diff options
Diffstat (limited to 'security/smack/smack.h')
| -rw-r--r-- | security/smack/smack.h | 13 |
1 files changed, 13 insertions, 0 deletions
diff --git a/security/smack/smack.h b/security/smack/smack.h index 76feb31eb823..99b36124f712 100644 --- a/security/smack/smack.h +++ b/security/smack/smack.h | |||
| @@ -283,6 +283,19 @@ static inline char *smk_of_current(void) | |||
| 283 | } | 283 | } |
| 284 | 284 | ||
| 285 | /* | 285 | /* |
| 286 | * Is the task privileged and allowed to be privileged | ||
| 287 | * by the onlycap rule. | ||
| 288 | */ | ||
| 289 | static inline int smack_privileged(int cap) | ||
| 290 | { | ||
| 291 | if (!capable(cap)) | ||
| 292 | return 0; | ||
| 293 | if (smack_onlycap == NULL || smack_onlycap == smk_of_current()) | ||
| 294 | return 1; | ||
| 295 | return 0; | ||
| 296 | } | ||
| 297 | |||
| 298 | /* | ||
| 286 | * logging functions | 299 | * logging functions |
| 287 | */ | 300 | */ |
| 288 | #define SMACK_AUDIT_DENIED 0x1 | 301 | #define SMACK_AUDIT_DENIED 0x1 |
