selinuxfs.c 43.4 KB
Newer Older
L
Linus Torvalds 已提交
1 2
/* Updated: Karl MacMillan <kmacmillan@tresys.com>
 *
3
 *	Added conditional policy language extensions
L
Linus Torvalds 已提交
4
 *
5
 *  Updated: Hewlett-Packard <paul@paul-moore.com>
6
 *
7
 *	Added support for the policy capability bitmap
8 9
 *
 * Copyright (C) 2007 Hewlett-Packard Development Company, L.P.
L
Linus Torvalds 已提交
10 11 12
 * Copyright (C) 2003 - 2004 Tresys Technology, LLC
 * Copyright (C) 2004 Red Hat, Inc., James Morris <jmorris@redhat.com>
 *	This program is free software; you can redistribute it and/or modify
13
 *	it under the terms of the GNU General Public License as published by
L
Linus Torvalds 已提交
14 15 16 17 18 19 20 21
 *	the Free Software Foundation, version 2.
 */

#include <linux/kernel.h>
#include <linux/pagemap.h>
#include <linux/slab.h>
#include <linux/vmalloc.h>
#include <linux/fs.h>
I
Ingo Molnar 已提交
22
#include <linux/mutex.h>
L
Linus Torvalds 已提交
23 24 25 26 27 28
#include <linux/init.h>
#include <linux/string.h>
#include <linux/security.h>
#include <linux/major.h>
#include <linux/seq_file.h>
#include <linux/percpu.h>
S
Steve Grubb 已提交
29
#include <linux/audit.h>
30
#include <linux/uaccess.h>
31
#include <linux/kobject.h>
32
#include <linux/ctype.h>
L
Linus Torvalds 已提交
33 34 35 36 37 38 39 40 41 42 43 44 45 46 47

/* selinuxfs pseudo filesystem for exporting the security policy API.
   Based on the proc code and the fs/nfsd/nfsctl.c code. */

#include "flask.h"
#include "avc.h"
#include "avc_ss.h"
#include "security.h"
#include "objsec.h"
#include "conditional.h"

unsigned int selinux_checkreqprot = CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE;

static int __init checkreqprot_setup(char *str)
{
48
	unsigned long checkreqprot;
49
	if (!kstrtoul(str, 0, &checkreqprot))
50
		selinux_checkreqprot = checkreqprot ? 1 : 0;
L
Linus Torvalds 已提交
51 52 53 54
	return 1;
}
__setup("checkreqprot=", checkreqprot_setup);

I
Ingo Molnar 已提交
55
static DEFINE_MUTEX(sel_mutex);
L
Linus Torvalds 已提交
56 57

/* global data for booleans */
58 59
static struct dentry *bool_dir;
static int bool_num;
S
Stephen Smalley 已提交
60
static char **bool_pending_names;
61
static int *bool_pending_values;
L
Linus Torvalds 已提交
62

63
/* global data for classes */
64
static struct dentry *class_dir;
65 66
static unsigned long last_class_ino;

67 68
static char policy_opened;

69
/* global data for policy capabilities */
70
static struct dentry *policycap_dir;
71

L
Linus Torvalds 已提交
72 73 74 75 76 77 78 79 80 81 82 83 84 85 86
enum sel_inos {
	SEL_ROOT_INO = 2,
	SEL_LOAD,	/* load policy */
	SEL_ENFORCE,	/* get or set enforcing status */
	SEL_CONTEXT,	/* validate context */
	SEL_ACCESS,	/* compute access decision */
	SEL_CREATE,	/* compute create labeling decision */
	SEL_RELABEL,	/* compute relabeling decision */
	SEL_USER,	/* compute reachable user contexts */
	SEL_POLICYVERS,	/* return policy version for this kernel */
	SEL_COMMIT_BOOLS, /* commit new boolean values */
	SEL_MLS,	/* return if MLS policy is enabled */
	SEL_DISABLE,	/* disable SELinux until next reboot */
	SEL_MEMBER,	/* compute polyinstantiation membership decision */
	SEL_CHECKREQPROT, /* check requested protection, not kernel-applied one */
87
	SEL_COMPAT_NET,	/* whether to use old compat network packet controls */
88 89
	SEL_REJECT_UNKNOWN, /* export unknown reject handling to userspace */
	SEL_DENY_UNKNOWN, /* export unknown deny handling to userspace */
90
	SEL_STATUS,	/* export current status using mmap() */
91
	SEL_POLICY,	/* allow userspace to read the in kernel policy */
92
	SEL_VALIDATE_TRANS, /* compute validatetrans decision */
93
	SEL_INO_NEXT,	/* The next inode number to use */
L
Linus Torvalds 已提交
94 95
};

96 97
static unsigned long sel_last_ino = SEL_INO_NEXT - 1;

98 99 100 101 102
#define SEL_INITCON_INO_OFFSET		0x01000000
#define SEL_BOOL_INO_OFFSET		0x02000000
#define SEL_CLASS_INO_OFFSET		0x04000000
#define SEL_POLICYCAP_INO_OFFSET	0x08000000
#define SEL_INO_MASK			0x00ffffff
103

L
Linus Torvalds 已提交
104 105 106 107 108 109 110 111 112 113 114 115
#define TMPBUFLEN	12
static ssize_t sel_read_enforce(struct file *filp, char __user *buf,
				size_t count, loff_t *ppos)
{
	char tmpbuf[TMPBUFLEN];
	ssize_t length;

	length = scnprintf(tmpbuf, TMPBUFLEN, "%d", selinux_enforcing);
	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
}

#ifdef CONFIG_SECURITY_SELINUX_DEVELOP
116
static ssize_t sel_write_enforce(struct file *file, const char __user *buf,
L
Linus Torvalds 已提交
117 118 119
				 size_t count, loff_t *ppos)

{
120
	char *page = NULL;
L
Linus Torvalds 已提交
121 122 123
	ssize_t length;
	int new_value;

124
	if (count >= PAGE_SIZE)
A
Al Viro 已提交
125
		return -ENOMEM;
126 127 128

	/* No partial writes. */
	if (*ppos != 0)
A
Al Viro 已提交
129
		return -EINVAL;
130

A
Al Viro 已提交
131 132 133
	page = memdup_user_nul(buf, count);
	if (IS_ERR(page))
		return PTR_ERR(page);
L
Linus Torvalds 已提交
134 135 136 137 138

	length = -EINVAL;
	if (sscanf(page, "%d", &new_value) != 1)
		goto out;

139 140
	new_value = !!new_value;

L
Linus Torvalds 已提交
141
	if (new_value != selinux_enforcing) {
142 143 144
		length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
				      SECCLASS_SECURITY, SECURITY__SETENFORCE,
				      NULL);
L
Linus Torvalds 已提交
145 146
		if (length)
			goto out;
S
Steve Grubb 已提交
147
		audit_log(current->audit_context, GFP_KERNEL, AUDIT_MAC_STATUS,
148 149
			"enforcing=%d old_enforcing=%d auid=%u ses=%u",
			new_value, selinux_enforcing,
150
			from_kuid(&init_user_ns, audit_get_loginuid(current)),
151
			audit_get_sessionid(current));
L
Linus Torvalds 已提交
152 153 154 155
		selinux_enforcing = new_value;
		if (selinux_enforcing)
			avc_ss_reset(0);
		selnl_notify_setenforce(selinux_enforcing);
156
		selinux_status_update_setenforce(selinux_enforcing);
L
Linus Torvalds 已提交
157 158 159
	}
	length = count;
out:
A
Al Viro 已提交
160
	kfree(page);
L
Linus Torvalds 已提交
161 162 163 164 165 166
	return length;
}
#else
#define sel_write_enforce NULL
#endif

167
static const struct file_operations sel_enforce_ops = {
L
Linus Torvalds 已提交
168 169
	.read		= sel_read_enforce,
	.write		= sel_write_enforce,
A
Arnd Bergmann 已提交
170
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
171 172
};

173 174 175 176 177
static ssize_t sel_read_handle_unknown(struct file *filp, char __user *buf,
					size_t count, loff_t *ppos)
{
	char tmpbuf[TMPBUFLEN];
	ssize_t length;
A
Al Viro 已提交
178
	ino_t ino = file_inode(filp)->i_ino;
179 180 181 182 183 184 185 186 187
	int handle_unknown = (ino == SEL_REJECT_UNKNOWN) ?
		security_get_reject_unknown() : !security_get_allow_unknown();

	length = scnprintf(tmpbuf, TMPBUFLEN, "%d", handle_unknown);
	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
}

static const struct file_operations sel_handle_unknown_ops = {
	.read		= sel_read_handle_unknown,
A
Arnd Bergmann 已提交
188
	.llseek		= generic_file_llseek,
189 190
};

191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243
static int sel_open_handle_status(struct inode *inode, struct file *filp)
{
	struct page    *status = selinux_kernel_status_page();

	if (!status)
		return -ENOMEM;

	filp->private_data = status;

	return 0;
}

static ssize_t sel_read_handle_status(struct file *filp, char __user *buf,
				      size_t count, loff_t *ppos)
{
	struct page    *status = filp->private_data;

	BUG_ON(!status);

	return simple_read_from_buffer(buf, count, ppos,
				       page_address(status),
				       sizeof(struct selinux_kernel_status));
}

static int sel_mmap_handle_status(struct file *filp,
				  struct vm_area_struct *vma)
{
	struct page    *status = filp->private_data;
	unsigned long	size = vma->vm_end - vma->vm_start;

	BUG_ON(!status);

