securebits 128 include/linux/cred.h unsigned securebits; /* SUID-less security management */ securebits 7 include/linux/securebits.h #define issecure(X) (issecure_mask(X) & current_cred_xxx(securebits)) securebits 55 kernel/cred.c .securebits = SECUREBITS_DEFAULT, securebits 47 kernel/user_namespace.c cred->securebits = SECUREBITS_DEFAULT; securebits 882 security/commoncap.c new->securebits &= ~issecure_mask(SECURE_KEEP_CAPS); securebits 1203 security/commoncap.c if ((((old->securebits & SECURE_ALL_LOCKS) >> 1) securebits 1204 security/commoncap.c & (old->securebits ^ arg2)) /*[1]*/ securebits 1205 security/commoncap.c || ((old->securebits & SECURE_ALL_LOCKS & ~arg2)) /*[2]*/ securebits 1225 security/commoncap.c new->securebits = arg2; securebits 1229 security/commoncap.c return old->securebits; securebits 1244 security/commoncap.c new->securebits |= issecure_mask(SECURE_KEEP_CAPS); securebits 1246 security/commoncap.c new->securebits &= ~issecure_mask(SECURE_KEEP_CAPS); securebits 934 security/keys/process_keys.c new->securebits = old->securebits;