mirror of
https://github.com/torvalds/linux
synced 2024-11-05 18:23:50 +00:00
fe49c7e4f8
Move cache based pkey sid retrieval code which was added with commit "409dcf31" under CONFIG_SECURITY_INFINIBAND. As its going to alloc a new cache which impacts low RAM devices which was enabled by default. Suggested-by: Paul Moore <paul@paul-moore.com> Signed-off-by: Ravi Kumar Siddojigari <rsiddoji@codeaurora.org> [PM: checkpatch.pl cleanups, fixed capitalization in the description] Signed-off-by: Paul Moore <paul@paul-moore.com>
32 lines
663 B
C
32 lines
663 B
C
/* SPDX-License-Identifier: GPL-2.0-only */
|
|
/*
|
|
* pkey table
|
|
*
|
|
* SELinux must keep a mapping of pkeys to labels/SIDs. This
|
|
* mapping is maintained as part of the normal policy but a fast cache is
|
|
* needed to reduce the lookup overhead.
|
|
*/
|
|
|
|
/*
|
|
* (c) Mellanox Technologies, 2016
|
|
*/
|
|
|
|
#ifndef _SELINUX_IB_PKEY_H
|
|
#define _SELINUX_IB_PKEY_H
|
|
|
|
#ifdef CONFIG_SECURITY_INFINIBAND
|
|
void sel_ib_pkey_flush(void);
|
|
int sel_ib_pkey_sid(u64 subnet_prefix, u16 pkey, u32 *sid);
|
|
#else
|
|
static inline void sel_ib_pkey_flush(void)
|
|
{
|
|
return;
|
|
}
|
|
static inline int sel_ib_pkey_sid(u64 subnet_prefix, u16 pkey, u32 *sid)
|
|
{
|
|
*sid = SECINITSID_UNLABELED;
|
|
return 0;
|
|
}
|
|
#endif
|
|
|
|
#endif
|