	/* only allows one page from the head */
	if (vma->vm_pgoff > 0 || size != PAGE_SIZE)
		return -EIO;
	/* disallow writable mapping */
	if (vma->vm_flags & VM_WRITE)
		return -EPERM;
	/* disallow mprotect() turns it into writable */
	vma->vm_flags &= ~VM_MAYWRITE;

	return remap_pfn_range(vma, vma->vm_start,
			       page_to_pfn(status),
			       size, vma->vm_page_prot);
}

static const struct file_operations sel_handle_status_ops = {
	.open		= sel_open_handle_status,
	.read		= sel_read_handle_status,
	.mmap		= sel_mmap_handle_status,
	.llseek		= generic_file_llseek,
};

L
Linus Torvalds 已提交
244
#ifdef CONFIG_SECURITY_SELINUX_DISABLE
245
static ssize_t sel_write_disable(struct file *file, const char __user *buf,
L
Linus Torvalds 已提交
246 247 248
				 size_t count, loff_t *ppos)

{
A
Al Viro 已提交
249
	char *page;
L
Linus Torvalds 已提交
250 251 252
	ssize_t length;
	int new_value;

253
	if (count >= PAGE_SIZE)
A
Al Viro 已提交
254
		return -ENOMEM;
255 256 257

	/* No partial writes. */
	if (*ppos != 0)
A
Al Viro 已提交
258
		return -EINVAL;
259

A
Al Viro 已提交
260 261 262
	page = memdup_user_nul(buf, count);
	if (IS_ERR(page))
		return PTR_ERR(page);
L
Linus Torvalds 已提交
263 264 265 266 267 268 269

	length = -EINVAL;
	if (sscanf(page, "%d", &new_value) != 1)
		goto out;

	if (new_value) {
		length = selinux_disable();
270
		if (length)
L
Linus Torvalds 已提交
271
			goto out;
S
Steve Grubb 已提交
272
		audit_log(current->audit_context, GFP_KERNEL, AUDIT_MAC_STATUS,
273
			"selinux=0 auid=%u ses=%u",
274
			from_kuid(&init_user_ns, audit_get_loginuid(current)),
275
			audit_get_sessionid(current));
L
Linus Torvalds 已提交
276 277 278 279
	}

	length = count;
out:
A
Al Viro 已提交
280
	kfree(page);
L
Linus Torvalds 已提交
281 282 283 284 285 286
	return length;
}
#else
#define sel_write_disable NULL
#endif

287
static const struct file_operations sel_disable_ops = {
L
Linus Torvalds 已提交
288
	.write		= sel_write_disable,
A
Arnd Bergmann 已提交
289
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
290 291 292
};

static ssize_t sel_read_policyvers(struct file *filp, char __user *buf,
293
				   size_t count, loff_t *ppos)
L
Linus Torvalds 已提交
294 295 296 297 298 299 300 301
{
	char tmpbuf[TMPBUFLEN];
	ssize_t length;

	length = scnprintf(tmpbuf, TMPBUFLEN, "%u", POLICYDB_VERSION_MAX);
	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
}

302
static const struct file_operations sel_policyvers_ops = {
L
Linus Torvalds 已提交
303
	.read		= sel_read_policyvers,
A
Arnd Bergmann 已提交
304
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
305 306 307 308
};

/* declaration for sel_write_load */
static int sel_make_bools(void);
309
static int sel_make_classes(void);
310
static int sel_make_policycap(void);
311 312

/* declaration for sel_make_class_dirs */
313
static struct dentry *sel_make_dir(struct dentry *dir, const char *name,
314
			unsigned long *ino);
L
Linus Torvalds 已提交
315 316 317 318 319 320 321

static ssize_t sel_read_mls(struct file *filp, char __user *buf,
				size_t count, loff_t *ppos)
{
	char tmpbuf[TMPBUFLEN];
	ssize_t length;

322 323
	length = scnprintf(tmpbuf, TMPBUFLEN, "%d",
			   security_mls_enabled());
L
Linus Torvalds 已提交
324 325 326
	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
}

327
static const struct file_operations sel_mls_ops = {
L
Linus Torvalds 已提交
328
	.read		= sel_read_mls,
A
Arnd Bergmann 已提交
329
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
330 331
};

332 333 334 335 336 337 338 339 340 341 342 343 344 345
struct policy_load_memory {
	size_t len;
	void *data;
};

static int sel_open_policy(struct inode *inode, struct file *filp)
{
	struct policy_load_memory *plm = NULL;
	int rc;

	BUG_ON(filp->private_data);

	mutex_lock(&sel_mutex);

346 347
	rc = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			  SECCLASS_SECURITY, SECURITY__READ_POLICY, NULL);
348 349 350 351 352 353 354 355 356 357 358 359 360
	if (rc)
		goto err;

	rc = -EBUSY;
	if (policy_opened)
		goto err;

	rc = -ENOMEM;
	plm = kzalloc(sizeof(*plm), GFP_KERNEL);
	if (!plm)
		goto err;

	if (i_size_read(inode) != security_policydb_len()) {
A
Al Viro 已提交
361
		inode_lock(inode);
362
		i_size_write(inode, security_policydb_len());
A
Al Viro 已提交
363
		inode_unlock(inode);
364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407
	}

	rc = security_read_policy(&plm->data, &plm->len);
	if (rc)
		goto err;

	policy_opened = 1;

	filp->private_data = plm;

	mutex_unlock(&sel_mutex);

	return 0;
err:
	mutex_unlock(&sel_mutex);

	if (plm)
		vfree(plm->data);
	kfree(plm);
	return rc;
}

static int sel_release_policy(struct inode *inode, struct file *filp)
{
	struct policy_load_memory *plm = filp->private_data;

	BUG_ON(!plm);

	policy_opened = 0;

	vfree(plm->data);
	kfree(plm);

	return 0;
}

static ssize_t sel_read_policy(struct file *filp, char __user *buf,
			       size_t count, loff_t *ppos)
{
	struct policy_load_memory *plm = filp->private_data;
	int ret;

	mutex_lock(&sel_mutex);

408 409
	ret = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			  SECCLASS_SECURITY, SECURITY__READ_POLICY, NULL);
410 411 412 413 414 415 416 417 418
	if (ret)
		goto out;

	ret = simple_read_from_buffer(buf, count, ppos, plm->data, plm->len);
out:
	mutex_unlock(&sel_mutex);
	return ret;
}

419
static int sel_mmap_policy_fault(struct vm_fault *vmf)
420
{
421
	struct policy_load_memory *plm = vmf->vma->vm_file->private_data;
422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439
	unsigned long offset;
	struct page *page;

	if (vmf->flags & (FAULT_FLAG_MKWRITE | FAULT_FLAG_WRITE))
		return VM_FAULT_SIGBUS;

	offset = vmf->pgoff << PAGE_SHIFT;
	if (offset >= roundup(plm->len, PAGE_SIZE))
		return VM_FAULT_SIGBUS;

	page = vmalloc_to_page(plm->data + offset);
	get_page(page);

	vmf->page = page;

	return 0;
}

440
static const struct vm_operations_struct sel_mmap_policy_ops = {
441 442 443 444
	.fault = sel_mmap_policy_fault,
	.page_mkwrite = sel_mmap_policy_fault,
};

445
static int sel_mmap_policy(struct file *filp, struct vm_area_struct *vma)
446 447 448 449 450 451 452 453 454
{
	if (vma->vm_flags & VM_SHARED) {
		/* do not allow mprotect to make mapping writable */
		vma->vm_flags &= ~VM_MAYWRITE;

		if (vma->vm_flags & VM_WRITE)
			return -EACCES;
	}

455
	vma->vm_flags |= VM_DONTEXPAND | VM_DONTDUMP;
456 457 458 459 460
	vma->vm_ops = &sel_mmap_policy_ops;

	return 0;
}

461 462 463
static const struct file_operations sel_policy_ops = {
	.open		= sel_open_policy,
	.read		= sel_read_policy,
464
	.mmap		= sel_mmap_policy,
465
	.release	= sel_release_policy,
466
	.llseek		= generic_file_llseek,
467 468
};

469
static ssize_t sel_write_load(struct file *file, const char __user *buf,
L
Linus Torvalds 已提交
470 471 472 473 474 475
			      size_t count, loff_t *ppos)

{
	ssize_t length;
	void *data = NULL;

I
Ingo Molnar 已提交
476
	mutex_lock(&sel_mutex);
L
Linus Torvalds 已提交
477

478 479
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__LOAD_POLICY, NULL);
L
Linus Torvalds 已提交
480 481 482
	if (length)
		goto out;

483 484 485
	/* No partial writes. */
	length = -EINVAL;
	if (*ppos != 0)
L
Linus Torvalds 已提交
486 487
		goto out;

488 489 490 491 492 493 494
	length = -EFBIG;
	if (count > 64 * 1024 * 1024)
		goto out;

	length = -ENOMEM;
	data = vmalloc(count);
	if (!data)
L
Linus Torvalds 已提交
495 496 497 498 499 500 501
		goto out;

	length = -EFAULT;
	if (copy_from_user(data, buf, count) != 0)
		goto out;

	length = security_load_policy(data, count);
502 503
	if (length) {
		pr_warn_ratelimited("SELinux: failed to load policy\n");
L
Linus Torvalds 已提交
504
		goto out;
505
	}
L
Linus Torvalds 已提交
506

507
	length = sel_make_bools();
508 509
	if (length) {
		pr_err("SELinux: failed to load policy booleans\n");
510
		goto out1;
511
	}
512

513
	length = sel_make_classes();
514 515
	if (length) {
		pr_err("SELinux: failed to load policy classes\n");
516
		goto out1;
517
	}
518

