Home
last modified time | relevance | path

Searched refs:krule (Results 1 – 9 of 9) sorted by relevance

/linux/kernel/
A Daudit_watch.c186 (krule->listnr != AUDIT_FILTER_EXIT && in audit_to_watch()
187 krule->listnr != AUDIT_FILTER_URING_EXIT) || in audit_to_watch()
189 krule->inode_f || krule->watch || krule->tree) in audit_to_watch()
196 krule->watch = watch; in audit_to_watch()
368 struct audit_watch *w, *watch = krule->watch; in audit_add_to_parent()
383 krule->watch = watch = w; in audit_add_to_parent()
395 list_add(&krule->rlist, &watch->rules); in audit_add_to_parent()
402 struct audit_watch *watch = krule->watch; in audit_add_watch()
437 audit_add_to_parent(krule, parent); in audit_add_watch()
449 struct audit_watch *watch = krule->watch; in audit_remove_watch_rule()
[all …]
A Dauditfilter.c156 if ((krule->listnr != AUDIT_FILTER_EXIT && in audit_to_inode()
157 krule->listnr != AUDIT_FILTER_URING_EXIT) || in audit_to_inode()
158 krule->inode_f || krule->watch || krule->tree || in audit_to_inode()
162 krule->inode_f = f; in audit_to_inode()
645 data->flags = krule->flags | krule->listnr; in audit_krule_to_data()
646 data->action = krule->action; in audit_krule_to_data()
647 data->field_count = krule->field_count; in audit_krule_to_data()
650 struct audit_field *f = &krule->fields[i]; in audit_krule_to_data()
671 audit_watch_path(krule->watch)); in audit_krule_to_data()
676 audit_tree_path(krule->tree)); in audit_krule_to_data()
[all …]
A Daudit_fsnotify.c74 struct audit_fsnotify_mark *audit_alloc_mark(struct audit_krule *krule, char *pathname, int len) in audit_alloc_mark() argument
101 audit_mark->rule = krule; in audit_alloc_mark()
138 void audit_remove_mark_rule(struct audit_krule *krule) in audit_remove_mark_rule() argument
140 struct audit_fsnotify_mark *mark = krule->exe; in audit_remove_mark_rule()
A Daudit.h267 extern int audit_to_watch(struct audit_krule *krule, char *path, int len,
269 extern int audit_add_watch(struct audit_krule *krule, struct list_head **list);
270 extern void audit_remove_watch_rule(struct audit_krule *krule);
275 extern struct audit_fsnotify_mark *audit_alloc_mark(struct audit_krule *krule,
279 extern void audit_remove_mark_rule(struct audit_krule *krule);
/linux/security/selinux/include/
A Daudit.h54 int selinux_audit_rule_known(struct audit_krule *krule);
/linux/include/linux/
A Dsecurity.h1891 int security_audit_rule_known(struct audit_krule *krule);
1903 static inline int security_audit_rule_known(struct audit_krule *krule) in security_audit_rule_known() argument
A Dlsm_hook_defs.h382 LSM_HOOK(int, 0, audit_rule_known, struct audit_krule *krule)
/linux/security/
A Dsecurity.c2550 int security_audit_rule_known(struct audit_krule *krule) in security_audit_rule_known() argument
2552 return call_int_hook(audit_rule_known, 0, krule); in security_audit_rule_known()
/linux/security/smack/
A Dsmack_lsm.c4493 static int smack_audit_rule_known(struct audit_krule *krule) in smack_audit_rule_known() argument
4498 for (i = 0; i < krule->field_count; i++) { in smack_audit_rule_known()
4499 f = &krule->fields[i]; in smack_audit_rule_known()

Completed in 30 milliseconds