR 0x00000020UL | ||
| 127 | #define CHR_FILE__LOCK 0x00000040UL | ||
| 128 | #define CHR_FILE__RELABELFROM 0x00000080UL | ||
| 129 | #define CHR_FILE__RELABELTO 0x00000100UL | ||
| 130 | #define CHR_FILE__APPEND 0x00000200UL | ||
| 131 | #define CHR_FILE__UNLINK 0x00000400UL | ||
| 132 | #define CHR_FILE__LINK 0x00000800UL | ||
| 133 | #define CHR_FILE__RENAME 0x00001000UL | ||
| 134 | #define CHR_FILE__EXECUTE 0x00002000UL | ||
| 135 | #define CHR_FILE__SWAPON 0x00004000UL | ||
| 136 | #define CHR_FILE__QUOTAON 0x00008000UL | ||
| 137 | #define CHR_FILE__MOUNTON 0x00010000UL | ||
| 138 | #define CHR_FILE__EXECUTE_NO_TRANS 0x00020000UL | ||
| 139 | #define CHR_FILE__ENTRYPOINT 0x00040000UL | ||
| 140 | #define CHR_FILE__EXECMOD 0x00080000UL | ||
| 141 | #define CHR_FILE__OPEN 0x00100000UL | ||
| 142 | #define BLK_FILE__IOCTL 0x00000001UL | ||
| 143 | #define BLK_FILE__READ 0x00000002UL | ||
| 144 | #define BLK_FILE__WRITE 0x00000004UL | ||
| 145 | #define BLK_FILE__CREATE 0x00000008UL | ||
| 146 | #define BLK_FILE__GETATTR 0x00000010UL | ||
| 147 | #define BLK_FILE__SETATTR 0x00000020UL | ||
| 148 | #define BLK_FILE__LOCK 0x00000040UL | ||
| 149 | #define BLK_FILE__RELABELFROM 0x00000080UL | ||
| 150 | #define BLK_FILE__RELABELTO 0x00000100UL | ||
| 151 | #define BLK_FILE__APPEND 0x00000200UL | ||
| 152 | #define BLK_FILE__UNLINK 0x00000400UL | ||
| 153 | #define BLK_FILE__LINK 0x00000800UL | ||
| 154 | #define BLK_FILE__RENAME 0x00001000UL | ||
| 155 | #define BLK_FILE__EXECUTE 0x00002000UL | ||
| 156 | #define BLK_FILE__SWAPON 0x00004000UL | ||
| 157 | #define BLK_FILE__QUOTAON 0x00008000UL | ||
| 158 | #define BLK_FILE__MOUNTON 0x00010000UL | ||
| 159 | #define BLK_FILE__OPEN 0x00020000UL | ||
| 160 | #define SOCK_FILE__IOCTL 0x00000001UL | ||
| 161 | #define SOCK_FILE__READ 0x00000002UL | ||
| 162 | #define SOCK_FILE__WRITE 0x00000004UL | ||
| 163 | #define SOCK_FILE__CREATE 0x00000008UL | ||
| 164 | #define SOCK_FILE__GETATTR 0x00000010UL | ||
| 165 | #define SOCK_FILE__SETATTR 0x00000020UL | ||
| 166 | #define SOCK_FILE__LOCK 0x00000040UL | ||
| 167 | #define SOCK_FILE__RELABELFROM 0x00000080UL | ||
| 168 | #define SOCK_FILE__RELABELTO 0x00000100UL | ||
| 169 | #define SOCK_FILE__APPEND 0x00000200UL | ||
| 170 | #define SOCK_FILE__UNLINK 0x00000400UL | ||
| 171 | #define SOCK_FILE__LINK 0x00000800UL | ||
| 172 | #define SOCK_FILE__RENAME 0x00001000UL | ||
| 173 | #define SOCK_FILE__EXECUTE 0x00002000UL | ||
| 174 | #define SOCK_FILE__SWAPON 0x00004000UL | ||
| 175 | #define SOCK_FILE__QUOTAON 0x00008000UL | ||
| 176 | #define SOCK_FILE__MOUNTON 0x00010000UL | ||
| 177 | #define SOCK_FILE__OPEN 0x00020000UL | ||
| 178 | #define FIFO_FILE__IOCTL 0x00000001UL | ||
| 179 | #define FIFO_FILE__READ 0x00000002UL | ||
| 180 | #define FIFO_FILE__WRITE 0x00000004UL | ||
| 181 | #define FIFO_FILE__CREATE 0x00000008UL | ||
| 182 | #define FIFO_FILE__GETATTR 0x00000010UL | ||
| 183 | #define FIFO_FILE__SETATTR 0x00000020UL | ||
| 184 | #define FIFO_FILE__LOCK 0x00000040UL | ||
| 185 | #define FIFO_FILE__RELABELFROM 0x00000080UL | ||
| 186 | #define FIFO_FILE__RELABELTO 0x00000100UL | ||
| 187 | #define FIFO_FILE__APPEND 0x00000200UL | ||
| 188 | #define FIFO_FILE__UNLINK 0x00000400UL | ||
| 189 | #define FIFO_FILE__LINK 0x00000800UL | ||
| 190 | #define FIFO_FILE__RENAME 0x00001000UL | ||
| 191 | #define FIFO_FILE__EXECUTE 0x00002000UL | ||
| 192 | #define FIFO_FILE__SWAPON 0x00004000UL | ||
| 193 | #define FIFO_FILE__QUOTAON 0x00008000UL | ||
| 194 | #define FIFO_FILE__MOUNTON 0x00010000UL | ||
| 195 | #define FIFO_FILE__OPEN 0x00020000UL | ||
| 196 | #define FD__USE 0x00000001UL | ||
| 197 | #define SOCKET__IOCTL 0x00000001UL | ||
| 198 | #define SOCKET__READ 0x00000002UL | ||
| 199 | #define SOCKET__WRITE 0x00000004UL | ||
| 200 | #define SOCKET__CREATE 0x00000008UL | ||
| 201 | #define SOCKET__GETATTR 0x00000010UL | ||
| 202 | #define SOCKET__SETATTR 0x00000020UL | ||
| 203 | #define SOCKET__LOCK 0x00000040UL | ||
| 204 | #define SOCKET__RELABELFROM 0x00000080UL | ||
| 205 | #define SOCKET__RELABELTO 0x00000100UL | ||
| 206 | #define SOCKET__APPEND 0x00000200UL | ||
| 207 | #define SOCKET__BIND 0x00000400UL | ||
| 208 | #define SOCKET__CONNECT 0x00000800UL | ||
| 209 | #define SOCKET__LISTEN 0x00001000UL | ||
| 210 | #define SOCKET__ACCEPT 0x00002000UL | ||
| 211 | #define SOCKET__GETOPT 0x00004000UL | ||
| 212 | #define SOCKET__SETOPT 0x00008000UL | ||
| 213 | #define SOCKET__SHUTDOWN 0x00010000UL | ||
| 214 | #define SOCKET__RECVFROM 0x00020000UL | ||
| 215 | #define SOCKET__SENDTO 0x00040000UL | ||
| 216 | #define SOCKET__RECV_MSG 0x00080000UL | ||
| 217 | #define SOCKET__SEND_MSG 0x00100000UL | ||
| 218 | #define SOCKET__NAME_BIND 0x00200000UL | ||
| 219 | #define TCP_SOCKET__IOCTL 0x00000001UL | ||
| 220 | #define TCP_SOCKET__READ 0x00000002UL | ||
| 221 | #define TCP_SOCKET__WRITE 0x00000004UL | ||
| 222 | #define TCP_SOCKET__CREATE 0x00000008UL | ||
| 223 | #define TCP_SOCKET__GETATTR 0x00000010UL | ||
| 224 | #define TCP_SOCKET__SETATTR 0x00000020UL | ||
| 225 | #define TCP_SOCKET__LOCK 0x00000040UL | ||
| 226 | #define TCP_SOCKET__RELABELFROM 0x00000080UL | ||
| 227 | #define TCP_SOCKET__RELABELTO 0x00000100UL | ||
| 228 | #define TCP_SOCKET__APPEND 0x00000200UL | ||
| 229 | #define TCP_SOCKET__BIND 0x00000400UL | ||
| 230 | #define TCP_SOCKET__CONNECT 0x00000800UL | ||
| 231 | #define TCP_SOCKET__LISTEN 0x00001000UL | ||
| 232 | #define TCP_SOCKET__ACCEPT 0x00002000UL | ||
| 233 | #define TCP_SOCKET__GETOPT 0x00004000UL | ||
| 234 | #define TCP_SOCKET__SETOPT 0x00008000UL | ||
| 235 | #define TCP_SOCKET__SHUTDOWN 0x00010000UL | ||
| 236 | #define TCP_SOCKET__RECVFROM 0x00020000UL | ||
| 237 | #define TCP_SOCKET__SENDTO 0x00040000UL | ||
| 238 | #define TCP_SOCKET__RECV_MSG 0x00080000UL | ||
| 239 | #define TCP_SOCKET__SEND_MSG 0x00100000UL | ||
| 240 | #define TCP_SOCKET__NAME_BIND 0x00200000UL | ||
| 241 | #define TCP_SOCKET__CONNECTTO 0x00400000UL | ||
| 242 | #define TCP_SOCKET__NEWCONN 0x00800000UL | ||
| 243 | #define TCP_SOCKET__ACCEPTFROM 0x01000000UL | ||
| 244 | #define TCP_SOCKET__NODE_BIND 0x02000000UL | ||
| 245 | #define TCP_SOCKET__NAME_CONNECT 0x04000000UL | ||
| 246 | #define UDP_SOCKET__IOCTL 0x00000001UL | ||
| 247 | #define UDP_SOCKET__READ 0x00000002UL | ||
| 248 | #define UDP_SOCKET__WRITE 0x00000004UL | ||
| 249 | #define UDP_SOCKET__CREATE 0x00000008UL | ||
| 250 | #define UDP_SOCKET__GETATTR 0x00000010UL | ||
| 251 | #define UDP_SOCKET__SETATTR 0x00000020UL | ||
| 252 | #define UDP_SOCKET__LOCK 0x00000040UL | ||
| 253 | #define UDP_SOCKET__RELABELFROM 0x00000080UL | ||
| 254 | #define UDP_SOCKET__RELABELTO 0x00000100UL | ||
| 255 | #define UDP_SOCKET__APPEND 0x00000200UL | ||
| 256 | #define UDP_SOCKET__BIND 0x00000400UL | ||
| 257 | #define UDP_SOCKET__CONNECT 0x00000800UL | ||
| 258 | #define UDP_SOCKET__LISTEN 0x00001000UL | ||
| 259 | #define UDP_SOCKET__ACCEPT 0x00002000UL | ||
| 260 | #define UDP_SOCKET__GETOPT 0x00004000UL | ||
| 261 | #define UDP_SOCKET__SETOPT 0x00008000UL | ||
| 262 | #define UDP_SOCKET__SHUTDOWN 0x00010000UL | ||
| 263 | #define UDP_SOCKET__RECVFROM 0x00020000UL | ||
| 264 | #define UDP_SOCKET__SENDTO 0x00040000UL | ||
| 265 | #define UDP_SOCKET__RECV_MSG 0x00080000UL | ||
| 266 | #define UDP_SOCKET__SEND_MSG 0x00100000UL | ||
| 267 | #define UDP_SOCKET__NAME_BIND 0x00200000UL | ||
| 268 | #define UDP_SOCKET__NODE_BIND 0x00400000UL | ||
| 269 | #define RAWIP_SOCKET__IOCTL 0x00000001UL | ||
| 270 | #define RAWIP_SOCKET__READ 0x00000002UL | ||
| 271 | #define RAWIP_SOCKET__WRITE 0x00000004UL | ||