519
	length = sel_make_policycap();
520 521
	if (length) {
		pr_err("SELinux: failed to load policy capabilities\n");
522
		goto out1;
523
	}
524 525

	length = count;
526 527

out1:
S
Steve Grubb 已提交
528
	audit_log(current->audit_context, GFP_KERNEL, AUDIT_MAC_POLICY_LOAD,
529
		"policy loaded auid=%u ses=%u",
530
		from_kuid(&init_user_ns, audit_get_loginuid(current)),
531
		audit_get_sessionid(current));
L
Linus Torvalds 已提交
532
out:
I
Ingo Molnar 已提交
533
	mutex_unlock(&sel_mutex);
L
Linus Torvalds 已提交
534 535 536 537
	vfree(data);
	return length;
}

538
static const struct file_operations sel_load_ops = {
L
Linus Torvalds 已提交
539
	.write		= sel_write_load,
A
Arnd Bergmann 已提交
540
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
541 542
};

543
static ssize_t sel_write_context(struct file *file, char *buf, size_t size)
L
Linus Torvalds 已提交
544
{
545
	char *canon = NULL;
546
	u32 sid, len;
L
Linus Torvalds 已提交
547 548
	ssize_t length;

549 550
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__CHECK_CONTEXT, NULL);
L
Linus Torvalds 已提交
551
	if (length)
552
		goto out;
L
Linus Torvalds 已提交
553

554
	length = security_context_to_sid(buf, size, &sid, GFP_KERNEL);
555 556
	if (length)
		goto out;
L
Linus Torvalds 已提交
557

558
	length = security_sid_to_context(sid, &canon, &len);
559 560
	if (length)
		goto out;
561

562
	length = -ERANGE;
563
	if (len > SIMPLE_TRANSACTION_LIMIT) {
E
Eric Paris 已提交
564 565
		printk(KERN_ERR "SELinux: %s:  context size (%u) exceeds "
			"payload max\n", __func__, len);
L
Linus Torvalds 已提交
566
		goto out;
567
	}
L
Linus Torvalds 已提交
568

569 570
	memcpy(buf, canon, len);
	length = len;
L
Linus Torvalds 已提交
571
out:
572
	kfree(canon);
L
Linus Torvalds 已提交
573 574 575 576 577 578 579 580 581 582 583 584 585
	return length;
}

static ssize_t sel_read_checkreqprot(struct file *filp, char __user *buf,
				     size_t count, loff_t *ppos)
{
	char tmpbuf[TMPBUFLEN];
	ssize_t length;

	length = scnprintf(tmpbuf, TMPBUFLEN, "%u", selinux_checkreqprot);
	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
}

586
static ssize_t sel_write_checkreqprot(struct file *file, const char __user *buf,
L
Linus Torvalds 已提交
587 588
				      size_t count, loff_t *ppos)
{
A
Al Viro 已提交
589
	char *page;
L
Linus Torvalds 已提交
590 591 592
	ssize_t length;
	unsigned int new_value;

593 594 595
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__SETCHECKREQPROT,
			      NULL);
L
Linus Torvalds 已提交
596
	if (length)
A
Al Viro 已提交
597
		return length;
L
Linus Torvalds 已提交
598

599
	if (count >= PAGE_SIZE)
A
Al Viro 已提交
600
		return -ENOMEM;
601 602 603

	/* No partial writes. */
	if (*ppos != 0)
A
Al Viro 已提交
604
		return -EINVAL;
605

A
Al Viro 已提交
606 607 608
	page = memdup_user_nul(buf, count);
	if (IS_ERR(page))
		return PTR_ERR(page);
L
Linus Torvalds 已提交
609 610 611 612 613 614 615 616

	length = -EINVAL;
	if (sscanf(page, "%u", &new_value) != 1)
		goto out;

	selinux_checkreqprot = new_value ? 1 : 0;
	length = count;
out:
A
Al Viro 已提交
617
	kfree(page);
L
Linus Torvalds 已提交
618 619
	return length;
}
620
static const struct file_operations sel_checkreqprot_ops = {
L
Linus Torvalds 已提交
621 622
	.read		= sel_read_checkreqprot,
	.write		= sel_write_checkreqprot,
A
Arnd Bergmann 已提交
623
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
624 625
};

626 627 628 629 630 631 632 633 634 635
static ssize_t sel_write_validatetrans(struct file *file,
					const char __user *buf,
					size_t count, loff_t *ppos)
{
	char *oldcon = NULL, *newcon = NULL, *taskcon = NULL;
	char *req = NULL;
	u32 osid, nsid, tsid;
	u16 tclass;
	int rc;

636 637
	rc = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			  SECCLASS_SECURITY, SECURITY__VALIDATE_TRANS, NULL);
638 639 640 641 642 643 644 645 646 647 648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703
	if (rc)
		goto out;

	rc = -ENOMEM;
	if (count >= PAGE_SIZE)
		goto out;

	/* No partial writes. */
	rc = -EINVAL;
	if (*ppos != 0)
		goto out;

	rc = -ENOMEM;
	req = kzalloc(count + 1, GFP_KERNEL);
	if (!req)
		goto out;

	rc = -EFAULT;
	if (copy_from_user(req, buf, count))
		goto out;

	rc = -ENOMEM;
	oldcon = kzalloc(count + 1, GFP_KERNEL);
	if (!oldcon)
		goto out;

	newcon = kzalloc(count + 1, GFP_KERNEL);
	if (!newcon)
		goto out;

	taskcon = kzalloc(count + 1, GFP_KERNEL);
	if (!taskcon)
		goto out;

	rc = -EINVAL;
	if (sscanf(req, "%s %s %hu %s", oldcon, newcon, &tclass, taskcon) != 4)
		goto out;

	rc = security_context_str_to_sid(oldcon, &osid, GFP_KERNEL);
	if (rc)
		goto out;

	rc = security_context_str_to_sid(newcon, &nsid, GFP_KERNEL);
	if (rc)
		goto out;

	rc = security_context_str_to_sid(taskcon, &tsid, GFP_KERNEL);
	if (rc)
		goto out;

	rc = security_validate_transition_user(osid, nsid, tsid, tclass);
	if (!rc)
		rc = count;
out:
	kfree(req);
	kfree(oldcon);
	kfree(newcon);
	kfree(taskcon);
	return rc;
}

static const struct file_operations sel_transition_ops = {
	.write		= sel_write_validatetrans,
	.llseek		= generic_file_llseek,
};

L
Linus Torvalds 已提交
704 705 706
/*
 * Remaining nodes use transaction based IO methods like nfsd/nfsctl.c
 */
707 708 709 710 711
static ssize_t sel_write_access(struct file *file, char *buf, size_t size);
static ssize_t sel_write_create(struct file *file, char *buf, size_t size);
static ssize_t sel_write_relabel(struct file *file, char *buf, size_t size);
static ssize_t sel_write_user(struct file *file, char *buf, size_t size);
static ssize_t sel_write_member(struct file *file, char *buf, size_t size);
L
Linus Torvalds 已提交
712 713 714 715 716 717 718

static ssize_t (*write_op[])(struct file *, char *, size_t) = {
	[SEL_ACCESS] = sel_write_access,
	[SEL_CREATE] = sel_write_create,
	[SEL_RELABEL] = sel_write_relabel,
	[SEL_USER] = sel_write_user,
	[SEL_MEMBER] = sel_write_member,
719
	[SEL_CONTEXT] = sel_write_context,
L
Linus Torvalds 已提交
720 721 722 723
};

static ssize_t selinux_transaction_write(struct file *file, const char __user *buf, size_t size, loff_t *pos)
{
A
Al Viro 已提交
724
	ino_t ino = file_inode(file)->i_ino;
L
Linus Torvalds 已提交
725 726 727
	char *data;
	ssize_t rv;

728
	if (ino >= ARRAY_SIZE(write_op) || !write_op[ino])
L
Linus Torvalds 已提交
729 730 731 732 733 734
		return -EINVAL;

	data = simple_transaction_get(file, buf, size);
	if (IS_ERR(data))
		return PTR_ERR(data);

735 736
	rv = write_op[ino](file, data, size);
	if (rv > 0) {
L
Linus Torvalds 已提交
737 738 739 740 741 742
		simple_transaction_set(file, rv);
		rv = size;
	}
	return rv;
}

743
static const struct file_operations transaction_ops = {
L
Linus Torvalds 已提交
744 745 746
	.write		= selinux_transaction_write,
	.read		= simple_transaction_read,
	.release	= simple_transaction_release,
A
Arnd Bergmann 已提交
747
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
748 749 750 751 752 753 754 755
};

/*
 * payload - write methods
 * If the method has a response, the response should be put in buf,
 * and the length returned.  Otherwise return 0 or and -error.
 */

756
static ssize_t sel_write_access(struct file *file, char *buf, size_t size)
L
Linus Torvalds 已提交
757
{
758
	char *scon = NULL, *tcon = NULL;
L
Linus Torvalds 已提交
759 760 761 762 763
	u32 ssid, tsid;
	u16 tclass;
	struct av_decision avd;
	ssize_t length;

764 765
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__COMPUTE_AV, NULL);
L
Linus Torvalds 已提交
766
	if (length)
767
		goto out;
L
Linus Torvalds 已提交
768 769

	length = -ENOMEM;
770
	scon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
771
	if (!scon)
772
		goto out;
L
Linus Torvalds 已提交
773

774
	length = -ENOMEM;
775
	tcon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
776 777 778 779
	if (!tcon)
		goto out;

	length = -EINVAL;
780
	if (sscanf(buf, "%s %s %hu", scon, tcon, &tclass) != 3)
781
		goto out;
L
Linus Torvalds 已提交
782

783
	length = security_context_str_to_sid(scon, &ssid, GFP_KERNEL);
784 785 786
	if (length)
		goto out;

