at v4.20 2.7 kB view raw
1/* 2 * Copyright (C) 2008 IBM Corporation 3 * Author: Mimi Zohar <zohar@us.ibm.com> 4 * 5 * This program is free software; you can redistribute it and/or modify 6 * it under the terms of the GNU General Public License as published by 7 * the Free Software Foundation, version 2 of the License. 8 */ 9 10#ifndef _LINUX_IMA_H 11#define _LINUX_IMA_H 12 13#include <linux/fs.h> 14#include <linux/security.h> 15#include <linux/kexec.h> 16struct linux_binprm; 17 18#ifdef CONFIG_IMA 19extern int ima_bprm_check(struct linux_binprm *bprm); 20extern int ima_file_check(struct file *file, int mask); 21extern void ima_file_free(struct file *file); 22extern int ima_file_mmap(struct file *file, unsigned long prot); 23extern int ima_load_data(enum kernel_load_data_id id); 24extern int ima_read_file(struct file *file, enum kernel_read_file_id id); 25extern int ima_post_read_file(struct file *file, void *buf, loff_t size, 26 enum kernel_read_file_id id); 27extern void ima_post_path_mknod(struct dentry *dentry); 28 29#ifdef CONFIG_IMA_KEXEC 30extern void ima_add_kexec_buffer(struct kimage *image); 31#endif 32 33#else 34static inline int ima_bprm_check(struct linux_binprm *bprm) 35{ 36 return 0; 37} 38 39static inline int ima_file_check(struct file *file, int mask) 40{ 41 return 0; 42} 43 44static inline void ima_file_free(struct file *file) 45{ 46 return; 47} 48 49static inline int ima_file_mmap(struct file *file, unsigned long prot) 50{ 51 return 0; 52} 53 54static inline int ima_load_data(enum kernel_load_data_id id) 55{ 56 return 0; 57} 58 59static inline int ima_read_file(struct file *file, enum kernel_read_file_id id) 60{ 61 return 0; 62} 63 64static inline int ima_post_read_file(struct file *file, void *buf, loff_t size, 65 enum kernel_read_file_id id) 66{ 67 return 0; 68} 69 70static inline void ima_post_path_mknod(struct dentry *dentry) 71{ 72 return; 73} 74 75#endif /* CONFIG_IMA */ 76 77#ifndef CONFIG_IMA_KEXEC 78struct kimage; 79 80static inline void ima_add_kexec_buffer(struct kimage *image) 81{} 82#endif 83 84#ifdef CONFIG_IMA_APPRAISE 85extern bool is_ima_appraise_enabled(void); 86extern void ima_inode_post_setattr(struct dentry *dentry); 87extern int ima_inode_setxattr(struct dentry *dentry, const char *xattr_name, 88 const void *xattr_value, size_t xattr_value_len); 89extern int ima_inode_removexattr(struct dentry *dentry, const char *xattr_name); 90#else 91static inline bool is_ima_appraise_enabled(void) 92{ 93 return 0; 94} 95 96static inline void ima_inode_post_setattr(struct dentry *dentry) 97{ 98 return; 99} 100 101static inline int ima_inode_setxattr(struct dentry *dentry, 102 const char *xattr_name, 103 const void *xattr_value, 104 size_t xattr_value_len) 105{ 106 return 0; 107} 108 109static inline int ima_inode_removexattr(struct dentry *dentry, 110 const char *xattr_name) 111{ 112 return 0; 113} 114#endif /* CONFIG_IMA_APPRAISE */ 115#endif /* _LINUX_IMA_H */