diff options
Diffstat (limited to 'kernel/audit.c')
| -rw-r--r-- | kernel/audit.c | 21 |
1 files changed, 21 insertions, 0 deletions
diff --git a/kernel/audit.c b/kernel/audit.c index 4a3f28d2ca65..ea3b7b6191c7 100644 --- a/kernel/audit.c +++ b/kernel/audit.c | |||
| @@ -1456,6 +1456,27 @@ void audit_log_key(struct audit_buffer *ab, char *key) | |||
| 1456 | } | 1456 | } |
| 1457 | 1457 | ||
| 1458 | /** | 1458 | /** |
| 1459 | * audit_log_link_denied - report a link restriction denial | ||
| 1460 | * @operation: specific link opreation | ||
| 1461 | * @link: the path that triggered the restriction | ||
| 1462 | */ | ||
| 1463 | void audit_log_link_denied(const char *operation, struct path *link) | ||
| 1464 | { | ||
| 1465 | struct audit_buffer *ab; | ||
| 1466 | |||
| 1467 | ab = audit_log_start(current->audit_context, GFP_KERNEL, | ||
| 1468 | AUDIT_ANOM_LINK); | ||
| 1469 | audit_log_format(ab, "op=%s action=denied", operation); | ||
| 1470 | audit_log_format(ab, " pid=%d comm=", current->pid); | ||
| 1471 | audit_log_untrustedstring(ab, current->comm); | ||
| 1472 | audit_log_d_path(ab, " path=", link); | ||
| 1473 | audit_log_format(ab, " dev="); | ||
| 1474 | audit_log_untrustedstring(ab, link->dentry->d_inode->i_sb->s_id); | ||
| 1475 | audit_log_format(ab, " ino=%lu", link->dentry->d_inode->i_ino); | ||
| 1476 | audit_log_end(ab); | ||
| 1477 | } | ||
| 1478 | |||
| 1479 | /** | ||
| 1459 | * audit_log_end - end one audit record | 1480 | * audit_log_end - end one audit record |
| 1460 | * @ab: the audit_buffer | 1481 | * @ab: the audit_buffer |
| 1461 | * | 1482 | * |