787
	length = security_context_str_to_sid(tcon, &tsid, GFP_KERNEL);
788 789
	if (length)
		goto out;
L
Linus Torvalds 已提交
790

791
	security_compute_av_user(ssid, tsid, tclass, &avd);
L
Linus Torvalds 已提交
792 793

	length = scnprintf(buf, SIMPLE_TRANSACTION_LIMIT,
794
			  "%x %x %x %x %u %x",
795
			  avd.allowed, 0xffffffff,
L
Linus Torvalds 已提交
796
			  avd.auditallow, avd.auditdeny,
797
			  avd.seqno, avd.flags);
L
Linus Torvalds 已提交
798
out:
799
	kfree(tcon);
L
Linus Torvalds 已提交
800 801 802 803
	kfree(scon);
	return length;
}

804
static ssize_t sel_write_create(struct file *file, char *buf, size_t size)
L
Linus Torvalds 已提交
805
{
806
	char *scon = NULL, *tcon = NULL;
807
	char *namebuf = NULL, *objname = NULL;
L
Linus Torvalds 已提交
808 809 810
	u32 ssid, tsid, newsid;
	u16 tclass;
	ssize_t length;
811
	char *newcon = NULL;
L
Linus Torvalds 已提交
812
	u32 len;
813
	int nargs;
L
Linus Torvalds 已提交
814

815 816 817
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__COMPUTE_CREATE,
			      NULL);
L
Linus Torvalds 已提交
818
	if (length)
819
		goto out;
L
Linus Torvalds 已提交
820 821

	length = -ENOMEM;
822
	scon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
823
	if (!scon)
824
		goto out;
L
Linus Torvalds 已提交
825

826
	length = -ENOMEM;
827
	tcon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
828 829 830
	if (!tcon)
		goto out;

831 832 833 834 835
	length = -ENOMEM;
	namebuf = kzalloc(size + 1, GFP_KERNEL);
	if (!namebuf)
		goto out;

L
Linus Torvalds 已提交
836
	length = -EINVAL;
837 838
	nargs = sscanf(buf, "%s %s %hu %s", scon, tcon, &tclass, namebuf);
	if (nargs < 3 || nargs > 4)
839
		goto out;
840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856
	if (nargs == 4) {
		/*
		 * If and when the name of new object to be queried contains
		 * either whitespace or multibyte characters, they shall be
		 * encoded based on the percentage-encoding rule.
		 * If not encoded, the sscanf logic picks up only left-half
		 * of the supplied name; splitted by a whitespace unexpectedly.
		 */
		char   *r, *w;
		int     c1, c2;

		r = w = namebuf;
		do {
			c1 = *r++;
			if (c1 == '+')
				c1 = ' ';
			else if (c1 == '%') {
857 858
				c1 = hex_to_bin(*r++);
				if (c1 < 0)
859
					goto out;
860 861
				c2 = hex_to_bin(*r++);
				if (c2 < 0)
862 863 864 865 866 867
					goto out;
				c1 = (c1 << 4) | c2;
			}
			*w++ = c1;
		} while (c1 != '\0');

868
		objname = namebuf;
869
	}
L
Linus Torvalds 已提交
870

871
	length = security_context_str_to_sid(scon, &ssid, GFP_KERNEL);
872 873 874
	if (length)
		goto out;

875
	length = security_context_str_to_sid(tcon, &tsid, GFP_KERNEL);
876 877
	if (length)
		goto out;
L
Linus Torvalds 已提交
878

879 880
	length = security_transition_sid_user(ssid, tsid, tclass,
					      objname, &newsid);
881 882
	if (length)
		goto out;
L
Linus Torvalds 已提交
883 884

	length = security_sid_to_context(newsid, &newcon, &len);
885 886
	if (length)
		goto out;
L
Linus Torvalds 已提交
887

888
	length = -ERANGE;
L
Linus Torvalds 已提交
889
	if (len > SIMPLE_TRANSACTION_LIMIT) {
E
Eric Paris 已提交
890 891
		printk(KERN_ERR "SELinux: %s:  context size (%u) exceeds "
			"payload max\n", __func__, len);
892
		goto out;
L
Linus Torvalds 已提交
893 894 895 896
	}

	memcpy(buf, newcon, len);
	length = len;
897
out:
L
Linus Torvalds 已提交
898
	kfree(newcon);
899
	kfree(namebuf);
L
Linus Torvalds 已提交
900 901 902 903 904
	kfree(tcon);
	kfree(scon);
	return length;
}

905
static ssize_t sel_write_relabel(struct file *file, char *buf, size_t size)
L
Linus Torvalds 已提交
906
{
907
	char *scon = NULL, *tcon = NULL;
L
Linus Torvalds 已提交
908 909 910
	u32 ssid, tsid, newsid;
	u16 tclass;
	ssize_t length;
911
	char *newcon = NULL;
L
Linus Torvalds 已提交
912 913
	u32 len;

914 915 916
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__COMPUTE_RELABEL,
			      NULL);
L
Linus Torvalds 已提交
917
	if (length)
918
		goto out;
L
Linus Torvalds 已提交
919 920

	length = -ENOMEM;
921
	scon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
922
	if (!scon)
923
		goto out;
L
Linus Torvalds 已提交
924

925
	length = -ENOMEM;
926
	tcon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
927 928 929 930 931
	if (!tcon)
		goto out;

	length = -EINVAL;
	if (sscanf(buf, "%s %s %hu", scon, tcon, &tclass) != 3)
932
		goto out;
L
Linus Torvalds 已提交
933

934
	length = security_context_str_to_sid(scon, &ssid, GFP_KERNEL);
935 936 937
	if (length)
		goto out;

938
	length = security_context_str_to_sid(tcon, &tsid, GFP_KERNEL);
939 940
	if (length)
		goto out;
L
Linus Torvalds 已提交
941 942

	length = security_change_sid(ssid, tsid, tclass, &newsid);
943 944
	if (length)
		goto out;
L
Linus Torvalds 已提交
945 946

	length = security_sid_to_context(newsid, &newcon, &len);
947 948
	if (length)
		goto out;
L
Linus Torvalds 已提交
949

950 951 952
	length = -ERANGE;
	if (len > SIMPLE_TRANSACTION_LIMIT)
		goto out;
L
Linus Torvalds 已提交
953 954 955

	memcpy(buf, newcon, len);
	length = len;
956
out:
L
Linus Torvalds 已提交
957 958 959 960 961 962
	kfree(newcon);
	kfree(tcon);
	kfree(scon);
	return length;
}

963
static ssize_t sel_write_user(struct file *file, char *buf, size_t size)
L
Linus Torvalds 已提交
964
{
965 966
	char *con = NULL, *user = NULL, *ptr;
	u32 sid, *sids = NULL;
L
Linus Torvalds 已提交
967 968 969 970 971
	ssize_t length;
	char *newcon;
	int i, rc;
	u32 len, nsids;

972 973 974
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__COMPUTE_USER,
			      NULL);
L
Linus Torvalds 已提交
975
	if (length)
976
		goto out;
L
Linus Torvalds 已提交
977 978

	length = -ENOMEM;
979
	con = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
980
	if (!con)
981
		goto out;
L
Linus Torvalds 已提交
982

983
	length = -ENOMEM;
984
	user = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
985 986 987 988 989
	if (!user)
		goto out;

	length = -EINVAL;
	if (sscanf(buf, "%s %s", con, user) != 2)
990
		goto out;
L
Linus Torvalds 已提交
991

992
	length = security_context_str_to_sid(con, &sid, GFP_KERNEL);
993 994
	if (length)
		goto out;
L
Linus Torvalds 已提交
995 996

	length = security_get_user_sids(sid, user, &sids, &nsids);
997 998
	if (length)
		goto out;
L
Linus Torvalds 已提交
999 1000 1001 1002 1003 1004 1005

	length = sprintf(buf, "%u", nsids) + 1;
	ptr = buf + length;
	for (i = 0; i < nsids; i++) {
		rc = security_sid_to_context(sids[i], &newcon, &len);
		if (rc) {
			length = rc;
1006
			goto out;
L
Linus Torvalds 已提交
1007 1008 1009 1010
		}
		if ((length + len) >= SIMPLE_TRANSACTION_LIMIT) {
			kfree(newcon);
			length = -ERANGE;
1011
			goto out;
L
Linus Torvalds 已提交
1012 1013 1014 1015 1016 1017
		}
		memcpy(ptr, newcon, len);
		kfree(newcon);
		ptr += len;
		length += len;
	}
1018
out:
L
Linus Torvalds 已提交
1019 1020 1021 1022 1023 1024
	kfree(sids);
	kfree(user);
	kfree(con);
	return length;
}

1025
static ssize_t sel_write_member(struct file *file, char *buf, size_t size)
L
Linus Torvalds 已提交
1026
{
1027
	char *scon = NULL, *tcon = NULL;
L
Linus Torvalds 已提交
1028 1029 1030
	u32 ssid, tsid, newsid;
	u16 tclass;
	ssize_t length;
1031
	char *newcon = NULL;
L
Linus Torvalds 已提交
1032 1033
	u32 len;

1034 1035 1036
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__COMPUTE_MEMBER,
			      NULL);
L
Linus Torvalds 已提交
1037
	if (length)
1038
		goto out;
L
Linus Torvalds 已提交
1039 1040

	length = -ENOMEM;
1041
	scon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
1042
	if (!scon)
1043
		goto out;
L
Linus Torvalds 已提交
1044

1045
	length = -ENOMEM;
1046
	tcon = kzalloc(size + 1, GFP_KERNEL);
L
Linus Torvalds 已提交
1047 1048 1049 1050 1051
	if (!tcon)
		goto out;

	length = -EINVAL;
	if (sscanf(buf, "%s %s %hu", scon, tcon, &tclass) != 3)
1052
		goto out;
L
Linus Torvalds 已提交
1053