| 272 | #define RAWIP_SOCKET__CREATE 0x00000008UL | ||
| 273 | #define RAWIP_SOCKET__GETATTR 0x00000010UL | ||
| 274 | #define RAWIP_SOCKET__SETATTR 0x00000020UL | ||
| 275 | #define RAWIP_SOCKET__LOCK 0x00000040UL | ||
| 276 | #define RAWIP_SOCKET__RELABELFROM 0x00000080UL | ||
| 277 | #define RAWIP_SOCKET__RELABELTO 0x00000100UL | ||
| 278 | #define RAWIP_SOCKET__APPEND 0x00000200UL | ||
| 279 | #define RAWIP_SOCKET__BIND 0x00000400UL | ||
| 280 | #define RAWIP_SOCKET__CONNECT 0x00000800UL | ||
| 281 | #define RAWIP_SOCKET__LISTEN 0x00001000UL | ||
| 282 | #define RAWIP_SOCKET__ACCEPT 0x00002000UL | ||
| 283 | #define RAWIP_SOCKET__GETOPT 0x00004000UL | ||
| 284 | #define RAWIP_SOCKET__SETOPT 0x00008000UL | ||
| 285 | #define RAWIP_SOCKET__SHUTDOWN 0x00010000UL | ||
| 286 | #define RAWIP_SOCKET__RECVFROM 0x00020000UL | ||
| 287 | #define RAWIP_SOCKET__SENDTO 0x00040000UL | ||
| 288 | #define RAWIP_SOCKET__RECV_MSG 0x00080000UL | ||
| 289 | #define RAWIP_SOCKET__SEND_MSG 0x00100000UL | ||
| 290 | #define RAWIP_SOCKET__NAME_BIND 0x00200000UL | ||
| 291 | #define RAWIP_SOCKET__NODE_BIND 0x00400000UL | ||
| 292 | #define NODE__TCP_RECV 0x00000001UL | ||
| 293 | #define NODE__TCP_SEND 0x00000002UL | ||
| 294 | #define NODE__UDP_RECV 0x00000004UL | ||
| 295 | #define NODE__UDP_SEND 0x00000008UL | ||
| 296 | #define NODE__RAWIP_RECV 0x00000010UL | ||
| 297 | #define NODE__RAWIP_SEND 0x00000020UL | ||
| 298 | #define NODE__ENFORCE_DEST 0x00000040UL | ||
| 299 | #define NODE__DCCP_RECV 0x00000080UL | ||
| 300 | #define NODE__DCCP_SEND 0x00000100UL | ||
| 301 | #define NODE__RECVFROM 0x00000200UL | ||
| 302 | #define NODE__SENDTO 0x00000400UL | ||
| 303 | #define NETIF__TCP_RECV 0x00000001UL | ||
| 304 | #define NETIF__TCP_SEND 0x00000002UL | ||
| 305 | #define NETIF__UDP_RECV 0x00000004UL | ||
| 306 | #define NETIF__UDP_SEND 0x00000008UL | ||
| 307 | #define NETIF__RAWIP_RECV 0x00000010UL | ||
| 308 | #define NETIF__RAWIP_SEND 0x00000020UL | ||
| 309 | #define NETIF__DCCP_RECV 0x00000040UL | ||
| 310 | #define NETIF__DCCP_SEND 0x00000080UL | ||
| 311 | #define NETIF__INGRESS 0x00000100UL | ||
| 312 | #define NETIF__EGRESS 0x00000200UL | ||
| 313 | #define NETLINK_SOCKET__IOCTL 0x00000001UL | ||
| 314 | #define NETLINK_SOCKET__READ 0x00000002UL | ||
| 315 | #define NETLINK_SOCKET__WRITE 0x00000004UL | ||
| 316 | #define NETLINK_SOCKET__CREATE 0x00000008UL | ||
| 317 | #define NETLINK_SOCKET__GETATTR 0x00000010UL | ||
| 318 | #define NETLINK_SOCKET__SETATTR 0x00000020UL | ||
| 319 | #define NETLINK_SOCKET__LOCK 0x00000040UL | ||
| 320 | #define NETLINK_SOCKET__RELABELFROM 0x00000080UL | ||
| 321 | #define NETLINK_SOCKET__RELABELTO 0x00000100UL | ||
| 322 | #define NETLINK_SOCKET__APPEND 0x00000200UL | ||
| 323 | #define NETLINK_SOCKET__BIND 0x00000400UL | ||
| 324 | #define NETLINK_SOCKET__CONNECT 0x00000800UL | ||
| 325 | #define NETLINK_SOCKET__LISTEN 0x00001000UL | ||
| 326 | #define NETLINK_SOCKET__ACCEPT 0x00002000UL | ||
| 327 | #define NETLINK_SOCKET__GETOPT 0x00004000UL | ||
| 328 | #define NETLINK_SOCKET__SETOPT 0x00008000UL | ||
| 329 | #define NETLINK_SOCKET__SHUTDOWN 0x00010000UL | ||
| 330 | #define NETLINK_SOCKET__RECVFROM 0x00020000UL | ||
| 331 | #define NETLINK_SOCKET__SENDTO 0x00040000UL | ||
| 332 | #define NETLINK_SOCKET__RECV_MSG 0x00080000UL | ||
| 333 | #define NETLINK_SOCKET__SEND_MSG 0x00100000UL | ||
| 334 | #define NETLINK_SOCKET__NAME_BIND 0x00200000UL | ||
| 335 | #define PACKET_SOCKET__IOCTL 0x00000001UL | ||
| 336 | #define PACKET_SOCKET__READ 0x00000002UL | ||
| 337 | #define PACKET_SOCKET__WRITE 0x00000004UL | ||
| 338 | #define PACKET_SOCKET__CREATE 0x00000008UL | ||
| 339 | #define PACKET_SOCKET__GETATTR 0x00000010UL | ||
| 340 | #define PACKET_SOCKET__SETATTR 0x00000020UL | ||
| 341 | #define PACKET_SOCKET__LOCK 0x00000040UL | ||
| 342 | #define PACKET_SOCKET__RELABELFROM 0x00000080UL | ||
| 343 | #define PACKET_SOCKET__RELABELTO 0x00000100UL | ||
| 344 | #define PACKET_SOCKET__APPEND 0x00000200UL | ||
| 345 | #define PACKET_SOCKET__BIND 0x00000400UL | ||
| 346 | #define PACKET_SOCKET__CONNECT 0x00000800UL | ||
| 347 | #define PACKET_SOCKET__LISTEN 0x00001000UL | ||
| 348 | #define PACKET_SOCKET__ACCEPT 0x00002000UL | ||
| 349 | #define PACKET_SOCKET__GETOPT 0x00004000UL | ||
| 350 | #define PACKET_SOCKET__SETOPT 0x00008000UL | ||
| 351 | #define PACKET_SOCKET__SHUTDOWN 0x00010000UL | ||
| 352 | #define PACKET_SOCKET__RECVFROM 0x00020000UL | ||
| 353 | #define PACKET_SOCKET__SENDTO 0x00040000UL | ||
| 354 | #define PACKET_SOCKET__RECV_MSG 0x00080000UL | ||
| 355 | #define PACKET_SOCKET__SEND_MSG 0x00100000UL | ||
| 356 | #define PACKET_SOCKET__NAME_BIND 0x00200000UL | ||
| 357 | #define KEY_SOCKET__IOCTL 0x00000001UL | ||
| 358 | #define KEY_SOCKET__READ 0x00000002UL | ||
| 359 | #define KEY_SOCKET__WRITE 0x00000004UL | ||
| 360 | #define KEY_SOCKET__CREATE 0x00000008UL | ||
| 361 | #define KEY_SOCKET__GETATTR 0x00000010UL | ||
| 362 | #define KEY_SOCKET__SETATTR 0x00000020UL | ||
| 363 | #define KEY_SOCKET__LOCK 0x00000040UL | ||
| 364 | #define KEY_SOCKET__RELABELFROM 0x00000080UL | ||
| 365 | #define KEY_SOCKET__RELABELTO 0x00000100UL | ||
| 366 | #define KEY_SOCKET__APPEND 0x00000200UL | ||
| 367 | #define KEY_SOCKET__BIND 0x00000400UL | ||
| 368 | #define KEY_SOCKET__CONNECT 0x00000800UL | ||
| 369 | #define KEY_SOCKET__LISTEN 0x00001000UL | ||
| 370 | #define KEY_SOCKET__ACCEPT 0x00002000UL | ||
| 371 | #define KEY_SOCKET__GETOPT 0x00004000UL | ||
| 372 | #define KEY_SOCKET__SETOPT 0x00008000UL | ||
| 373 | #define KEY_SOCKET__SHUTDOWN 0x00010000UL | ||
| 374 | #define KEY_SOCKET__RECVFROM 0x00020000UL | ||
| 375 | #define KEY_SOCKET__SENDTO 0x00040000UL | ||
| 376 | #define KEY_SOCKET__RECV_MSG 0x00080000UL | ||
| 377 | #define KEY_SOCKET__SEND_MSG 0x00100000UL | ||
| 378 | #define KEY_SOCKET__NAME_BIND 0x00200000UL | ||
| 379 | #define UNIX_STREAM_SOCKET__IOCTL 0x00000001UL | ||
| 380 | #define UNIX_STREAM_SOCKET__READ 0x00000002UL | ||
| 381 | #define UNIX_STREAM_SOCKET__WRITE 0x00000004UL | ||
| 382 | #define UNIX_STREAM_SOCKET__CREATE 0x00000008UL | ||
| 383 | #define UNIX_STREAM_SOCKET__GETATTR 0x00000010UL | ||
| 384 | #define UNIX_STREAM_SOCKET__SETATTR 0x00000020UL | ||
| 385 | #define UNIX_STREAM_SOCKET__LOCK 0x00000040UL | ||
| 386 | #define UNIX_STREAM_SOCKET__RELABELFROM 0x00000080UL | ||
| 387 | #define UNIX_STREAM_SOCKET__RELABELTO 0x00000100UL | ||
| 388 | #define UNIX_STREAM_SOCKET__APPEND 0x00000200UL | ||
| 389 | #define UNIX_STREAM_SOCKET__BIND 0x00000400UL | ||
| 390 | #define UNIX_STREAM_SOCKET__CONNECT 0x00000800UL | ||
| 391 | #define UNIX_STREAM_SOCKET__LISTEN 0x00001000UL | ||
| 392 | #define UNIX_STREAM_SOCKET__ACCEPT 0x00002000UL | ||
| 393 | #define UNIX_STREAM_SOCKET__GETOPT 0x00004000UL | ||
| 394 | #define UNIX_STREAM_SOCKET__SETOPT 0x00008000UL | ||
| 395 | #define UNIX_STREAM_SOCKET__SHUTDOWN 0x00010000UL | ||
| 396 | #define UNIX_STREAM_SOCKET__RECVFROM 0x00020000UL | ||
| 397 | #define UNIX_STREAM_SOCKET__SENDTO 0x00040000UL | ||
| 398 | #define UNIX_STREAM_SOCKET__RECV_MSG 0x00080000UL | ||
| 399 | #define UNIX_STREAM_SOCKET__SEND_MSG 0x00100000UL | ||
| 400 | #define UNIX_STREAM_SOCKET__NAME_BIND 0x00200000UL | ||
| 401 | #define UNIX_STREAM_SOCKET__CONNECTTO 0x00400000UL | ||
| 402 | #define UNIX_STREAM_SOCKET__NEWCONN 0x00800000UL | ||
| 403 | #define UNIX_STREAM_SOCKET__ACCEPTFROM 0x01000000UL | ||
| 404 | #define UNIX_DGRAM_SOCKET__IOCTL 0x00000001UL | ||
| 405 | #define UNIX_DGRAM_SOCKET__READ 0x00000002UL | ||
| 406 | #define UNIX_DGRAM_SOCKET__WRITE 0x00000004UL | ||
