Searched refs:audit_krule (Results 1 – 13 of 13) sorted by relevance
/linux-4.4.14/kernel/ |
D | audit.h | 60 struct audit_krule rule; 260 extern struct audit_entry *audit_dupe_rule(struct audit_krule *old); 269 extern int audit_to_watch(struct audit_krule *krule, char *path, int len, u32 op); 270 extern int audit_add_watch(struct audit_krule *krule, struct list_head **list); 271 extern void audit_remove_watch_rule(struct audit_krule *krule); 275 extern struct audit_fsnotify_mark *audit_alloc_mark(struct audit_krule *krule, char *pathname, int … 278 extern void audit_remove_mark_rule(struct audit_krule *krule); 280 extern int audit_dupe_exe(struct audit_krule *new, struct audit_krule *old); 305 extern int audit_make_tree(struct audit_krule *, char *, u32); 306 extern int audit_add_tree_rule(struct audit_krule *); [all …]
|
D | audit_fsnotify.c | 40 struct audit_krule *rule; 83 struct audit_fsnotify_mark *audit_alloc_mark(struct audit_krule *krule, char *pathname, int len) in audit_alloc_mark() 126 struct audit_krule *rule = audit_mark->rule; in audit_mark_log_rule_change() 150 void audit_remove_mark_rule(struct audit_krule *krule) in audit_remove_mark_rule() 159 struct audit_krule *rule = audit_mark->rule; in audit_autoremove_mark_rule()
|
D | audit_watch.c | 189 int audit_to_watch(struct audit_krule *krule, char *path, int len, u32 op) in audit_to_watch() 237 static void audit_watch_log_rule_change(struct audit_krule *r, struct audit_watch *w, char *op) in audit_watch_log_rule_change() 262 struct audit_krule *r, *nextr; in audit_update_watch() 339 struct audit_krule *r, *nextr; in audit_remove_parent_watches() 379 static void audit_add_to_parent(struct audit_krule *krule, in audit_add_to_parent() 414 int audit_add_watch(struct audit_krule *krule, struct list_head **list) in audit_add_watch() 451 void audit_remove_watch_rule(struct audit_krule *krule) in audit_remove_watch_rule() 522 int audit_dupe_exe(struct audit_krule *new, struct audit_krule *old) in audit_dupe_exe()
|
D | auditfilter.c | 95 struct audit_krule *erule = &e->rule; in audit_free_rule() 162 static inline int audit_to_inode(struct audit_krule *krule, in audit_to_inode() 597 static struct audit_rule_data *audit_krule_to_data(struct audit_krule *krule) in audit_krule_to_data() 667 static int audit_compare_rule(struct audit_krule *a, struct audit_krule *b) in audit_compare_rule() 782 struct audit_entry *audit_dupe_rule(struct audit_krule *old) in audit_dupe_rule() 786 struct audit_krule *new; in audit_dupe_rule() 1037 struct audit_krule *r; in audit_list_rules() 1063 static void audit_log_rule_change(char *action, struct audit_krule *rule, int res) in audit_log_rule_change() 1293 static int audit_filter_user_rules(struct audit_krule *rule, int type, in audit_filter_user_rules() 1402 static int update_lsm_rule(struct audit_krule *r) in update_lsm_rule() [all …]
|
D | audit_tree.c | 454 static void audit_tree_log_remove_rule(struct audit_krule *rule) in audit_tree_log_remove_rule() 472 struct audit_krule *rule, *next; in kill_rules() 556 int audit_remove_tree_rule(struct audit_krule *rule) in audit_remove_tree_rule() 633 int audit_make_tree(struct audit_krule *rule, char *pathname, u32 op) in audit_make_tree() 709 int audit_add_tree_rule(struct audit_krule *rule) in audit_add_tree_rule()
|
D | auditsc.c | 439 struct audit_krule *rule, in audit_filter_rules() 727 static int audit_in_mask(const struct audit_krule *rule, unsigned long val) in audit_in_mask()
|
/linux-4.4.14/security/selinux/include/ |
D | audit.h | 62 int selinux_audit_rule_known(struct audit_krule *krule);
|
/linux-4.4.14/include/linux/ |
D | security.h | 65 struct audit_krule; 1557 int security_audit_rule_known(struct audit_krule *krule); 1570 static inline int security_audit_rule_known(struct audit_krule *krule) in security_audit_rule_known()
|
D | audit.h | 51 struct audit_krule { struct
|
D | lsm_hooks.h | 1611 int (*audit_rule_known)(struct audit_krule *krule);
|
/linux-4.4.14/security/ |
D | security.c | 1523 int security_audit_rule_known(struct audit_krule *krule) in security_audit_rule_known()
|
/linux-4.4.14/security/selinux/ss/ |
D | services.c | 3119 int selinux_audit_rule_known(struct audit_krule *rule) in selinux_audit_rule_known()
|
/linux-4.4.14/security/smack/ |
D | smack_lsm.c | 4431 static int smack_audit_rule_known(struct audit_krule *krule) in smack_audit_rule_known()
|