blob: f17eaf2321b9da564b303b5abfdccc0e2ff11018 [file] [log] [blame]
Dave Kleikampac27a0e2006-10-11 01:20:50 -07001/*
Mingming Cao617ba132006-10-11 01:20:53 -07002 * linux/fs/ext4/xattr_security.c
Dave Kleikampac27a0e2006-10-11 01:20:50 -07003 * Handler for storing security labels as extended attributes.
4 */
5
6#include <linux/module.h>
7#include <linux/string.h>
8#include <linux/fs.h>
Mingming Caodab291a2006-10-11 01:21:01 -07009#include <linux/ext4_jbd2.h>
Mingming Cao617ba132006-10-11 01:20:53 -070010#include <linux/ext4_fs.h>
Dave Kleikampac27a0e2006-10-11 01:20:50 -070011#include <linux/security.h>
12#include "xattr.h"
13
14static size_t
Mingming Cao617ba132006-10-11 01:20:53 -070015ext4_xattr_security_list(struct inode *inode, char *list, size_t list_size,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070016 const char *name, size_t name_len)
17{
18 const size_t prefix_len = sizeof(XATTR_SECURITY_PREFIX)-1;
19 const size_t total_len = prefix_len + name_len + 1;
20
21
22 if (list && total_len <= list_size) {
23 memcpy(list, XATTR_SECURITY_PREFIX, prefix_len);
24 memcpy(list+prefix_len, name, name_len);
25 list[prefix_len + name_len] = '\0';
26 }
27 return total_len;
28}
29
30static int
Mingming Cao617ba132006-10-11 01:20:53 -070031ext4_xattr_security_get(struct inode *inode, const char *name,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070032 void *buffer, size_t size)
33{
34 if (strcmp(name, "") == 0)
35 return -EINVAL;
Mingming Cao617ba132006-10-11 01:20:53 -070036 return ext4_xattr_get(inode, EXT4_XATTR_INDEX_SECURITY, name,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070037 buffer, size);
38}
39
40static int
Mingming Cao617ba132006-10-11 01:20:53 -070041ext4_xattr_security_set(struct inode *inode, const char *name,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070042 const void *value, size_t size, int flags)
43{
44 if (strcmp(name, "") == 0)
45 return -EINVAL;
Mingming Cao617ba132006-10-11 01:20:53 -070046 return ext4_xattr_set(inode, EXT4_XATTR_INDEX_SECURITY, name,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070047 value, size, flags);
48}
49
50int
Mingming Cao617ba132006-10-11 01:20:53 -070051ext4_init_security(handle_t *handle, struct inode *inode, struct inode *dir)
Dave Kleikampac27a0e2006-10-11 01:20:50 -070052{
53 int err;
54 size_t len;
55 void *value;
56 char *name;
57
58 err = security_inode_init_security(inode, dir, &name, &value, &len);
59 if (err) {
60 if (err == -EOPNOTSUPP)
61 return 0;
62 return err;
63 }
Mingming Cao617ba132006-10-11 01:20:53 -070064 err = ext4_xattr_set_handle(handle, inode, EXT4_XATTR_INDEX_SECURITY,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070065 name, value, len, 0);
66 kfree(name);
67 kfree(value);
68 return err;
69}
70
Mingming Cao617ba132006-10-11 01:20:53 -070071struct xattr_handler ext4_xattr_security_handler = {
Dave Kleikampac27a0e2006-10-11 01:20:50 -070072 .prefix = XATTR_SECURITY_PREFIX,
Mingming Cao617ba132006-10-11 01:20:53 -070073 .list = ext4_xattr_security_list,
74 .get = ext4_xattr_security_get,
75 .set = ext4_xattr_security_set,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070076};