| 407 | #define UNIX_DGRAM_SOCKET__CREATE 0x00000008UL | ||
| 408 | #define UNIX_DGRAM_SOCKET__GETATTR 0x00000010UL | ||
| 409 | #define UNIX_DGRAM_SOCKET__SETATTR 0x00000020UL | ||
| 410 | #define UNIX_DGRAM_SOCKET__LOCK 0x00000040UL | ||
| 411 | #define UNIX_DGRAM_SOCKET__RELABELFROM 0x00000080UL | ||
| 412 | #define UNIX_DGRAM_SOCKET__RELABELTO 0x00000100UL | ||
| 413 | #define UNIX_DGRAM_SOCKET__APPEND 0x00000200UL | ||
| 414 | #define UNIX_DGRAM_SOCKET__BIND 0x00000400UL | ||
| 415 | #define UNIX_DGRAM_SOCKET__CONNECT 0x00000800UL | ||
| 416 | #define UNIX_DGRAM_SOCKET__LISTEN 0x00001000UL | ||
| 417 | #define UNIX_DGRAM_SOCKET__ACCEPT 0x00002000UL | ||
| 418 | #define UNIX_DGRAM_SOCKET__GETOPT 0x00004000UL | ||
| 419 | #define UNIX_DGRAM_SOCKET__SETOPT 0x00008000UL | ||
| 420 | #define UNIX_DGRAM_SOCKET__SHUTDOWN 0x00010000UL | ||
| 421 | #define UNIX_DGRAM_SOCKET__RECVFROM 0x00020000UL | ||
| 422 | #define UNIX_DGRAM_SOCKET__SENDTO 0x00040000UL | ||
| 423 | #define UNIX_DGRAM_SOCKET__RECV_MSG 0x00080000UL | ||
| 424 | #define UNIX_DGRAM_SOCKET__SEND_MSG 0x00100000UL | ||
| 425 | #define UNIX_DGRAM_SOCKET__NAME_BIND 0x00200000UL | ||
| 426 | #define TUN_SOCKET__IOCTL 0x00000001UL | ||
| 427 | #define TUN_SOCKET__READ 0x00000002UL | ||
| 428 | #define TUN_SOCKET__WRITE 0x00000004UL | ||
| 429 | #define TUN_SOCKET__CREATE 0x00000008UL | ||
| 430 | #define TUN_SOCKET__GETATTR 0x00000010UL | ||
| 431 | #define TUN_SOCKET__SETATTR 0x00000020UL | ||
| 432 | #define TUN_SOCKET__LOCK 0x00000040UL | ||
| 433 | #define TUN_SOCKET__RELABELFROM 0x00000080UL | ||
| 434 | #define TUN_SOCKET__RELABELTO 0x00000100UL | ||
| 435 | #define TUN_SOCKET__APPEND 0x00000200UL | ||
| 436 | #define TUN_SOCKET__BIND 0x00000400UL | ||
| 437 | #define TUN_SOCKET__CONNECT 0x00000800UL | ||
| 438 | #define TUN_SOCKET__LISTEN 0x00001000UL | ||
| 439 | #define TUN_SOCKET__ACCEPT 0x00002000UL | ||
| 440 | #define TUN_SOCKET__GETOPT 0x00004000UL | ||
| 441 | #define TUN_SOCKET__SETOPT 0x00008000UL | ||
| 442 | #define TUN_SOCKET__SHUTDOWN 0x00010000UL | ||
| 443 | #define TUN_SOCKET__RECVFROM 0x00020000UL | ||
| 444 | #define TUN_SOCKET__SENDTO 0x00040000UL | ||
| 445 | #define TUN_SOCKET__RECV_MSG 0x00080000UL | ||
| 446 | #define TUN_SOCKET__SEND_MSG 0x00100000UL | ||
| 447 | #define TUN_SOCKET__NAME_BIND 0x00200000UL | ||
| 448 | #define PROCESS__FORK 0x00000001UL | ||
| 449 | #define PROCESS__TRANSITION 0x00000002UL | ||
| 450 | #define PROCESS__SIGCHLD 0x00000004UL | ||
| 451 | #define PROCESS__SIGKILL 0x00000008UL | ||
| 452 | #define PROCESS__SIGSTOP 0x00000010UL | ||
| 453 | #define PROCESS__SIGNULL 0x00000020UL | ||
| 454 | #define PROCESS__SIGNAL 0x00000040UL | ||
| 455 | #define PROCESS__PTRACE 0x00000080UL | ||
| 456 | #define PROCESS__GETSCHED 0x00000100UL | ||
| 457 | #define PROCESS__SETSCHED 0x00000200UL | ||
| 458 | #define PROCESS__GETSESSION 0x00000400UL | ||
| 459 | #define PROCESS__GETPGID 0x00000800UL | ||
| 460 | #define PROCESS__SETPGID 0x00001000UL | ||
| 461 | #define PROCESS__GETCAP 0x00002000UL | ||
| 462 | #define PROCESS__SETCAP 0x00004000UL | ||
| 463 | #define PROCESS__SHARE 0x00008000UL | ||
| 464 | #define PROCESS__GETATTR 0x00010000UL | ||
| 465 | #define PROCESS__SETEXEC 0x00020000UL | ||
| 466 | #define PROCESS__SETFSCREATE 0x00040000UL | ||
| 467 | #define PROCESS__NOATSECURE 0x00080000UL | ||
| 468 | #define PROCESS__SIGINH 0x00100000UL | ||
| 469 | #define PROCESS__SETRLIMIT 0x00200000UL | ||
| 470 | #define PROCESS__RLIMITINH 0x00400000UL | ||
| 471 | #define PROCESS__DYNTRANSITION 0x00800000UL | ||
| 472 | #define PROCESS__SETCURRENT 0x01000000UL | ||
| 473 | #define PROCESS__EXECMEM 0x02000000UL | ||
| 474 | #define PROCESS__EXECSTACK 0x04000000UL | ||
| 475 | #define PROCESS__EXECHEAP 0x08000000UL | ||
| 476 | #define PROCESS__SETKEYCREATE 0x10000000UL | ||
| 477 | #define PROCESS__SETSOCKCREATE 0x20000000UL | ||
| 478 | #define IPC__CREATE 0x00000001UL | ||
| 479 | #define IPC__DESTROY 0x00000002UL | ||
| 480 | #define IPC__GETATTR 0x00000004UL | ||
| 481 | #define IPC__SETATTR 0x00000008UL | ||
| 482 | #define IPC__READ 0x00000010UL | ||
| 483 | #define IPC__WRITE 0x00000020UL | ||
| 484 | #define IPC__ASSOCIATE 0x00000040UL | ||
| 485 | #define IPC__UNIX_READ 0x00000080UL | ||
| 486 | #define IPC__UNIX_WRITE 0x00000100UL | ||
| 487 | #define SEM__CREATE 0x00000001UL | ||
| 488 | #define SEM__DESTROY 0x00000002UL | ||
| 489 | #define SEM__GETATTR 0x00000004UL | ||
| 490 | #define SEM__SETATTR 0x00000008UL | ||
| 491 | #define SEM__READ 0x00000010UL | ||
| 492 | #define SEM__WRITE 0x00000020UL | ||
| 493 | #define SEM__ASSOCIATE 0x00000040UL | ||
| 494 | #define SEM__UNIX_READ 0x00000080UL | ||
| 495 | #define SEM__UNIX_WRITE 0x00000100UL | ||
| 496 | #define MSGQ__CREATE 0x00000001UL | ||
| 497 | #define MSGQ__DESTROY 0x00000002UL | ||
| 498 | #define MSGQ__GETATTR 0x00000004UL | ||
| 499 | #define MSGQ__SETATTR 0x00000008UL | ||
| 500 | #define MSGQ__READ 0x00000010UL | ||
| 501 | #define MSGQ__WRITE 0x00000020UL | ||
| 502 | #define MSGQ__ASSOCIATE 0x00000040UL | ||
| 503 | #define MSGQ__UNIX_READ 0x00000080UL | ||
| 504 | #define MSGQ__UNIX_WRITE 0x00000100UL | ||
| 505 | #define MSGQ__ENQUEUE 0x00000200UL | ||
| 506 | #define MSG__SEND 0x00000001UL | ||
| 507 | #define MSG__RECEIVE 0x00000002UL | ||
| 508 | #define SHM__CREATE 0x00000001UL | ||
| 509 | #define SHM__DESTROY 0x00000002UL | ||
| 510 | #define SHM__GETATTR 0x00000004UL | ||
| 511 | #define SHM__SETATTR 0x00000008UL | ||
| 512 | #define SHM__READ 0x00000010UL | ||
| 513 | #define SHM__WRITE 0x00000020UL | ||
| 514 | #define SHM__ASSOCIATE 0x00000040UL | ||
| 515 | #define SHM__UNIX_READ 0x00000080UL | ||
| 516 | #define SHM__UNIX_WRITE 0x00000100UL | ||
| 517 | #define SHM__LOCK 0x00000200UL | ||
| 518 | #define SECURITY__COMPUTE_AV 0x00000001UL | ||
| 519 | #define SECURITY__COMPUTE_CREATE 0x00000002UL | ||
| 520 | #define SECURITY__COMPUTE_MEMBER 0x00000004UL | ||
| 521 | #define SECURITY__CHECK_CONTEXT 0x00000008UL | ||
| 522 | #define SECURITY__LOAD_POLICY 0x00000010UL | ||
| 523 | #define SECURITY__COMPUTE_RELABEL 0x00000020UL | ||
| 524 | #define SECURITY__COMPUTE_USER 0x00000040UL | ||
| 525 | #define SECURITY__SETENFORCE 0x00000080UL | ||
| 526 | #define SECURITY__SETBOOL 0x00000100UL | ||
| 527 | #define SECURITY__SETSECPARAM 0x00000200UL | ||
| 528 | #define SECURITY__SETCHECKREQPROT 0x00000400UL | ||
| 529 | #define SYSTEM__IPC_INFO 0x00000001UL | ||
| 530 | #define SYSTEM__SYSLOG_READ 0x00000002UL | ||
| 531 | #define SYSTEM__SYSLOG_MOD 0x00000004UL | ||
| 532 | #define SYSTEM__SYSLOG_CONSOLE 0x00000008UL | ||
| 533 | #define SYSTEM__MODULE_REQUEST 0x00000010UL | ||
| 534 | #define CAPABILITY__CHOWN 0x00000001UL | ||
| 535 | #define CAPABILITY__DAC_OVERRIDE 0x00000002UL | ||
| 536 | #define CAPABILITY__DAC_READ_SEARCH 0x00000004UL | ||
| 537 | #define CAPABILITY__FOWNER 0x00000008UL | ||
| 538 | #define CAPABILITY__FSETID 0x00000010UL | ||
| 539 | #define CAPABILITY__KILL 0x00000020UL | ||
| 540 | #define CAPABILITY__SETGID 0x00000040UL | ||
| 541 | #define CAPABILITY__SETUID 0x00000080UL | ||
| 542 | #define CAPABILITY__SETPCAP 0x00000100UL | ||
| 543 | #define CAPABILITY__LINUX_IMMUTABLE 0x00000200UL | ||
| 544 | #define CAPABILITY__NET_BIND_SERVICE 0x00000400UL | ||
| 545 | #define CAPABILITY__NET_BROADCAST 0x00000800UL | ||
| 546 | #define CAPABILITY__NET_ADMIN 0x00001000UL | ||
| 547 | #define CAPABILITY__NET_RAW 0x00002000UL | ||
| 548 | #define CAPABILITY__IPC_LOCK 0x00004000UL | ||
| 549 | #define CAPABILITY__IPC_OWNER 0x00008000UL | ||
| 550 | #define CAPABILITY__SYS_MODULE 0x00010000UL | ||