1054
	length = security_context_str_to_sid(scon, &ssid, GFP_KERNEL);
1055 1056 1057
	if (length)
		goto out;

1058
	length = security_context_str_to_sid(tcon, &tsid, GFP_KERNEL);
1059 1060
	if (length)
		goto out;
L
Linus Torvalds 已提交
1061 1062

	length = security_member_sid(ssid, tsid, tclass, &newsid);
1063 1064
	if (length)
		goto out;
L
Linus Torvalds 已提交
1065 1066

	length = security_sid_to_context(newsid, &newcon, &len);
1067 1068
	if (length)
		goto out;
L
Linus Torvalds 已提交
1069

1070
	length = -ERANGE;
L
Linus Torvalds 已提交
1071
	if (len > SIMPLE_TRANSACTION_LIMIT) {
E
Eric Paris 已提交
1072 1073
		printk(KERN_ERR "SELinux: %s:  context size (%u) exceeds "
			"payload max\n", __func__, len);
1074
		goto out;
L
Linus Torvalds 已提交
1075 1076 1077 1078
	}

	memcpy(buf, newcon, len);
	length = len;
1079
out:
L
Linus Torvalds 已提交
1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091
	kfree(newcon);
	kfree(tcon);
	kfree(scon);
	return length;
}

static struct inode *sel_make_inode(struct super_block *sb, int mode)
{
	struct inode *ret = new_inode(sb);

	if (ret) {
		ret->i_mode = mode;
1092
		ret->i_atime = ret->i_mtime = ret->i_ctime = current_time(ret);
L
Linus Torvalds 已提交
1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103
	}
	return ret;
}

static ssize_t sel_read_bool(struct file *filep, char __user *buf,
			     size_t count, loff_t *ppos)
{
	char *page = NULL;
	ssize_t length;
	ssize_t ret;
	int cur_enforcing;
A
Al Viro 已提交
1104
	unsigned index = file_inode(filep)->i_ino & SEL_INO_MASK;
S
Stephen Smalley 已提交
1105
	const char *name = filep->f_path.dentry->d_name.name;
L
Linus Torvalds 已提交
1106

I
Ingo Molnar 已提交
1107
	mutex_lock(&sel_mutex);
L
Linus Torvalds 已提交
1108

1109 1110
	ret = -EINVAL;
	if (index >= bool_num || strcmp(name, bool_pending_names[index]))
S
Stephen Smalley 已提交
1111
		goto out;
L
Linus Torvalds 已提交
1112

1113
	ret = -ENOMEM;
1114
	page = (char *)get_zeroed_page(GFP_KERNEL);
1115
	if (!page)
L
Linus Torvalds 已提交
1116 1117
		goto out;

S
Stephen Smalley 已提交
1118
	cur_enforcing = security_get_bool_value(index);
L
Linus Torvalds 已提交
1119 1120 1121 1122 1123
	if (cur_enforcing < 0) {
		ret = cur_enforcing;
		goto out;
	}
	length = scnprintf(page, PAGE_SIZE, "%d %d", cur_enforcing,
S
Stephen Smalley 已提交
1124
			  bool_pending_values[index]);
1125
	ret = simple_read_from_buffer(buf, count, ppos, page, length);
L
Linus Torvalds 已提交
1126
out:
I
Ingo Molnar 已提交
1127
	mutex_unlock(&sel_mutex);
1128
	free_page((unsigned long)page);
L
Linus Torvalds 已提交
1129 1130 1131 1132 1133 1134 1135
	return ret;
}

static ssize_t sel_write_bool(struct file *filep, const char __user *buf,
			      size_t count, loff_t *ppos)
{
	char *page = NULL;
S
Stephen Smalley 已提交
1136
	ssize_t length;
L
Linus Torvalds 已提交
1137
	int new_value;
A
Al Viro 已提交
1138
	unsigned index = file_inode(filep)->i_ino & SEL_INO_MASK;
S
Stephen Smalley 已提交
1139
	const char *name = filep->f_path.dentry->d_name.name;
L
Linus Torvalds 已提交
1140

I
Ingo Molnar 已提交
1141
	mutex_lock(&sel_mutex);
L
Linus Torvalds 已提交
1142

1143 1144 1145
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__SETBOOL,
			      NULL);
L
Linus Torvalds 已提交
1146 1147 1148
	if (length)
		goto out;

1149 1150
	length = -EINVAL;
	if (index >= bool_num || strcmp(name, bool_pending_names[index]))
S
Stephen Smalley 已提交
1151 1152
		goto out;

1153 1154
	length = -ENOMEM;
	if (count >= PAGE_SIZE)
L
Linus Torvalds 已提交
1155
		goto out;
S
Stephen Smalley 已提交
1156

1157 1158 1159
	/* No partial writes. */
	length = -EINVAL;
	if (*ppos != 0)
L
Linus Torvalds 已提交
1160
		goto out;
1161

A
Al Viro 已提交
1162 1163 1164 1165
	page = memdup_user_nul(buf, count);
	if (IS_ERR(page)) {
		length = PTR_ERR(page);
		page = NULL;
L
Linus Torvalds 已提交
1166
		goto out;
A
Al Viro 已提交
1167
	}
L
Linus Torvalds 已提交
1168 1169 1170 1171 1172 1173 1174 1175

	length = -EINVAL;
	if (sscanf(page, "%d", &new_value) != 1)
		goto out;

	if (new_value)
		new_value = 1;

S
Stephen Smalley 已提交
1176
	bool_pending_values[index] = new_value;
L
Linus Torvalds 已提交
1177 1178 1179
	length = count;

out:
I
Ingo Molnar 已提交
1180
	mutex_unlock(&sel_mutex);
A
Al Viro 已提交
1181
	kfree(page);
L
Linus Torvalds 已提交
1182 1183 1184
	return length;
}

1185
static const struct file_operations sel_bool_ops = {
1186 1187
	.read		= sel_read_bool,
	.write		= sel_write_bool,
A
Arnd Bergmann 已提交
1188
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
1189 1190 1191 1192 1193 1194 1195
};

static ssize_t sel_commit_bools_write(struct file *filep,
				      const char __user *buf,
				      size_t count, loff_t *ppos)
{
	char *page = NULL;
S
Stephen Smalley 已提交
1196
	ssize_t length;
L
Linus Torvalds 已提交
1197 1198
	int new_value;

I
Ingo Molnar 已提交
1199
	mutex_lock(&sel_mutex);
L
Linus Torvalds 已提交
1200

1201 1202 1203
	length = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			      SECCLASS_SECURITY, SECURITY__SETBOOL,
			      NULL);
L
Linus Torvalds 已提交
1204 1205 1206
	if (length)
		goto out;

1207 1208
	length = -ENOMEM;
	if (count >= PAGE_SIZE)
L
Linus Torvalds 已提交
1209
		goto out;
1210 1211 1212 1213

	/* No partial writes. */
	length = -EINVAL;
	if (*ppos != 0)
L
Linus Torvalds 已提交
1214
		goto out;
1215

A
Al Viro 已提交
1216 1217 1218 1219
	page = memdup_user_nul(buf, count);
	if (IS_ERR(page)) {
		length = PTR_ERR(page);
		page = NULL;
L
Linus Torvalds 已提交
1220
		goto out;
A
Al Viro 已提交
1221
	}
L
Linus Torvalds 已提交
1222 1223 1224 1225 1226

	length = -EINVAL;
	if (sscanf(page, "%d", &new_value) != 1)
		goto out;

1227
	length = 0;
1228
	if (new_value && bool_pending_values)
1229
		length = security_set_bools(bool_num, bool_pending_values);
L
Linus Torvalds 已提交
1230

1231 1232
	if (!length)
		length = count;
L
Linus Torvalds 已提交
1233 1234

out:
I
Ingo Molnar 已提交
1235
	mutex_unlock(&sel_mutex);
A
Al Viro 已提交
1236
	kfree(page);
L
Linus Torvalds 已提交
1237 1238 1239
	return length;
}

1240
static const struct file_operations sel_commit_bools_ops = {
1241
	.write		= sel_commit_bools_write,
A
Arnd Bergmann 已提交
1242
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
1243 1244
};

1245
static void sel_remove_entries(struct dentry *de)
L
Linus Torvalds 已提交
1246
{
1247 1248
	d_genocide(de);
	shrink_dcache_parent(de);
L
Linus Torvalds 已提交
1249 1250 1251 1252 1253 1254
}

#define BOOL_DIR_NAME "booleans"

static int sel_make_bools(void)
{
1255
	int i, ret;
L
Linus Torvalds 已提交
1256 1257 1258 1259 1260 1261 1262 1263 1264 1265 1266
	ssize_t len;
	struct dentry *dentry = NULL;
	struct dentry *dir = bool_dir;
	struct inode *inode = NULL;
	struct inode_security_struct *isec;
	char **names = NULL, *page;
	int num;
	int *values = NULL;
	u32 sid;

	/* remove any existing files */
1267 1268
	for (i = 0; i < bool_num; i++)
		kfree(bool_pending_names[i]);
S
Stephen Smalley 已提交
1269
	kfree(bool_pending_names);
J
Jesper Juhl 已提交
1270
	kfree(bool_pending_values);
1271
	bool_num = 0;
S
Stephen Smalley 已提交
1272
	bool_pending_names = NULL;
1273
	bool_pending_values = NULL;
L
Linus Torvalds 已提交
1274

