linux/security/selinux
Stephen Smalley 242631c49d selinux: simplify ioctl checking
Simplify and improve the robustness of the SELinux ioctl checking by
using the "access mode" bits of the ioctl command to determine the
permission check rather than dealing with individual command values.
This removes any knowledge of specific ioctl commands from SELinux
and follows the same guidance we gave to Smack earlier.

Signed-off-by:  Stephen Smalley <sds@tycho.nsa.gov>
Signed-off-by: James Morris <jmorris@namei.org>
2008-07-14 15:01:53 +10:00
..
include SELinux: remove inherit field from inode_security_struct 2008-07-14 15:01:38 +10:00
ss SELinux: keep the code clean formating and syntax 2008-07-14 15:01:36 +10:00
avc.c Audit: standardize string audit interfaces 2008-04-28 06:19:22 -04:00
exports.c
hooks.c selinux: simplify ioctl checking 2008-07-14 15:01:53 +10:00
Kconfig
Makefile
netif.c
netlabel.c
netlink.c
netnode.c SELinux: keep the code clean formating and syntax 2008-07-14 15:01:36 +10:00
netport.c SELinux: keep the code clean formating and syntax 2008-07-14 15:01:36 +10:00
nlmsgtab.c
selinuxfs.c SELinux: keep the code clean formating and syntax 2008-07-14 15:01:36 +10:00
xfrm.c