| 551 | #define CAPABILITY__SYS_RAWIO 0x00020000UL | ||
| 552 | #define CAPABILITY__SYS_CHROOT 0x00040000UL | ||
| 553 | #define CAPABILITY__SYS_PTRACE 0x00080000UL | ||
| 554 | #define CAPABILITY__SYS_PACCT 0x00100000UL | ||
| 555 | #define CAPABILITY__SYS_ADMIN 0x00200000UL | ||
| 556 | #define CAPABILITY__SYS_BOOT 0x00400000UL | ||
| 557 | #define CAPABILITY__SYS_NICE 0x00800000UL | ||
| 558 | #define CAPABILITY__SYS_RESOURCE 0x01000000UL | ||
| 559 | #define CAPABILITY__SYS_TIME 0x02000000UL | ||
| 560 | #define CAPABILITY__SYS_TTY_CONFIG 0x04000000UL | ||
| 561 | #define CAPABILITY__MKNOD 0x08000000UL | ||
| 562 | #define CAPABILITY__LEASE 0x10000000UL | ||
| 563 | #define CAPABILITY__AUDIT_WRITE 0x20000000UL | ||
| 564 | #define CAPABILITY__AUDIT_CONTROL 0x40000000UL | ||
| 565 | #define CAPABILITY__SETFCAP 0x80000000UL | ||
| 566 | #define CAPABILITY2__MAC_OVERRIDE 0x00000001UL | ||
| 567 | #define CAPABILITY2__MAC_ADMIN 0x00000002UL | ||
| 568 | #define NETLINK_ROUTE_SOCKET__IOCTL 0x00000001UL | ||
| 569 | #define NETLINK_ROUTE_SOCKET__READ 0x00000002UL | ||
| 570 | #define NETLINK_ROUTE_SOCKET__WRITE 0x00000004UL | ||
| 571 | #define NETLINK_ROUTE_SOCKET__CREATE 0x00000008UL | ||
| 572 | #define NETLINK_ROUTE_SOCKET__GETATTR 0x00000010UL | ||
| 573 | #define NETLINK_ROUTE_SOCKET__SETATTR 0x00000020UL | ||
| 574 | #define NETLINK_ROUTE_SOCKET__LOCK 0x00000040UL | ||
| 575 | #define NETLINK_ROUTE_SOCKET__RELABELFROM 0x00000080UL | ||
| 576 | #define NETLINK_ROUTE_SOCKET__RELABELTO 0x00000100UL | ||
| 577 | #define NETLINK_ROUTE_SOCKET__APPEND 0x00000200UL | ||
| 578 | #define NETLINK_ROUTE_SOCKET__BIND 0x00000400UL | ||
| 579 | #define NETLINK_ROUTE_SOCKET__CONNECT 0x00000800UL | ||
| 580 | #define NETLINK_ROUTE_SOCKET__LISTEN 0x00001000UL | ||
| 581 | #define NETLINK_ROUTE_SOCKET__ACCEPT 0x00002000UL | ||
| 582 | #define NETLINK_ROUTE_SOCKET__GETOPT 0x00004000UL | ||
| 583 | #define NETLINK_ROUTE_SOCKET__SETOPT 0x00008000UL | ||
| 584 | #define NETLINK_ROUTE_SOCKET__SHUTDOWN 0x00010000UL | ||
| 585 | #define NETLINK_ROUTE_SOCKET__RECVFROM 0x00020000UL | ||
| 586 | #define NETLINK_ROUTE_SOCKET__SENDTO 0x00040000UL | ||
| 587 | #define NETLINK_ROUTE_SOCKET__RECV_MSG 0x00080000UL | ||
| 588 | #define NETLINK_ROUTE_SOCKET__SEND_MSG 0x00100000UL | ||
| 589 | #define NETLINK_ROUTE_SOCKET__NAME_BIND 0x00200000UL | ||
| 590 | #define NETLINK_ROUTE_SOCKET__NLMSG_READ 0x00400000UL | ||
| 591 | #define NETLINK_ROUTE_SOCKET__NLMSG_WRITE 0x00800000UL | ||
| 592 | #define NETLINK_FIREWALL_SOCKET__IOCTL 0x00000001UL | ||
| 593 | #define NETLINK_FIREWALL_SOCKET__READ 0x00000002UL | ||
| 594 | #define NETLINK_FIREWALL_SOCKET__WRITE 0x00000004UL | ||
| 595 | #define NETLINK_FIREWALL_SOCKET__CREATE 0x00000008UL | ||
| 596 | #define NETLINK_FIREWALL_SOCKET__GETATTR 0x00000010UL | ||
| 597 | #define NETLINK_FIREWALL_SOCKET__SETATTR 0x00000020UL | ||
| 598 | #define NETLINK_FIREWALL_SOCKET__LOCK 0x00000040UL | ||
| 599 | #define NETLINK_FIREWALL_SOCKET__RELABELFROM 0x00000080UL | ||
| 600 | #define NETLINK_FIREWALL_SOCKET__RELABELTO 0x00000100UL | ||
| 601 | #define NETLINK_FIREWALL_SOCKET__APPEND 0x00000200UL | ||
| 602 | #define NETLINK_FIREWALL_SOCKET__BIND 0x00000400UL | ||
| 603 | #define NETLINK_FIREWALL_SOCKET__CONNECT 0x00000800UL | ||
| 604 | #define NETLINK_FIREWALL_SOCKET__LISTEN 0x00001000UL | ||
| 605 | #define NETLINK_FIREWALL_SOCKET__ACCEPT 0x00002000UL | ||
| 606 | #define NETLINK_FIREWALL_SOCKET__GETOPT 0x00004000UL | ||
| 607 | #define NETLINK_FIREWALL_SOCKET__SETOPT 0x00008000UL | ||
| 608 | #define NETLINK_FIREWALL_SOCKET__SHUTDOWN 0x00010000UL | ||
| 609 | #define NETLINK_FIREWALL_SOCKET__RECVFROM 0x00020000UL | ||
| 610 | #define NETLINK_FIREWALL_SOCKET__SENDTO 0x00040000UL | ||
| 611 | #define NETLINK_FIREWALL_SOCKET__RECV_MSG 0x00080000UL | ||
| 612 | #define NETLINK_FIREWALL_SOCKET__SEND_MSG 0x00100000UL | ||
| 613 | #define NETLINK_FIREWALL_SOCKET__NAME_BIND 0x00200000UL | ||
| 614 | #define NETLINK_FIREWALL_SOCKET__NLMSG_READ 0x00400000UL | ||
| 615 | #define NETLINK_FIREWALL_SOCKET__NLMSG_WRITE 0x00800000UL | ||
| 616 | #define NETLINK_TCPDIAG_SOCKET__IOCTL 0x00000001UL | ||
| 617 | #define NETLINK_TCPDIAG_SOCKET__READ 0x00000002UL | ||
| 618 | #define NETLINK_TCPDIAG_SOCKET__WRITE 0x00000004UL | ||
| 619 | #define NETLINK_TCPDIAG_SOCKET__CREATE 0x00000008UL | ||
| 620 | #define NETLINK_TCPDIAG_SOCKET__GETATTR 0x00000010UL | ||
| 621 | #define NETLINK_TCPDIAG_SOCKET__SETATTR 0x00000020UL | ||
| 622 | #define NETLINK_TCPDIAG_SOCKET__LOCK 0x00000040UL | ||
| 623 | #define NETLINK_TCPDIAG_SOCKET__RELABELFROM 0x00000080UL | ||
| 624 | #define NETLINK_TCPDIAG_SOCKET__RELABELTO 0x00000100UL | ||
| 625 | #define NETLINK_TCPDIAG_SOCKET__APPEND 0x00000200UL | ||
| 626 | #define NETLINK_TCPDIAG_SOCKET__BIND 0x00000400UL | ||
| 627 | #define NETLINK_TCPDIAG_SOCKET__CONNECT 0x00000800UL | ||
| 628 | #define NETLINK_TCPDIAG_SOCKET__LISTEN 0x00001000UL | ||
| 629 | #define NETLINK_TCPDIAG_SOCKET__ACCEPT 0x00002000UL | ||
| 630 | #define NETLINK_TCPDIAG_SOCKET__GETOPT 0x00004000UL | ||
| 631 | #define NETLINK_TCPDIAG_SOCKET__SETOPT 0x00008000UL | ||
| 632 | #define NETLINK_TCPDIAG_SOCKET__SHUTDOWN 0x00010000UL | ||
| 633 | #define NETLINK_TCPDIAG_SOCKET__RECVFROM 0x00020000UL | ||
| 634 | #define NETLINK_TCPDIAG_SOCKET__SENDTO 0x00040000UL | ||
| 635 | #define NETLINK_TCPDIAG_SOCKET__RECV_MSG 0x00080000UL | ||
| 636 | #define NETLINK_TCPDIAG_SOCKET__SEND_MSG 0x00100000UL | ||
| 637 | #define NETLINK_TCPDIAG_SOCKET__NAME_BIND 0x00200000UL | ||
| 638 | #define NETLINK_TCPDIAG_SOCKET__NLMSG_READ 0x00400000UL | ||
| 639 | #define NETLINK_TCPDIAG_SOCKET__NLMSG_WRITE 0x00800000UL | ||
| 640 | #define NETLINK_NFLOG_SOCKET__IOCTL 0x00000001UL | ||
| 641 | #define NETLINK_NFLOG_SOCKET__READ 0x00000002UL | ||
| 642 | #define NETLINK_NFLOG_SOCKET__WRITE 0x00000004UL | ||
| 643 | #define NETLINK_NFLOG_SOCKET__CREATE 0x00000008UL | ||
| 644 | #define NETLINK_NFLOG_SOCKET__GETATTR 0x00000010UL | ||
| 645 | #define NETLINK_NFLOG_SOCKET__SETATTR 0x00000020UL | ||
| 646 | #define NETLINK_NFLOG_SOCKET__LOCK 0x00000040UL | ||
| 647 | #define NETLINK_NFLOG_SOCKET__RELABELFROM 0x00000080UL | ||
| 648 | #define NETLINK_NFLOG_SOCKET__RELABELTO 0x00000100UL | ||
| 649 | #define NETLINK_NFLOG_SOCKET__APPEND 0x00000200UL | ||
| 650 | #define NETLINK_NFLOG_SOCKET__BIND 0x00000400UL | ||
| 651 | #define NETLINK_NFLOG_SOCKET__CONNECT 0x00000800UL | ||
| 652 | #define NETLINK_NFLOG_SOCKET__LISTEN 0x00001000UL | ||
| 653 | #define NETLINK_NFLOG_SOCKET__ACCEPT 0x00002000UL | ||
| 654 | #define NETLINK_NFLOG_SOCKET__GETOPT 0x00004000UL | ||
| 655 | #define NETLINK_NFLOG_SOCKET__SETOPT 0x00008000UL | ||
| 656 | #define NETLINK_NFLOG_SOCKET__SHUTDOWN 0x00010000UL | ||
| 657 | #define NETLINK_NFLOG_SOCKET__RECVFROM 0x00020000UL | ||
| 658 | #define NETLINK_NFLOG_SOCKET__SENDTO 0x00040000UL | ||
| 659 | #define NETLINK_NFLOG_SOCKET__RECV_MSG 0x00080000UL | ||
| 660 | #define NETLINK_NFLOG_SOCKET__SEND_MSG 0x00100000UL | ||
| 661 | #define NETLINK_NFLOG_SOCKET__NAME_BIND 0x00200000UL | ||
| 662 | #define NETLINK_XFRM_SOCKET__IOCTL 0x00000001UL | ||
| 663 | #define NETLINK_XFRM_SOCKET__READ 0x00000002UL | ||
| 664 | #define NETLINK_XFRM_SOCKET__WRITE 0x00000004UL | ||
| 665 | #define NETLINK_XFRM_SOCKET__CREATE 0x00000008UL | ||
| 666 | #define NETLINK_XFRM_SOCKET__GETATTR 0x00000010UL | ||
| 667 | #define NETLINK_XFRM_SOCKET__SETATTR 0x00000020UL | ||
| 668 | #define NETLINK_XFRM_SOCKET__LOCK 0x00000040UL | ||
| 669 | #define NETLINK_XFRM_SOCKET__RELABELFROM 0x00000080UL | ||