1275
	sel_remove_entries(dir);
L
Linus Torvalds 已提交
1276

1277
	ret = -ENOMEM;
1278 1279
	page = (char *)get_zeroed_page(GFP_KERNEL);
	if (!page)
1280
		goto out;
L
Linus Torvalds 已提交
1281 1282

	ret = security_get_bools(&num, &names, &values);
1283
	if (ret)
L
Linus Torvalds 已提交
1284 1285 1286
		goto out;

	for (i = 0; i < num; i++) {
1287
		ret = -ENOMEM;
L
Linus Torvalds 已提交
1288
		dentry = d_alloc_name(dir, names[i]);
1289 1290 1291 1292
		if (!dentry)
			goto out;

		ret = -ENOMEM;
L
Linus Torvalds 已提交
1293
		inode = sel_make_inode(dir->d_sb, S_IFREG | S_IRUGO | S_IWUSR);
1294 1295
		if (!inode)
			goto out;
L
Linus Torvalds 已提交
1296

1297
		ret = -ENAMETOOLONG;
A
Al Viro 已提交
1298
		len = snprintf(page, PAGE_SIZE, "/%s/%s", BOOL_DIR_NAME, names[i]);
1299 1300 1301
		if (len >= PAGE_SIZE)
			goto out;

1302 1303
		isec = (struct inode_security_struct *)inode->i_security;
		ret = security_genfs_sid("selinuxfs", page, SECCLASS_FILE, &sid);
1304
		if (ret) {
1305 1306 1307
			pr_warn_ratelimited("SELinux: no sid found, defaulting to security isid for %s\n",
					   page);
			sid = SECINITSID_SECURITY;
1308 1309
		}

L
Linus Torvalds 已提交
1310
		isec->sid = sid;
A
Andreas Gruenbacher 已提交
1311
		isec->initialized = LABEL_INITIALIZED;
L
Linus Torvalds 已提交
1312
		inode->i_fop = &sel_bool_ops;
1313
		inode->i_ino = i|SEL_BOOL_INO_OFFSET;
L
Linus Torvalds 已提交
1314 1315 1316
		d_add(dentry, inode);
	}
	bool_num = num;
S
Stephen Smalley 已提交
1317
	bool_pending_names = names;
L
Linus Torvalds 已提交
1318
	bool_pending_values = values;
1319 1320 1321

	free_page((unsigned long)page);
	return 0;
L
Linus Torvalds 已提交
1322 1323
out:
	free_page((unsigned long)page);
1324

L
Linus Torvalds 已提交
1325
	if (names) {
J
Jesper Juhl 已提交
1326 1327
		for (i = 0; i < num; i++)
			kfree(names[i]);
L
Linus Torvalds 已提交
1328 1329
		kfree(names);
	}
1330
	kfree(values);
1331
	sel_remove_entries(dir);
1332 1333

	return ret;
L
Linus Torvalds 已提交
1334 1335 1336 1337
}

#define NULL_FILE_NAME "null"

1338
struct path selinux_null;
L
Linus Torvalds 已提交
1339 1340 1341 1342 1343 1344 1345 1346 1347 1348 1349

static ssize_t sel_read_avc_cache_threshold(struct file *filp, char __user *buf,
					    size_t count, loff_t *ppos)
{
	char tmpbuf[TMPBUFLEN];
	ssize_t length;

	length = scnprintf(tmpbuf, TMPBUFLEN, "%u", avc_cache_threshold);
	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
}

1350 1351
static ssize_t sel_write_avc_cache_threshold(struct file *file,
					     const char __user *buf,
L
Linus Torvalds 已提交
1352 1353 1354
					     size_t count, loff_t *ppos)

{
A
Al Viro 已提交
1355
	char *page;
L
Linus Torvalds 已提交
1356
	ssize_t ret;
H
Heinrich Schuchardt 已提交
1357
	unsigned int new_value;
L
Linus Torvalds 已提交
1358

1359 1360 1361
	ret = avc_has_perm(current_sid(), SECINITSID_SECURITY,
			   SECCLASS_SECURITY, SECURITY__SETSECPARAM,
			   NULL);
1362
	if (ret)
A
Al Viro 已提交
1363
		return ret;
L
Linus Torvalds 已提交
1364

1365
	if (count >= PAGE_SIZE)
A
Al Viro 已提交
1366
		return -ENOMEM;
L
Linus Torvalds 已提交
1367

1368 1369
	/* No partial writes. */
	if (*ppos != 0)
A
Al Viro 已提交
1370
		return -EINVAL;
L
Linus Torvalds 已提交
1371

A
Al Viro 已提交
1372 1373 1374
	page = memdup_user_nul(buf, count);
	if (IS_ERR(page))
		return PTR_ERR(page);
L
Linus Torvalds 已提交
1375

1376 1377
	ret = -EINVAL;
	if (sscanf(page, "%u", &new_value) != 1)
L
Linus Torvalds 已提交
1378 1379
		goto out;

1380 1381
	avc_cache_threshold = new_value;

L
Linus Torvalds 已提交
1382 1383
	ret = count;
out:
A
Al Viro 已提交
1384
	kfree(page);
L
Linus Torvalds 已提交
1385 1386 1387 1388 1389 1390 1391
	return ret;
}

static ssize_t sel_read_avc_hash_stats(struct file *filp, char __user *buf,
				       size_t count, loff_t *ppos)
{
	char *page;
1392
	ssize_t length;
L
Linus Torvalds 已提交
1393 1394

	page = (char *)__get_free_page(GFP_KERNEL);
1395 1396 1397 1398 1399 1400
	if (!page)
		return -ENOMEM;

	length = avc_get_hash_stats(page);
	if (length >= 0)
		length = simple_read_from_buffer(buf, count, ppos, page, length);
L
Linus Torvalds 已提交
1401
	free_page((unsigned long)page);
1402 1403

	return length;
L
Linus Torvalds 已提交
1404 1405
}

1406
static const struct file_operations sel_avc_cache_threshold_ops = {
L
Linus Torvalds 已提交
1407 1408
	.read		= sel_read_avc_cache_threshold,
	.write		= sel_write_avc_cache_threshold,
A
Arnd Bergmann 已提交
1409
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
1410 1411
};

1412
static const struct file_operations sel_avc_hash_stats_ops = {
L
Linus Torvalds 已提交
1413
	.read		= sel_read_avc_hash_stats,
A
Arnd Bergmann 已提交
1414
	.llseek		= generic_file_llseek,
L
Linus Torvalds 已提交
1415 1416 1417 1418 1419 1420 1421
};

#ifdef CONFIG_SECURITY_SELINUX_AVC_STATS
static struct avc_cache_stats *sel_avc_get_stat_idx(loff_t *idx)
{
	int cpu;

1422
	for (cpu = *idx; cpu < nr_cpu_ids; ++cpu) {
L
Linus Torvalds 已提交
1423 1424 1425 1426 1427 1428 1429 1430 1431 1432 1433 1434 1435 1436 1437 1438 1439 1440 1441 1442 1443 1444 1445 1446 1447 1448 1449
		if (!cpu_possible(cpu))
			continue;
		*idx = cpu + 1;
		return &per_cpu(avc_cache_stats, cpu);
	}
	return NULL;
}

static void *sel_avc_stats_seq_start(struct seq_file *seq, loff_t *pos)
{
	loff_t n = *pos - 1;

	if (*pos == 0)
		return SEQ_START_TOKEN;

	return sel_avc_get_stat_idx(&n);
}

static void *sel_avc_stats_seq_next(struct seq_file *seq, void *v, loff_t *pos)
{
	return sel_avc_get_stat_idx(pos);
}

static int sel_avc_stats_seq_show(struct seq_file *seq, void *v)
{
	struct avc_cache_stats *st = v;

1450 1451 1452 1453
	if (v == SEQ_START_TOKEN) {
		seq_puts(seq,
			 "lookups hits misses allocations reclaims frees\n");
	} else {
1454 1455 1456 1457 1458
		unsigned int lookups = st->lookups;
		unsigned int misses = st->misses;
		unsigned int hits = lookups - misses;
		seq_printf(seq, "%u %u %u %u %u %u\n", lookups,
			   hits, misses, st->allocations,
L
Linus Torvalds 已提交
1459
			   st->reclaims, st->frees);
1460
	}
L
Linus Torvalds 已提交
1461 1462 1463 1464 1465 1466
	return 0;
}

static void sel_avc_stats_seq_stop(struct seq_file *seq, void *v)
{ }

1467
static const struct seq_operations sel_avc_cache_stats_seq_ops = {
L
Linus Torvalds 已提交
1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478
	.start		= sel_avc_stats_seq_start,
	.next		= sel_avc_stats_seq_next,
	.show		= sel_avc_stats_seq_show,
	.stop		= sel_avc_stats_seq_stop,
};

static int sel_open_avc_cache_stats(struct inode *inode, struct file *file)
{
	return seq_open(file, &sel_avc_cache_stats_seq_ops);
}

1479
static const struct file_operations sel_avc_cache_stats_ops = {
L
Linus Torvalds 已提交
1480 1481 1482 1483 1484 1485 1486 1487 1488
	.open		= sel_open_avc_cache_stats,
	.read		= seq_read,
	.llseek		= seq_lseek,
	.release	= seq_release,
};
#endif

static int sel_make_avc_files(struct dentry *dir)
{
1489
	int i;
1490
	static const struct tree_descr files[] = {
L
Linus Torvalds 已提交
1491 1492 1493 1494 1495 1496 1497 1498
		{ "cache_threshold",
		  &sel_avc_cache_threshold_ops, S_IRUGO|S_IWUSR },
		{ "hash_stats", &sel_avc_hash_stats_ops, S_IRUGO },
#ifdef CONFIG_SECURITY_SELINUX_AVC_STATS
		{ "cache_stats", &sel_avc_cache_stats_ops, S_IRUGO },
#endif
	};