| 670 | #define NETLINK_XFRM_SOCKET__RELABELTO 0x00000100UL | ||
| 671 | #define NETLINK_XFRM_SOCKET__APPEND 0x00000200UL | ||
| 672 | #define NETLINK_XFRM_SOCKET__BIND 0x00000400UL | ||
| 673 | #define NETLINK_XFRM_SOCKET__CONNECT 0x00000800UL | ||
| 674 | #define NETLINK_XFRM_SOCKET__LISTEN 0x00001000UL | ||
| 675 | #define NETLINK_XFRM_SOCKET__ACCEPT 0x00002000UL | ||
| 676 | #define NETLINK_XFRM_SOCKET__GETOPT 0x00004000UL | ||
| 677 | #define NETLINK_XFRM_SOCKET__SETOPT 0x00008000UL | ||
| 678 | #define NETLINK_XFRM_SOCKET__SHUTDOWN 0x00010000UL | ||
| 679 | #define NETLINK_XFRM_SOCKET__RECVFROM 0x00020000UL | ||
| 680 | #define NETLINK_XFRM_SOCKET__SENDTO 0x00040000UL | ||
| 681 | #define NETLINK_XFRM_SOCKET__RECV_MSG 0x00080000UL | ||
| 682 | #define NETLINK_XFRM_SOCKET__SEND_MSG 0x00100000UL | ||
| 683 | #define NETLINK_XFRM_SOCKET__NAME_BIND 0x00200000UL | ||
| 684 | #define NETLINK_XFRM_SOCKET__NLMSG_READ 0x00400000UL | ||
| 685 | #define NETLINK_XFRM_SOCKET__NLMSG_WRITE 0x00800000UL | ||
| 686 | #define NETLINK_SELINUX_SOCKET__IOCTL 0x00000001UL | ||
| 687 | #define NETLINK_SELINUX_SOCKET__READ 0x00000002UL | ||
| 688 | #define NETLINK_SELINUX_SOCKET__WRITE 0x00000004UL | ||
| 689 | #define NETLINK_SELINUX_SOCKET__CREATE 0x00000008UL | ||
| 690 | #define NETLINK_SELINUX_SOCKET__GETATTR 0x00000010UL | ||
| 691 | #define NETLINK_SELINUX_SOCKET__SETATTR 0x00000020UL | ||
| 692 | #define NETLINK_SELINUX_SOCKET__LOCK 0x00000040UL | ||
| 693 | #define NETLINK_SELINUX_SOCKET__RELABELFROM 0x00000080UL | ||
| 694 | #define NETLINK_SELINUX_SOCKET__RELABELTO 0x00000100UL | ||
| 695 | #define NETLINK_SELINUX_SOCKET__APPEND 0x00000200UL | ||
| 696 | #define NETLINK_SELINUX_SOCKET__BIND 0x00000400UL | ||
| 697 | #define NETLINK_SELINUX_SOCKET__CONNECT 0x00000800UL | ||
| 698 | #define NETLINK_SELINUX_SOCKET__LISTEN 0x00001000UL | ||
| 699 | #define NETLINK_SELINUX_SOCKET__ACCEPT 0x00002000UL | ||
| 700 | #define NETLINK_SELINUX_SOCKET__GETOPT 0x00004000UL | ||
| 701 | #define NETLINK_SELINUX_SOCKET__SETOPT 0x00008000UL | ||
| 702 | #define NETLINK_SELINUX_SOCKET__SHUTDOWN 0x00010000UL | ||
| 703 | #define NETLINK_SELINUX_SOCKET__RECVFROM 0x00020000UL | ||
| 704 | #define NETLINK_SELINUX_SOCKET__SENDTO 0x00040000UL | ||
| 705 | #define NETLINK_SELINUX_SOCKET__RECV_MSG 0x00080000UL | ||
| 706 | #define NETLINK_SELINUX_SOCKET__SEND_MSG 0x00100000UL | ||
| 707 | #define NETLINK_SELINUX_SOCKET__NAME_BIND 0x00200000UL | ||
| 708 | #define NETLINK_AUDIT_SOCKET__IOCTL 0x00000001UL | ||
| 709 | #define NETLINK_AUDIT_SOCKET__READ 0x00000002UL | ||
| 710 | #define NETLINK_AUDIT_SOCKET__WRITE 0x00000004UL | ||
| 711 | #define NETLINK_AUDIT_SOCKET__CREATE 0x00000008UL | ||
| 712 | #define NETLINK_AUDIT_SOCKET__GETATTR 0x00000010UL | ||
| 713 | #define NETLINK_AUDIT_SOCKET__SETATTR 0x00000020UL | ||
| 714 | #define NETLINK_AUDIT_SOCKET__LOCK 0x00000040UL | ||
| 715 | #define NETLINK_AUDIT_SOCKET__RELABELFROM 0x00000080UL | ||
| 716 | #define NETLINK_AUDIT_SOCKET__RELABELTO 0x00000100UL | ||
| 717 | #define NETLINK_AUDIT_SOCKET__APPEND 0x00000200UL | ||
| 718 | #define NETLINK_AUDIT_SOCKET__BIND 0x00000400UL | ||
| 719 | #define NETLINK_AUDIT_SOCKET__CONNECT 0x00000800UL | ||
| 720 | #define NETLINK_AUDIT_SOCKET__LISTEN 0x00001000UL | ||
| 721 | #define NETLINK_AUDIT_SOCKET__ACCEPT 0x00002000UL | ||
| 722 | #define NETLINK_AUDIT_SOCKET__GETOPT 0x00004000UL | ||
| 723 | #define NETLINK_AUDIT_SOCKET__SETOPT 0x00008000UL | ||
| 724 | #define NETLINK_AUDIT_SOCKET__SHUTDOWN 0x00010000UL | ||
| 725 | #define NETLINK_AUDIT_SOCKET__RECVFROM 0x00020000UL | ||
| 726 | #define NETLINK_AUDIT_SOCKET__SENDTO 0x00040000UL | ||
| 727 | #define NETLINK_AUDIT_SOCKET__RECV_MSG 0x00080000UL | ||
| 728 | #define NETLINK_AUDIT_SOCKET__SEND_MSG 0x00100000UL | ||
| 729 | #define NETLINK_AUDIT_SOCKET__NAME_BIND 0x00200000UL | ||
| 730 | #define NETLINK_AUDIT_SOCKET__NLMSG_READ 0x00400000UL | ||
| 731 | #define NETLINK_AUDIT_SOCKET__NLMSG_WRITE 0x00800000UL | ||
| 732 | #define NETLINK_AUDIT_SOCKET__NLMSG_RELAY 0x01000000UL | ||
| 733 | #define NETLINK_AUDIT_SOCKET__NLMSG_READPRIV 0x02000000UL | ||
| 734 | #define NETLINK_AUDIT_SOCKET__NLMSG_TTY_AUDIT 0x04000000UL | ||
| 735 | #define NETLINK_IP6FW_SOCKET__IOCTL 0x00000001UL | ||
| 736 | #define NETLINK_IP6FW_SOCKET__READ 0x00000002UL | ||
| 737 | #define NETLINK_IP6FW_SOCKET__WRITE 0x00000004UL | ||
| 738 | #define NETLINK_IP6FW_SOCKET__CREATE 0x00000008UL | ||
| 739 | #define NETLINK_IP6FW_SOCKET__GETATTR 0x00000010UL | ||
| 740 | #define NETLINK_IP6FW_SOCKET__SETATTR 0x00000020UL | ||
| 741 | #define NETLINK_IP6FW_SOCKET__LOCK 0x00000040UL | ||
| 742 | #define NETLINK_IP6FW_SOCKET__RELABELFROM 0x00000080UL | ||
| 743 | #define NETLINK_IP6FW_SOCKET__RELABELTO 0x00000100UL | ||
| 744 | #define NETLINK_IP6FW_SOCKET__APPEND 0x00000200UL | ||
| 745 | #define NETLINK_IP6FW_SOCKET__BIND 0x00000400UL | ||
| 746 | #define NETLINK_IP6FW_SOCKET__CONNECT 0x00000800UL | ||
| 747 | #define NETLINK_IP6FW_SOCKET__LISTEN 0x00001000UL | ||
| 748 | #define NETLINK_IP6FW_SOCKET__ACCEPT 0x00002000UL | ||
| 749 | #define NETLINK_IP6FW_SOCKET__GETOPT 0x00004000UL | ||
| 750 | #define NETLINK_IP6FW_SOCKET__SETOPT 0x00008000UL | ||
| 751 | #define NETLINK_IP6FW_SOCKET__SHUTDOWN 0x00010000UL | ||
| 752 | #define NETLINK_IP6FW_SOCKET__RECVFROM 0x00020000UL | ||
| 753 | #define NETLINK_IP6FW_SOCKET__SENDTO 0x00040000UL | ||
| 754 | #define NETLINK_IP6FW_SOCKET__RECV_MSG 0x00080000UL | ||
| 755 | #define NETLINK_IP6FW_SOCKET__SEND_MSG 0x00100000UL | ||
| 756 | #define NETLINK_IP6FW_SOCKET__NAME_BIND 0x00200000UL | ||
| 757 | #define NETLINK_IP6FW_SOCKET__NLMSG_READ 0x00400000UL | ||
| 758 | #define NETLINK_IP6FW_SOCKET__NLMSG_WRITE 0x00800000UL | ||
| 759 | #define NETLINK_DNRT_SOCKET__IOCTL 0x00000001UL | ||
| 760 | #define NETLINK_DNRT_SOCKET__READ 0x00000002UL | ||
| 761 | #define NETLINK_DNRT_SOCKET__WRITE 0x00000004UL | ||
| 762 | #define NETLINK_DNRT_SOCKET__CREATE 0x00000008UL | ||
| 763 | #define NETLINK_DNRT_SOCKET__GETATTR 0x00000010UL | ||
| 764 | #define NETLINK_DNRT_SOCKET__SETATTR 0x00000020UL | ||
| 765 | #define NETLINK_DNRT_SOCKET__LOCK 0x00000040UL | ||
| 766 | #define NETLINK_DNRT_SOCKET__RELABELFROM 0x00000080UL | ||
| 767 | #define NETLINK_DNRT_SOCKET__RELABELTO 0x00000100UL | ||
| 768 | #define NETLINK_DNRT_SOCKET__APPEND 0x00000200UL | ||
| 769 | #define NETLINK_DNRT_SOCKET__BIND 0x00000400UL | ||
| 770 | #define NETLINK_DNRT_SOCKET__CONNECT 0x00000800UL | ||
| 771 | #define NETLINK_DNRT_SOCKET__LISTEN 0x00001000UL | ||
| 772 | #define NETLINK_DNRT_SOCKET__ACCEPT 0x00002000UL | ||
| 773 | #define NETLINK_DNRT_SOCKET__GETOPT 0x00004000UL | ||
| 774 | #define NETLINK_DNRT_SOCKET__SETOPT 0x00008000UL | ||
| 775 | #define NETLINK_DNRT_SOCKET__SHUTDOWN 0x00010000UL | ||
| 776 | #define NETLINK_DNRT_SOCKET__RECVFROM 0x00020000UL | ||
| 777 | #define NETLINK_DNRT_SOCKET__SENDTO 0x00040000UL | ||
| 778 | #define NETLINK_DNRT_SOCKET__RECV_MSG 0x00080000UL | ||
| 779 | #define NETLINK_DNRT_SOCKET__SEND_MSG 0x00100000UL | ||
| 780 | #define NETLINK_DNRT_SOCKET__NAME_BIND 0x00200000UL | ||
| 781 | #define ASSOCIATION__SENDTO 0x00000001UL | ||
| 782 | #define ASSOCIATION__RECVFROM 0x00000002UL | ||
| 783 | #define ASSOCIATION__SETCONTEXT 0x00000004UL | ||
| 784 | #define ASSOCIATION__POLMATCH 0x00000008UL | ||
| 785 | #define NETLINK_KOBJECT_UEVENT_SOCKET__IOCTL 0x00000001UL | ||
| 786 | #define NETLINK_KOBJECT_UEVENT_SOCKET__READ 0x00000002UL | ||
| 787 | #define NETLINK_KOBJECT_UEVENT_SOCKET__WRITE 0x00000004UL | ||
| 788 | #define NETLINK_KOBJECT_UEVENT_SOCKET__CREATE 0x00000008UL | ||
| 789 | #define NETLINK_KOBJECT_UEVENT_SOCKET__GETATTR 0x00000010UL | ||
| 790 | #define NETLINK_KOBJECT_UEVENT_SOCKET__SETATTR 0x00000020UL | ||
| 791 | #define NETLINK_KOBJECT_UEVENT_SOCKET__LOCK 0x00000040UL | ||
| 792 | #define NETLINK_KOBJECT_UEVENT_SOCKET__RELABELFROM 0x00000080UL | ||
| 793 | #define NETLINK_KOBJECT_UEVENT_SOCKET__RELABELTO 0x00000100UL | ||
| 794 | #define NETLINK_KOBJECT_UEVENT_SOCKET__APPEND 0x00000200UL | ||
| 795 | #define NETLINK_KOBJECT_UEVENT_SOCKET__BIND 0x00000400UL | ||
| 796 | #define NETLINK_KOBJECT_UEVENT_SOCKET__CONNECT 0x00000800UL | ||
| 797 | #define NETLINK_KOBJECT_UEVENT_SOCKET__LISTEN 0x00001000UL | ||
| 798 | #define NETLINK_KOBJECT_UEVENT_SOCKET__ACCEPT 0x00002000UL | ||
| 799 | #define NETLINK_KOBJECT_UEVENT_SOCKET__GETOPT 0x00004000UL | ||
| 800 | #define NETLINK_KOBJECT_UEVENT_SOCKET__SETOPT 0x00008000UL | ||
| 801 | #define NETLINK_KOBJECT_UEVENT_SOCKET__SHUTDOWN 0x00010000UL | ||
| 802 | #define NETLINK_KOBJECT_UEVENT_SOCKET__RECVFROM 0x00020000UL | ||
| 803 | #define NETLINK_KOBJECT_UEVENT_SOCKET__SENDTO 0x00040000UL | ||
| 804 | #define NETLINK_KOBJECT_UEVENT_SOCKET__RECV_MSG 0x00080000UL | ||
| 805 | #define NETLINK_KOBJECT_UEVENT_SOCKET__SEND_MSG 0x00100000UL | ||
| 806 | #define NETLINK_KOBJECT_UEVENT_SOCKET__NAME_BIND 0x00200000UL | ||
| 807 | #define APPLETALK_SOCKET__IOCTL 0x00000001UL | ||
| 808 | #define APPLETALK_SOCKET__READ 0x00000002UL | ||
| 809 | #define APPLETALK_SOCKET__WRITE 0x00000004UL | ||
| 810 | #define APPLETALK_SOCKET__CREATE 0x00000008UL | ||
| 811 | #define APPLETALK_SOCKET__GETATTR 0x00000010UL | ||
| 812 | #define APPLETALK_SOCKET__SETATTR 0x00000020UL | ||
| 813 | #define APPLETALK_SOCKET__LOCK 0x00000040UL | ||
| 814 | #define APPLETALK_SOCKET__RELABELFROM 0x00000080UL | ||
| 815 | #define APPLETALK_SOCKET__RELABELTO 0x00000100UL | ||
| 816 | #define APPLETALK_SOCKET__APPEND 0x00000200UL | ||
| 817 | #define APPLETALK_SOCKET__BIND 0x00000400UL | ||
| 818 | #define APPLETALK_SOCKET__CONNECT 0x00000800UL | ||
| 819 | #define APPLETALK_SOCKET__LISTEN 0x00001000UL | ||
| 820 | #define APPLETALK_SOCKET__ACCEPT 0x00002000UL | ||
| 821 | #define APPLETALK_SOCKET__GETOPT 0x00004000UL | ||
| 822 | #define APPLETALK_SOCKET__SETOPT 0x00008000UL | ||
| 823 | #define APPLETALK_SOCKET__SHUTDOWN 0x00010000UL | ||
| 824 | #define APPLETALK_SOCKET__RECVFROM 0x00020000UL | ||
| 825 | #define APPLETALK_SOCKET__SENDTO 0x00040000UL | ||
| 826 | #define APPLETALK_SOCKET__RECV_MSG 0x00080000UL | ||
| 827 | #define APPLETALK_SOCKET__SEND_MSG 0x00100000UL | ||
| 828 | #define APPLETALK_SOCKET__NAME_BIND 0x00200000UL | ||
| 829 | #define PACKET__SEND 0x00000001UL | ||
| 830 | #define PACKET__RECV 0x00000002UL | ||
| 831 | #define PACKET__RELABELTO 0x00000004UL | ||
| 832 | #define PACKET__FLOW_IN 0x00000008UL | ||
| 833 | #define PACKET__FLOW_OUT 0x00000010UL | ||
| 834 | #define PACKET__FORWARD_IN 0x00000020UL | ||
| 835 | #define PACKET__FORWARD_OUT 0x00000040UL | ||
| 836 | #define KEY__VIEW 0x00000001UL | ||
| 837 | #define KEY__READ 0x00000002UL | ||
| 838 | #define KEY__WRITE 0x00000004UL | ||
| 839 | #define KEY__SEARCH 0x00000008UL | ||
| 840 | #define KEY__LINK 0x00000010UL | ||
| 841 | #define KEY__SETATTR 0x00000020UL | ||
| 842 | #define KEY__CREATE 0x00000040UL | ||
| 843 | #define DCCP_SOCKET__IOCTL 0x00000001UL | ||
| 844 | #define DCCP_SOCKET__READ 0x00000002UL | ||
| 845 | #define DCCP_SOCKET__WRITE 0x00000004UL | ||
| 846 | #define DCCP_SOCKET__CREATE 0x00000008UL | ||
| 847 | #define DCCP_SOCKET__GETATTR 0x00000010UL | ||
| 848 | #define DCCP_SOCKET__SETATTR 0x00000020UL | ||
| 849 | #define DCCP_SOCKET__LOCK 0x00000040UL | ||
| 850 | #define DCCP_SOCKET__RELABELFROM 0x00000080UL | ||
| 851 | #define DCCP_SOCKET__RELABELTO 0x00000100UL | ||
| 852 | #define DCCP_SOCKET__APPEND 0x00000200UL | ||
| 853 | #define DCCP_SOCKET__BIND 0x00000400UL | ||
| 854 | #define DCCP_SOCKET__CONNECT 0x00000800UL | ||
| 855 | #define DCCP_SOCKET__LISTEN 0x00001000UL | ||
| 856 | #define DCCP_SOCKET__ACCEPT 0x00002000UL | ||
| 857 | #define DCCP_SOCKET__GETOPT 0x00004000UL | ||
| 858 | #define DCCP_SOCKET__SETOPT 0x00008000UL | ||
| 859 | #define DCCP_SOCKET__SHUTDOWN 0x00010000UL | ||
| 860 | #define DCCP_SOCKET__RECVFROM 0x00020000UL | ||
| 861 | #define DCCP_SOCKET__SENDTO 0x00040000UL | ||
| 862 | #define DCCP_SOCKET__RECV_MSG 0x00080000UL | ||
| 863 | #define DCCP_SOCKET__SEND_MSG 0x00100000UL | ||
| 864 | #define DCCP_SOCKET__NAME_BIND 0x00200000UL | ||
| 865 | #define DCCP_SOCKET__NODE_BIND 0x00400000UL | ||
| 866 | #define DCCP_SOCKET__NAME_CONNECT 0x00800000UL | ||
| 867 | #define MEMPROTECT__MMAP_ZERO 0x00000001UL | ||
| 868 | #define PEER__RECV 0x00000001UL | ||
| 869 | #define KERNEL_SERVICE__USE_AS_OVERRIDE 0x00000001UL | ||
| 870 | #define KERNEL_SERVICE__CREATE_FILES_AS 0x00000002UL | ||
diff --git a/security/selinux/include/avc_ss.h b/security/selinux/include/avc_ss.h index bb1ec801bdfe..4677aa519b04 100644 --- a/security/selinux/include/avc_ss.h +++ b/security/selinux/include/avc_ss.h | |||
| @@ -10,26 +10,13 @@ | |||
| 10 | 10 | ||
| 11 | int avc_ss_reset(u32 seqno); | 11 | int avc_ss_reset(u32 seqno); |
| 12 | 12 | ||
| 13 | struct av_perm_to_string { | 13 | /* Class/perm mapping support */ |
| 14 | u16 tclass; | 14 | struct security_class_mapping { |
| 15 | u32 value; | ||
| 16 | const char *name; | 15 | const char *name; |
| 16 | const char *perms[sizeof(u32) * 8 + 1]; | ||
| 17 | }; | 17 | }; |
| 18 | 18 | ||
| 19 | struct av_inherit { | 19 | extern struct security_class_mapping secclass_map[]; |
| 20 | const char **common_pts; | ||
| 21 | u32 common_base; | ||
| 22 | u16 tclass; | ||
| 23 | }; | ||
| 24 | |||
| 25 | struct selinux_class_perm { | ||
| 26 | const struct av_perm_to_string *av_perm_to_string; | ||
| 27 | u32 av_pts_len; | ||
| 28 | u32 cts_len; | ||
| 29 | const char **class_to_string; | ||
| 30 | const struct av_inherit *av_inherit; | ||
| 31 | u32 av_inherit_len; | ||
| 32 | }; | ||
| 33 | 20 | ||
| 34 | #endif /* _SELINUX_AVC_SS_H_ */ | 21 | #endif /* _SELINUX_AVC_SS_H_ */ |
| 35 | 22 | ||
diff --git a/security/selinux/include/class_to_string.h b/security/selinux/include/class_to_string.h deleted file mode 100644 index 7ab9299bfb6b..000000000000 --- a/security/selinux/include/class_to_string.h +++ /dev/null | |||
| @@ -1,80 +0,0 @@ | |||
| 1 | /* This file is automatically generated. Do not edit. */ | ||
| 2 | /* | ||
| 3 | * Security object class definitions | ||
| 4 | */ | ||
| 5 | S_(NULL) | ||
| 6 | S_("security") | ||
| 7 | S_("process") | ||
| 8 | S_("system") | ||
| 9 | S_("capability") | ||
| 10 | S_("filesystem") | ||
| 11 | S_("file") | ||
| 12 | S_("dir") | ||
| 13 | S_("fd") | ||
| 14 | S_("lnk_file") | ||
| 15 | S_("chr_file") | ||
| 16 | S_("blk_file") | ||
| 17 | S_("sock_file") | ||
| 18 | S_("fifo_file") | ||
| 19 | S_("socket") | ||
| 20 | S_("tcp_socket") | ||
| 21 | S_("udp_socket") | ||
| 22 | S_("rawip_socket") | ||
| 23 | S_("node") | ||
| 24 | S_("netif") | ||
| 25 | S_("netlink_socket") | ||
| 26 | S_("packet_socket") | ||
| 27 | S_("key_socket") | ||
| 28 | S_("unix_stream_socket") | ||
| 29 | S_("unix_dgram_socket") | ||
| 30 | S_("sem") | ||
| 31 | S_("msg") | ||
| 32 | S_("msgq") | ||
| 33 | S_("shm") | ||
| 34 | S_("ipc") | ||
| 35 | S_(NULL) | ||
| 36 | S_(NULL) | ||
| 37 | S_(NULL) | ||
| 38 | S_(NULL) | ||
| 39 | S_(NULL) | ||
| 40 | S_(NULL) | ||
| 41 | S_(NULL) | ||
| 42 | S_(NULL) | ||
| 43 | S_(NULL) | ||
| 44 | S_(NULL) | ||
| 45 | S_(NULL) | ||
| 46 | S_(NULL) | ||
| 47 | S_(NULL) | ||
| 48 | S_("netlink_route_socket") | ||