1499
	for (i = 0; i < ARRAY_SIZE(files); i++) {
L
Linus Torvalds 已提交
1500 1501 1502 1503
		struct inode *inode;
		struct dentry *dentry;

		dentry = d_alloc_name(dir, files[i].name);
1504 1505
		if (!dentry)
			return -ENOMEM;
L
Linus Torvalds 已提交
1506 1507

		inode = sel_make_inode(dir->d_sb, S_IFREG|files[i].mode);
1508 1509 1510
		if (!inode)
			return -ENOMEM;

L
Linus Torvalds 已提交
1511
		inode->i_fop = files[i].ops;
1512
		inode->i_ino = ++sel_last_ino;
L
Linus Torvalds 已提交
1513 1514
		d_add(dentry, inode);
	}
1515 1516

	return 0;
L
Linus Torvalds 已提交
1517 1518
}

1519
static ssize_t sel_read_initcon(struct file *file, char __user *buf,
1520 1521 1522 1523 1524 1525
				size_t count, loff_t *ppos)
{
	char *con;
	u32 sid, len;
	ssize_t ret;

A
Al Viro 已提交
1526
	sid = file_inode(file)->i_ino&SEL_INO_MASK;
1527
	ret = security_sid_to_context(sid, &con, &len);
1528
	if (ret)
1529 1530 1531 1532 1533 1534 1535 1536 1537
		return ret;

	ret = simple_read_from_buffer(buf, count, ppos, con, len);
	kfree(con);
	return ret;
}

static const struct file_operations sel_initcon_ops = {
	.read		= sel_read_initcon,
A
Arnd Bergmann 已提交
1538
	.llseek		= generic_file_llseek,
1539 1540 1541 1542
};

static int sel_make_initcon_files(struct dentry *dir)
{
1543
	int i;
1544 1545 1546 1547 1548

	for (i = 1; i <= SECINITSID_NUM; i++) {
		struct inode *inode;
		struct dentry *dentry;
		dentry = d_alloc_name(dir, security_get_initial_sid_context(i));
1549 1550
		if (!dentry)
			return -ENOMEM;
1551 1552

		inode = sel_make_inode(dir->d_sb, S_IFREG|S_IRUGO);
1553 1554 1555
		if (!inode)
			return -ENOMEM;

1556 1557 1558 1559
		inode->i_fop = &sel_initcon_ops;
		inode->i_ino = i|SEL_INITCON_INO_OFFSET;
		d_add(dentry, inode);
	}
1560 1561

	return 0;
1562 1563
}

1564 1565 1566 1567 1568 1569 1570
static inline unsigned long sel_class_to_ino(u16 class)
{
	return (class * (SEL_VEC_MAX + 1)) | SEL_CLASS_INO_OFFSET;
}

static inline u16 sel_ino_to_class(unsigned long ino)
{
1571
	return (ino & SEL_INO_MASK) / (SEL_VEC_MAX + 1);
1572 1573 1574 1575 1576 1577 1578 1579 1580 1581 1582 1583
}

static inline unsigned long sel_perm_to_ino(u16 class, u32 perm)
{
	return (class * (SEL_VEC_MAX + 1) + perm) | SEL_CLASS_INO_OFFSET;
}

static inline u32 sel_ino_to_perm(unsigned long ino)
{
	return (ino & SEL_INO_MASK) % (SEL_VEC_MAX + 1);
}

1584
static ssize_t sel_read_class(struct file *file, char __user *buf,
1585 1586
				size_t count, loff_t *ppos)
{
A
Al Viro 已提交
1587
	unsigned long ino = file_inode(file)->i_ino;
A
Al Viro 已提交
1588 1589 1590
	char res[TMPBUFLEN];
	ssize_t len = snprintf(res, sizeof(res), "%d", sel_ino_to_class(ino));
	return simple_read_from_buffer(buf, count, ppos, res, len);
1591 1592 1593 1594
}

static const struct file_operations sel_class_ops = {
	.read		= sel_read_class,
A
Arnd Bergmann 已提交
1595
	.llseek		= generic_file_llseek,
1596 1597
};

1598
static ssize_t sel_read_perm(struct file *file, char __user *buf,
1599 1600
				size_t count, loff_t *ppos)
{
A
Al Viro 已提交
1601
	unsigned long ino = file_inode(file)->i_ino;
A
Al Viro 已提交
1602 1603 1604
	char res[TMPBUFLEN];
	ssize_t len = snprintf(res, sizeof(res), "%d", sel_ino_to_perm(ino));
	return simple_read_from_buffer(buf, count, ppos, res, len);
1605 1606 1607 1608
}

static const struct file_operations sel_perm_ops = {
	.read		= sel_read_perm,
A
Arnd Bergmann 已提交
1609
	.llseek		= generic_file_llseek,
1610 1611
};

1612 1613 1614 1615 1616 1617
static ssize_t sel_read_policycap(struct file *file, char __user *buf,
				  size_t count, loff_t *ppos)
{
	int value;
	char tmpbuf[TMPBUFLEN];
	ssize_t length;
A
Al Viro 已提交
1618
	unsigned long i_ino = file_inode(file)->i_ino;
1619 1620 1621 1622 1623 1624 1625 1626 1627

	value = security_policycap_supported(i_ino & SEL_INO_MASK);
	length = scnprintf(tmpbuf, TMPBUFLEN, "%d", value);

	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
}

static const struct file_operations sel_policycap_ops = {
	.read		= sel_read_policycap,
A
Arnd Bergmann 已提交
1628
	.llseek		= generic_file_llseek,
1629 1630
};

1631 1632 1633
static int sel_make_perm_files(char *objclass, int classvalue,
				struct dentry *dir)
{
1634
	int i, rc, nperms;
1635 1636 1637 1638
	char **perms;

	rc = security_get_permissions(objclass, &perms, &nperms);
	if (rc)
1639
		return rc;
1640 1641 1642 1643 1644

	for (i = 0; i < nperms; i++) {
		struct inode *inode;
		struct dentry *dentry;

1645
		rc = -ENOMEM;
1646
		dentry = d_alloc_name(dir, perms[i]);
1647 1648
		if (!dentry)
			goto out;
1649

1650
		rc = -ENOMEM;
1651
		inode = sel_make_inode(dir->d_sb, S_IFREG|S_IRUGO);
1652 1653 1654
		if (!inode)
			goto out;

1655 1656
		inode->i_fop = &sel_perm_ops;
		/* i+1 since perm values are 1-indexed */
1657
		inode->i_ino = sel_perm_to_ino(classvalue, i + 1);
1658 1659
		d_add(dentry, inode);
	}
1660 1661
	rc = 0;
out:
1662 1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675
	for (i = 0; i < nperms; i++)
		kfree(perms[i]);
	kfree(perms);
	return rc;
}

static int sel_make_class_dir_entries(char *classname, int index,
					struct dentry *dir)
{
	struct dentry *dentry = NULL;
	struct inode *inode = NULL;
	int rc;

	dentry = d_alloc_name(dir, "index");
1676 1677
	if (!dentry)
		return -ENOMEM;
1678 1679

	inode = sel_make_inode(dir->d_sb, S_IFREG|S_IRUGO);
1680 1681
	if (!inode)
		return -ENOMEM;
1682 1683 1684 1685 1686

	inode->i_fop = &sel_class_ops;
	inode->i_ino = sel_class_to_ino(index);
	d_add(dentry, inode);

1687 1688 1689
	dentry = sel_make_dir(dir, "perms", &last_class_ino);
	if (IS_ERR(dentry))
		return PTR_ERR(dentry);
1690 1691 1692 1693 1694 1695 1696 1697

	rc = sel_make_perm_files(classname, index, dentry);

	return rc;
}

static int sel_make_classes(void)
{
1698
	int rc, nclasses, i;
1699 1700 1701
	char **classes;

	/* delete any existing entries */
1702
	sel_remove_entries(class_dir);
1703 1704

	rc = security_get_classes(&classes, &nclasses);
1705 1706
	if (rc)
		return rc;
1707 1708

	/* +2 since classes are 1-indexed */
1709
	last_class_ino = sel_class_to_ino(nclasses + 2);
1710 1711 1712 1713

	for (i = 0; i < nclasses; i++) {
		struct dentry *class_name_dir;

1714
		class_name_dir = sel_make_dir(class_dir, classes[i],
1715
				&last_class_ino);
1716 1717
		if (IS_ERR(class_name_dir)) {
			rc = PTR_ERR(class_name_dir);
1718
			goto out;
1719
		}
1720 1721

		/* i+1 since class values are 1-indexed */
1722
		rc = sel_make_class_dir_entries(classes[i], i + 1,
1723 1724
				class_name_dir);
		if (rc)
1725
			goto out;
1726
	}
1727 1728
	rc = 0;
out:
1729 1730 1731 1732 1733 1734
	for (i = 0; i < nclasses; i++)
		kfree(classes[i]);
	kfree(classes);
	return rc;
}

1735 1736 1737 1738 1739 1740 1741 1742 1743
static int sel_make_policycap(void)
{
	unsigned int iter;
	struct dentry *dentry = NULL;
	struct inode *inode = NULL;

	sel_remove_entries(policycap_dir);

	for (iter = 0; iter <= POLICYDB_CAPABILITY_MAX; iter++) {
1744
		if (iter < ARRAY_SIZE(selinux_policycap_names))
1745
			dentry = d_alloc_name(policycap_dir,
1746
					      selinux_policycap_names[iter]);
1747 1748 1749 1750 1751 1752 1753 1754 1755 1756 1757 1758 1759 1760 1761 1762 1763 1764
		else
			dentry = d_alloc_name(policycap_dir, "unknown");

		if (dentry == NULL)
			return -ENOMEM;

		inode = sel_make_inode(policycap_dir->d_sb, S_IFREG | S_IRUGO);
		if (inode == NULL)
			return -ENOMEM;

		inode->i_fop = &sel_policycap_ops;
		inode->i_ino = iter | SEL_POLICYCAP_INO_OFFSET;
		d_add(dentry, inode);
	}

	return 0;
}

1765
static struct dentry *sel_make_dir(struct dentry *dir, const char *name,
1766
			unsigned long *ino)
L
Linus Torvalds 已提交
1767
{
1768
	struct dentry *dentry = d_alloc_name(dir, name);
L
Linus Torvalds 已提交
1769 1770
	struct inode *inode;