| 49 | S_("netlink_firewall_socket") | ||
| 50 | S_("netlink_tcpdiag_socket") | ||
| 51 | S_("netlink_nflog_socket") | ||
| 52 | S_("netlink_xfrm_socket") | ||
| 53 | S_("netlink_selinux_socket") | ||
| 54 | S_("netlink_audit_socket") | ||
| 55 | S_("netlink_ip6fw_socket") | ||
| 56 | S_("netlink_dnrt_socket") | ||
| 57 | S_(NULL) | ||
| 58 | S_(NULL) | ||
| 59 | S_("association") | ||
| 60 | S_("netlink_kobject_uevent_socket") | ||
| 61 | S_("appletalk_socket") | ||
| 62 | S_("packet") | ||
| 63 | S_("key") | ||
| 64 | S_(NULL) | ||
| 65 | S_("dccp_socket") | ||
| 66 | S_("memprotect") | ||
| 67 | S_(NULL) | ||
| 68 | S_(NULL) | ||
| 69 | S_(NULL) | ||
| 70 | S_(NULL) | ||
| 71 | S_(NULL) | ||
| 72 | S_(NULL) | ||
| 73 | S_("peer") | ||
| 74 | S_("capability2") | ||
| 75 | S_(NULL) | ||
| 76 | S_(NULL) | ||
| 77 | S_(NULL) | ||
| 78 | S_(NULL) | ||
| 79 | S_("kernel_service") | ||
| 80 | S_("tun_socket") | ||
diff --git a/security/selinux/include/classmap.h b/security/selinux/include/classmap.h new file mode 100644 index 000000000000..8b32e959bb2e --- /dev/null +++ b/security/selinux/include/classmap.h | |||
| @@ -0,0 +1,150 @@ | |||
| 1 | #define COMMON_FILE_SOCK_PERMS "ioctl", "read", "write", "create", \ | ||
| 2 | "getattr", "setattr", "lock", "relabelfrom", "relabelto", "append" | ||
| 3 | |||
| 4 | #define COMMON_FILE_PERMS COMMON_FILE_SOCK_PERMS, "unlink", "link", \ | ||
| 5 | "rename", "execute", "swapon", "quotaon", "mounton" | ||
| 6 | |||
| 7 | #define COMMON_SOCK_PERMS COMMON_FILE_SOCK_PERMS, "bind", "connect", \ | ||
| 8 | "listen", "accept", "getopt", "setopt", "shutdown", "recvfrom", \ | ||
| 9 | "sendto", "recv_msg", "send_msg", "name_bind" | ||
| 10 | |||
| 11 | #define COMMON_IPC_PERMS "create", "destroy", "getattr", "setattr", "read", \ | ||
| 12 | "write", "associate", "unix_read", "unix_write" | ||
| 13 | |||
| 14 | struct security_class_mapping secclass_map[] = { | ||
| 15 | { "security", | ||
| 16 | { "compute_av", "compute_create", "compute_member", | ||
| 17 | "check_context", "load_policy", "compute_relabel", | ||
| 18 | "compute_user", "setenforce", "setbool", "setsecparam", | ||
| 19 | "setcheckreqprot", NULL } }, | ||
| 20 | { "process", | ||
| 21 | { "fork", "transition", "sigchld", "sigkill", | ||
| 22 | "sigstop", "signull", "signal", "ptrace", "getsched", "setsched", | ||
| 23 | "getsession", "getpgid", "setpgid", "getcap", "setcap", "share", | ||
| 24 | "getattr", "setexec", "setfscreate", "noatsecure", "siginh", | ||
| 25 | "setrlimit", "rlimitinh", "dyntransition", "setcurrent", | ||
| 26 | "execmem", "execstack", "execheap", "setkeycreate", | ||
| 27 | "setsockcreate", NULL } }, | ||
| 28 | { "system", | ||
| 29 | { "ipc_info", "syslog_read", "syslog_mod", | ||
| 30 | "syslog_console", "module_request", NULL } }, | ||
| 31 | { "capability", | ||
| 32 | { "chown", "dac_override", "dac_read_search", | ||
| 33 | "fowner", "fsetid", "kill", "setgid", "setuid", "setpcap", | ||
| 34 | "linux_immutable", "net_bind_service", "net_broadcast", | ||
| 35 | "net_admin", "net_raw", "ipc_lock", "ipc_owner", "sys_module", | ||
| 36 | "sys_rawio", "sys_chroot", "sys_ptrace", "sys_pacct", "sys_admin", | ||
| 37 | "sys_boot", "sys_nice", "sys_resource", "sys_time", | ||
| 38 | "sys_tty_config", "mknod", "lease", "audit_write", | ||
| 39 | "audit_control", "setfcap", NULL } }, | ||
| 40 | { "filesystem", | ||
| 41 | { "mount", "remount", "unmount", "getattr", | ||
| 42 | "relabelfrom", "relabelto", "transition", "associate", "quotamod", | ||
| 43 | "quotaget", NULL } }, | ||
| 44 | { "file", | ||
| 45 | { COMMON_FILE_PERMS, | ||
| 46 | "execute_no_trans", "entrypoint", "execmod", "open", NULL } }, | ||
| 47 | { "dir", | ||
| 48 | { COMMON_FILE_PERMS, "add_name", "remove_name", | ||
| 49 | "reparent", "search", "rmdir", "open", NULL } }, | ||
| 50 | { "fd", { "use", NULL } }, | ||
| 51 | { "lnk_file", | ||
| 52 | { COMMON_FILE_PERMS, NULL } }, | ||
| 53 | { "chr_file", | ||
| 54 | { COMMON_FILE_PERMS, | ||
| 55 | "execute_no_trans", "entrypoint", "execmod", "open", NULL } }, | ||
| 56 | { "blk_file", | ||
| 57 | { COMMON_FILE_PERMS, "open", NULL } }, | ||
| 58 | { "sock_file", | ||
| 59 | { COMMON_FILE_PERMS, "open", NULL } }, | ||
| 60 | { "fifo_file", | ||
| 61 | { COMMON_FILE_PERMS, "open", NULL } }, | ||
| 62 | { "socket", | ||
| 63 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 64 | { "tcp_socket", | ||
| 65 | { COMMON_SOCK_PERMS, | ||
| 66 | "connectto", "newconn", "acceptfrom", "node_bind", "name_connect", | ||
| 67 | NULL } }, | ||
| 68 | { "udp_socket", | ||
| 69 | { COMMON_SOCK_PERMS, | ||
| 70 | "node_bind", NULL } }, | ||
| 71 | { "rawip_socket", | ||
| 72 | { COMMON_SOCK_PERMS, | ||
| 73 | "node_bind", NULL } }, | ||
| 74 | { "node", | ||
| 75 | { "tcp_recv", "tcp_send", "udp_recv", "udp_send", | ||
| 76 | "rawip_recv", "rawip_send", "enforce_dest", | ||
| 77 | "dccp_recv", "dccp_send", "recvfrom", "sendto", NULL } }, | ||
| 78 | { "netif", | ||
| 79 | { "tcp_recv", "tcp_send", "udp_recv", "udp_send", | ||
| 80 | "rawip_recv", "rawip_send", "dccp_recv", "dccp_send", | ||
| 81 | "ingress", "egress", NULL } }, | ||
| 82 | { "netlink_socket", | ||
| 83 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 84 | { "packet_socket", | ||
| 85 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 86 | { "key_socket", | ||
| 87 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 88 | { "unix_stream_socket", | ||
| 89 | { COMMON_SOCK_PERMS, "connectto", "newconn", "acceptfrom", NULL | ||
| 90 | } }, | ||
| 91 | { "unix_dgram_socket", | ||
| 92 | { COMMON_SOCK_PERMS, NULL | ||
| 93 | } }, | ||
| 94 | { "sem", | ||
| 95 | { COMMON_IPC_PERMS, NULL } }, | ||
| 96 | { "msg", { "send", "receive", NULL } }, | ||
| 97 | { "msgq", | ||
| 98 | { COMMON_IPC_PERMS, "enqueue", NULL } }, | ||
| 99 | { "shm", | ||
| 100 | { COMMON_IPC_PERMS, "lock", NULL } }, | ||
| 101 | { "ipc", | ||
| 102 | { COMMON_IPC_PERMS, NULL } }, | ||
| 103 | { "netlink_route_socket", | ||
| 104 | { COMMON_SOCK_PERMS, | ||
| 105 | "nlmsg_read", "nlmsg_write", NULL } }, | ||
| 106 | { "netlink_firewall_socket", | ||
| 107 | { COMMON_SOCK_PERMS, | ||
| 108 | "nlmsg_read", "nlmsg_write", NULL } }, | ||
| 109 | { "netlink_tcpdiag_socket", | ||
| 110 | { COMMON_SOCK_PERMS, | ||
| 111 | "nlmsg_read", "nlmsg_write", NULL } }, | ||
| 112 | { "netlink_nflog_socket", | ||
| 113 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 114 | { "netlink_xfrm_socket", | ||
| 115 | { COMMON_SOCK_PERMS, | ||
| 116 | "nlmsg_read", "nlmsg_write", NULL } }, | ||
| 117 | { "netlink_selinux_socket", | ||
| 118 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 119 | { "netlink_audit_socket", | ||
| 120 | { COMMON_SOCK_PERMS, | ||
| 121 | "nlmsg_read", "nlmsg_write", "nlmsg_relay", "nlmsg_readpriv", | ||
| 122 | "nlmsg_tty_audit", NULL } }, | ||
| 123 | { "netlink_ip6fw_socket", | ||
| 124 | { COMMON_SOCK_PERMS, | ||
| 125 | "nlmsg_read", "nlmsg_write", NULL } }, | ||
| 126 | { "netlink_dnrt_socket", | ||
| 127 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 128 | { "association", | ||
| 129 | { "sendto", "recvfrom", "setcontext", "polmatch", NULL } }, | ||
| 130 | { "netlink_kobject_uevent_socket", | ||
| 131 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 132 | { "appletalk_socket", | ||
| 133 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 134 | { "packet", | ||
| 135 | { "send", "recv", "relabelto", "flow_in", "flow_out", | ||
| 136 | "forward_in", "forward_out", NULL } }, | ||
| 137 | { "key", | ||
| 138 | { "view", "read", "write", "search", "link", "setattr", "create", | ||