1771 1772 1773 1774 1775 1776 1777 1778
	if (!dentry)
		return ERR_PTR(-ENOMEM);

	inode = sel_make_inode(dir->d_sb, S_IFDIR | S_IRUGO | S_IXUGO);
	if (!inode) {
		dput(dentry);
		return ERR_PTR(-ENOMEM);
	}
1779

L
Linus Torvalds 已提交
1780 1781
	inode->i_op = &simple_dir_inode_operations;
	inode->i_fop = &simple_dir_operations;
1782
	inode->i_ino = ++(*ino);
1783
	/* directory inodes start off with i_nlink == 2 (for "." entry) */
1784
	inc_nlink(inode);
L
Linus Torvalds 已提交
1785
	d_add(dentry, inode);
1786
	/* bump link count on parent directory, too */
1787
	inc_nlink(d_inode(dir));
1788

1789
	return dentry;
L
Linus Torvalds 已提交
1790 1791
}

1792
static int sel_fill_super(struct super_block *sb, void *data, int silent)
L
Linus Torvalds 已提交
1793 1794 1795
{
	int ret;
	struct dentry *dentry;
1796
	struct inode *inode;
L
Linus Torvalds 已提交
1797 1798
	struct inode_security_struct *isec;

1799
	static const struct tree_descr selinux_files[] = {
L
Linus Torvalds 已提交
1800 1801
		[SEL_LOAD] = {"load", &sel_load_ops, S_IRUSR|S_IWUSR},
		[SEL_ENFORCE] = {"enforce", &sel_enforce_ops, S_IRUGO|S_IWUSR},
1802
		[SEL_CONTEXT] = {"context", &transaction_ops, S_IRUGO|S_IWUGO},
L
Linus Torvalds 已提交
1803 1804 1805 1806 1807 1808 1809 1810 1811 1812
		[SEL_ACCESS] = {"access", &transaction_ops, S_IRUGO|S_IWUGO},
		[SEL_CREATE] = {"create", &transaction_ops, S_IRUGO|S_IWUGO},
		[SEL_RELABEL] = {"relabel", &transaction_ops, S_IRUGO|S_IWUGO},
		[SEL_USER] = {"user", &transaction_ops, S_IRUGO|S_IWUGO},
		[SEL_POLICYVERS] = {"policyvers", &sel_policyvers_ops, S_IRUGO},
		[SEL_COMMIT_BOOLS] = {"commit_pending_bools", &sel_commit_bools_ops, S_IWUSR},
		[SEL_MLS] = {"mls", &sel_mls_ops, S_IRUGO},
		[SEL_DISABLE] = {"disable", &sel_disable_ops, S_IWUSR},
		[SEL_MEMBER] = {"member", &transaction_ops, S_IRUGO|S_IWUGO},
		[SEL_CHECKREQPROT] = {"checkreqprot", &sel_checkreqprot_ops, S_IRUGO|S_IWUSR},
1813 1814
		[SEL_REJECT_UNKNOWN] = {"reject_unknown", &sel_handle_unknown_ops, S_IRUGO},
		[SEL_DENY_UNKNOWN] = {"deny_unknown", &sel_handle_unknown_ops, S_IRUGO},
1815
		[SEL_STATUS] = {"status", &sel_handle_status_ops, S_IRUGO},
1816
		[SEL_POLICY] = {"policy", &sel_policy_ops, S_IRUGO},
1817 1818
		[SEL_VALIDATE_TRANS] = {"validatetrans", &sel_transition_ops,
					S_IWUGO},
L
Linus Torvalds 已提交
1819 1820 1821 1822
		/* last one */ {""}
	};
	ret = simple_fill_super(sb, SELINUX_MAGIC, selinux_files);
	if (ret)
1823
		goto err;
L
Linus Torvalds 已提交
1824

1825 1826 1827 1828
	bool_dir = sel_make_dir(sb->s_root, BOOL_DIR_NAME, &sel_last_ino);
	if (IS_ERR(bool_dir)) {
		ret = PTR_ERR(bool_dir);
		bool_dir = NULL;
1829
		goto err;
1830
	}
L
Linus Torvalds 已提交
1831

1832
	ret = -ENOMEM;
L
Linus Torvalds 已提交
1833
	dentry = d_alloc_name(sb->s_root, NULL_FILE_NAME);
1834
	if (!dentry)
1835
		goto err;
L
Linus Torvalds 已提交
1836

1837
	ret = -ENOMEM;
L
Linus Torvalds 已提交
1838
	inode = sel_make_inode(sb, S_IFCHR | S_IRUGO | S_IWUGO);
1839
	if (!inode)
1840
		goto err;
1841

1842
	inode->i_ino = ++sel_last_ino;
1843
	isec = (struct inode_security_struct *)inode->i_security;
L
Linus Torvalds 已提交
1844 1845
	isec->sid = SECINITSID_DEVNULL;
	isec->sclass = SECCLASS_CHR_FILE;
A
Andreas Gruenbacher 已提交
1846
	isec->initialized = LABEL_INITIALIZED;
L
Linus Torvalds 已提交
1847 1848 1849

	init_special_inode(inode, S_IFCHR | S_IRUGO | S_IWUGO, MKDEV(MEM_MAJOR, 3));
	d_add(dentry, inode);
1850
	selinux_null.dentry = dentry;
L
Linus Torvalds 已提交
1851

1852 1853 1854
	dentry = sel_make_dir(sb->s_root, "avc", &sel_last_ino);
	if (IS_ERR(dentry)) {
		ret = PTR_ERR(dentry);
1855
		goto err;
1856
	}
L
Linus Torvalds 已提交
1857 1858 1859

	ret = sel_make_avc_files(dentry);
	if (ret)
1860
		goto err;
1861

1862 1863 1864
	dentry = sel_make_dir(sb->s_root, "initial_contexts", &sel_last_ino);
	if (IS_ERR(dentry)) {
		ret = PTR_ERR(dentry);
1865
		goto err;
1866
	}
1867 1868 1869 1870 1871

	ret = sel_make_initcon_files(dentry);
	if (ret)
		goto err;

1872 1873 1874 1875
	class_dir = sel_make_dir(sb->s_root, "class", &sel_last_ino);
	if (IS_ERR(class_dir)) {
		ret = PTR_ERR(class_dir);
		class_dir = NULL;
1876
		goto err;
1877
	}
1878

1879 1880 1881 1882
	policycap_dir = sel_make_dir(sb->s_root, "policy_capabilities", &sel_last_ino);
	if (IS_ERR(policycap_dir)) {
		ret = PTR_ERR(policycap_dir);
		policycap_dir = NULL;
1883
		goto err;
1884
	}
1885
	return 0;
1886
err:
E
Eric Paris 已提交
1887 1888
	printk(KERN_ERR "SELinux: %s:  failed while creating inodes\n",
		__func__);
1889
	return ret;
L
Linus Torvalds 已提交
1890 1891
}

A
Al Viro 已提交
1892 1893
static struct dentry *sel_mount(struct file_system_type *fs_type,
		      int flags, const char *dev_name, void *data)
L
Linus Torvalds 已提交
1894
{
A
Al Viro 已提交
1895
	return mount_single(fs_type, flags, data, sel_fill_super);
L
Linus Torvalds 已提交
1896 1897 1898 1899
}

static struct file_system_type sel_fs_type = {
	.name		= "selinuxfs",
A
Al Viro 已提交
1900
	.mount		= sel_mount,
L
Linus Torvalds 已提交
1901 1902 1903 1904 1905 1906 1907 1908 1909 1910 1911
	.kill_sb	= kill_litter_super,
};

struct vfsmount *selinuxfs_mount;

static int __init init_sel_fs(void)
{
	int err;

	if (!selinux_enabled)
		return 0;
1912

1913 1914 1915
	err = sysfs_create_mount_point(fs_kobj, "selinux");
	if (err)
		return err;
1916

L
Linus Torvalds 已提交
1917
	err = register_filesystem(&sel_fs_type);
1918
	if (err) {
1919
		sysfs_remove_mount_point(fs_kobj, "selinux");
1920
		return err;
1921
	}
1922

1923
	selinux_null.mnt = selinuxfs_mount = kern_mount(&sel_fs_type);
1924 1925 1926 1927
	if (IS_ERR(selinuxfs_mount)) {
		printk(KERN_ERR "selinuxfs:  could not mount!\n");
		err = PTR_ERR(selinuxfs_mount);
		selinuxfs_mount = NULL;
L
Linus Torvalds 已提交
1928
	}
1929

L
Linus Torvalds 已提交
1930 1931 1932 1933 1934 1935 1936 1937
	return err;
}

__initcall(init_sel_fs);

#ifdef CONFIG_SECURITY_SELINUX_DISABLE
void exit_sel_fs(void)
{
1938
	sysfs_remove_mount_point(fs_kobj, "selinux");
1939
	kern_unmount(selinuxfs_mount);
L
Linus Torvalds 已提交
1940 1941 1942
	unregister_filesystem(&sel_fs_type);
}
#endif