| 139 | NULL } }, | ||
| 140 | { "dccp_socket", | ||
| 141 | { COMMON_SOCK_PERMS, | ||
| 142 | "node_bind", "name_connect", NULL } }, | ||
| 143 | { "memprotect", { "mmap_zero", NULL } }, | ||
| 144 | { "peer", { "recv", NULL } }, | ||
| 145 | { "capability2", { "mac_override", "mac_admin", NULL } }, | ||
| 146 | { "kernel_service", { "use_as_override", "create_files_as", NULL } }, | ||
| 147 | { "tun_socket", | ||
| 148 | { COMMON_SOCK_PERMS, NULL } }, | ||
| 149 | { NULL } | ||
| 150 | }; | ||
diff --git a/security/selinux/include/common_perm_to_string.h b/security/selinux/include/common_perm_to_string.h deleted file mode 100644 index ce5b6e2fe9dd..000000000000 --- a/security/selinux/include/common_perm_to_string.h +++ /dev/null | |||
| @@ -1,58 +0,0 @@ | |||
| 1 | /* This file is automatically generated. Do not edit. */ | ||
| 2 | TB_(common_file_perm_to_string) | ||
| 3 | S_("ioctl") | ||
| 4 | S_("read") | ||
| 5 | S_("write") | ||
| 6 | S_("create") | ||
| 7 | S_("getattr") | ||
| 8 | S_("setattr") | ||
| 9 | S_("lock") | ||
| 10 | S_("relabelfrom") | ||
| 11 | S_("relabelto") | ||
| 12 | S_("append") | ||
| 13 | S_("unlink") | ||
| 14 | S_("link") | ||
| 15 | S_("rename") | ||
| 16 | S_("execute") | ||
| 17 | S_("swapon") | ||
| 18 | S_("quotaon") | ||
| 19 | S_("mounton") | ||
| 20 | TE_(common_file_perm_to_string) | ||
| 21 | |||
| 22 | TB_(common_socket_perm_to_string) | ||
| 23 | S_("ioctl") | ||
| 24 | S_("read") | ||
| 25 | S_("write") | ||
| 26 | S_("create") | ||
| 27 | S_("getattr") | ||
| 28 | S_("setattr") | ||
| 29 | S_("lock") | ||
| 30 | S_("relabelfrom") | ||
| 31 | S_("relabelto") | ||
| 32 | S_("append") | ||
| 33 | S_("bind") | ||
| 34 | S_("connect") | ||
| 35 | S_("listen") | ||
| 36 | S_("accept") | ||
| 37 | S_("getopt") | ||
| 38 | S_("setopt") | ||
| 39 | S_("shutdown") | ||
| 40 | S_("recvfrom") | ||
| 41 | S_("sendto") | ||
| 42 | S_("recv_msg") | ||
| 43 | S_("send_msg") | ||
| 44 | S_("name_bind") | ||
| 45 | TE_(common_socket_perm_to_string) | ||
| 46 | |||
| 47 | TB_(common_ipc_perm_to_string) | ||
| 48 | S_("create") | ||
| 49 | S_("destroy") | ||
| 50 | S_("getattr") | ||
| 51 | S_("setattr") | ||
| 52 | S_("read") | ||
| 53 | S_("write") | ||
| 54 | S_("associate") | ||
| 55 | S_("unix_read") | ||
| 56 | S_("unix_write") | ||
| 57 | TE_(common_ipc_perm_to_string) | ||
| 58 | |||
diff --git a/security/selinux/include/flask.h b/security/selinux/include/flask.h deleted file mode 100644 index f248500a1e3c..000000000000 --- a/security/selinux/include/flask.h +++ /dev/null | |||
| @@ -1,91 +0,0 @@ | |||
| 1 | /* This file is automatically generated. Do not edit. */ | ||
| 2 | #ifndef _SELINUX_FLASK_H_ | ||
| 3 | #define _SELINUX_FLASK_H_ | ||
| 4 | |||
| 5 | /* | ||
| 6 | * Security object class definitions | ||
| 7 | */ | ||
| 8 | #define SECCLASS_SECURITY 1 | ||
| 9 | #define SECCLASS_PROCESS 2 | ||
| 10 | #define SECCLASS_SYSTEM 3 | ||
| 11 | #define SECCLASS_CAPABILITY 4 | ||
| 12 | #define SECCLASS_FILESYSTEM 5 | ||
| 13 | #define SECCLASS_FILE 6 | ||
| 14 | #define SECCLASS_DIR 7 | ||
| 15 | #define SECCLASS_FD 8 | ||
| 16 | #define SECCLASS_LNK_FILE 9 | ||
| 17 | #define SECCLASS_CHR_FILE 10 | ||
| 18 | #define SECCLASS_BLK_FILE 11 | ||
| 19 | #define SECCLASS_SOCK_FILE 12 | ||
| 20 | #define SECCLASS_FIFO_FILE 13 | ||
| 21 | #define SECCLASS_SOCKET 14 | ||
| 22 | #define SECCLASS_TCP_SOCKET 15 | ||
| 23 | #define SECCLASS_UDP_SOCKET 16 | ||
| 24 | #define SECCLASS_RAWIP_SOCKET 17 | ||
| 25 | #define SECCLASS_NODE 18 | ||
| 26 | #define SECCLASS_NETIF 19 | ||
| 27 | #define SECCLASS_NETLINK_SOCKET 20 | ||
| 28 | #define SECCLASS_PACKET_SOCKET 21 | ||
| 29 | #define SECCLASS_KEY_SOCKET 22 | ||
| 30 | #define SECCLASS_UNIX_STREAM_SOCKET 23 | ||
| 31 | #define SECCLASS_UNIX_DGRAM_SOCKET 24 | ||
| 32 | #define SECCLASS_SEM 25 | ||
| 33 | #define SECCLASS_MSG 26 | ||
| 34 | #define SECCLASS_MSGQ 27 | ||
| 35 | #define SECCLASS_SHM 28 | ||
| 36 | #define SECCLASS_IPC 29 | ||
| 37 | #define SECCLASS_NETLINK_ROUTE_SOCKET 43 | ||
| 38 | #define SECCLASS_NETLINK_FIREWALL_SOCKET 44 | ||
| 39 | #define SECCLASS_NETLINK_TCPDIAG_SOCKET 45 | ||
| 40 | #define SECCLASS_NETLINK_NFLOG_SOCKET 46 | ||
| 41 | #define SECCLASS_NETLINK_XFRM_SOCKET 47 | ||
| 42 | #define SECCLASS_NETLINK_SELINUX_SOCKET 48 | ||
| 43 | #define SECCLASS_NETLINK_AUDIT_SOCKET 49 | ||
| 44 | #define SECCLASS_NETLINK_IP6FW_SOCKET 50 | ||
| 45 | #define SECCLASS_NETLINK_DNRT_SOCKET 51 | ||
| 46 | #define SECCLASS_ASSOCIATION 54 | ||
| 47 | #define SECCLASS_NETLINK_KOBJECT_UEVENT_SOCKET 55 | ||
| 48 | #define SECCLASS_APPLETALK_SOCKET 56 | ||
| 49 | #define SECCLASS_PACKET 57 | ||
| 50 | #define SECCLASS_KEY 58 | ||
| 51 | #define SECCLASS_DCCP_SOCKET 60 | ||
| 52 | #define SECCLASS_MEMPROTECT 61 | ||
| 53 | #define SECCLASS_PEER 68 | ||
| 54 | #define SECCLASS_CAPABILITY2 69 | ||
| 55 | #define SECCLASS_KERNEL_SERVICE 74 | ||
| 56 | #define SECCLASS_TUN_SOCKET 75 | ||
| 57 | |||
| 58 | /* | ||
| 59 | * Security identifier indices for initial entities | ||
| 60 | */ | ||
| 61 | #define SECINITSID_KERNEL 1 | ||
| 62 | #define SECINITSID_SECURITY 2 | ||
| 63 | #define SECINITSID_UNLABELED 3 | ||
| 64 | #define SECINITSID_FS 4 | ||
| 65 | #define SECINITSID_FILE 5 | ||
| 66 | #define SECINITSID_FILE_LABELS 6 | ||
| 67 | #define SECINITSID_INIT 7 | ||
| 68 | #define SECINITSID_ANY_SOCKET 8 | ||
| 69 | #define SECINITSID_PORT 9 | ||
| 70 | #define SECINITSID_NETIF 10 | ||
| 71 | #define SECINITSID_NETMSG 11 | ||
| 72 | #define SECINITSID_NODE 12 | ||
| 73 | #define SECINITSID_IGMP_PACKET 13 | ||
| 74 | #define SECINITSID_ICMP_SOCKET 14 | ||
| 75 | #define SECINITSID_TCP_SOCKET 15 | ||
| 76 | #define SECINITSID_SYSCTL_MODPROBE 16 | ||
| 77 | #define SECINITSID_SYSCTL 17 | ||
| 78 | #define SECINITSID_SYSCTL_FS 18 | ||
| 79 | #define SECINITSID_SYSCTL_KERNEL 19 | ||
| 80 | #define SECINITSID_SYSCTL_NET 20 | ||
| 81 | #define SECINITSID_SYSCTL_NET_UNIX 21 | ||
| 82 | #define SECINITSID_SYSCTL_VM 22 | ||
| 83 | #define SECINITSID_SYSCTL_DEV 23 | ||
| 84 | #define SECINITSID_KMOD 24 | ||
| 85 | #define SECINITSID_POLICY 25 | ||
| 86 | #define SECINITSID_SCMP_PACKET 26 | ||
| 87 | #define SECINITSID_DEVNULL 27 | ||
| 88 | |||
| 89 | #define SECINITSID_NUM 27 | ||
| 90 | |||
| 91 | #endif | ||
diff --git a/security/selinux/include/security.h b/security/selinux/include/security.h index ca835795a8b3..2553266ad793 100644 --- a/security/selinux/include/security.h +++ b/security/selinux/include/security.h | |||
| @@ -97,11 +97,18 @@ struct av_decision { | |||
| 97 | #define AVD_FLAGS_PERMISSIVE 0x0001 | 97 | #define AVD_FLAGS_PERMISSIVE 0x0001 |
| 98 | 98 | ||
| 99 | int security_compute_av(u32 ssid, u32 tsid, | 99 | int security_compute_av(u32 ssid, u32 tsid, |
| 100 | u16 tclass, u32 requested, | 100 | u16 tclass, u32 requested, |
| 101 | struct av_decision *avd); | 101 | struct av_decision *avd); |
| 102 | |||
| 103 | int security_compute_av_user(u32 ssid, u32 tsid, | ||
| 104 | u16 tclass, u32 requested, | ||
| 105 | struct av_decision *avd); | ||
| 102 | 106 | ||
| 103 | int security_transition_sid(u32 ssid, u32 tsid, | 107 | int security_transition_sid(u32 ssid, u32 tsid, |
| 104 | u16 tclass, u32 *out_sid); | 108 | u16 tclass, u32 *out_sid); |
| 109 | |||
| 110 | int security_transition_sid_user(u32 ssid, u32 tsid, | ||
| 111 | u16 tclass, u32 *out_sid); | ||
| 105 | 112 | ||
| 106 | int security_member_sid(u32 ssid, u32 tsid, | 113 | int security_member_sid(u32 ssid, u32 tsid, |
| 107 | u16 tclass, u32 *out_sid); | 114 | u16 tclass, u32 *out_sid); |
