blob: 983c253999a7f32965a384ae116aa856f25011ed [file] [log] [blame]
Dave Kleikampac27a0e2006-10-11 01:20:50 -07001/*
Mingming Cao617ba132006-10-11 01:20:53 -07002 * linux/fs/ext4/xattr_security.c
Dave Kleikampac27a0e2006-10-11 01:20:50 -07003 * Handler for storing security labels as extended attributes.
4 */
5
6#include <linux/module.h>
7#include <linux/string.h>
8#include <linux/fs.h>
Dave Kleikampac27a0e2006-10-11 01:20:50 -07009#include <linux/security.h>
Christoph Hellwig3dcf5452008-04-29 18:13:32 -040010#include "ext4_jbd2.h"
11#include "ext4.h"
Dave Kleikampac27a0e2006-10-11 01:20:50 -070012#include "xattr.h"
13
14static size_t
Christoph Hellwig431547b2009-11-13 09:52:56 +000015ext4_xattr_security_list(struct dentry *dentry, char *list, size_t list_size,
16 const char *name, size_t name_len, int type)
Dave Kleikampac27a0e2006-10-11 01:20:50 -070017{
18 const size_t prefix_len = sizeof(XATTR_SECURITY_PREFIX)-1;
19 const size_t total_len = prefix_len + name_len + 1;
20
21
22 if (list && total_len <= list_size) {
23 memcpy(list, XATTR_SECURITY_PREFIX, prefix_len);
24 memcpy(list+prefix_len, name, name_len);
25 list[prefix_len + name_len] = '\0';
26 }
27 return total_len;
28}
29
30static int
Christoph Hellwig431547b2009-11-13 09:52:56 +000031ext4_xattr_security_get(struct dentry *dentry, const char *name,
32 void *buffer, size_t size, int type)
Dave Kleikampac27a0e2006-10-11 01:20:50 -070033{
34 if (strcmp(name, "") == 0)
35 return -EINVAL;
Christoph Hellwig431547b2009-11-13 09:52:56 +000036 return ext4_xattr_get(dentry->d_inode, EXT4_XATTR_INDEX_SECURITY,
37 name, buffer, size);
Dave Kleikampac27a0e2006-10-11 01:20:50 -070038}
39
40static int
Christoph Hellwig431547b2009-11-13 09:52:56 +000041ext4_xattr_security_set(struct dentry *dentry, const char *name,
42 const void *value, size_t size, int flags, int type)
Dave Kleikampac27a0e2006-10-11 01:20:50 -070043{
44 if (strcmp(name, "") == 0)
45 return -EINVAL;
Christoph Hellwig431547b2009-11-13 09:52:56 +000046 return ext4_xattr_set(dentry->d_inode, EXT4_XATTR_INDEX_SECURITY,
47 name, value, size, flags);
Dave Kleikampac27a0e2006-10-11 01:20:50 -070048}
49
50int
Mingming Cao617ba132006-10-11 01:20:53 -070051ext4_init_security(handle_t *handle, struct inode *inode, struct inode *dir)
Dave Kleikampac27a0e2006-10-11 01:20:50 -070052{
53 int err;
54 size_t len;
55 void *value;
56 char *name;
57
58 err = security_inode_init_security(inode, dir, &name, &value, &len);
59 if (err) {
60 if (err == -EOPNOTSUPP)
61 return 0;
62 return err;
63 }
Mingming Cao617ba132006-10-11 01:20:53 -070064 err = ext4_xattr_set_handle(handle, inode, EXT4_XATTR_INDEX_SECURITY,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070065 name, value, len, 0);
66 kfree(name);
67 kfree(value);
68 return err;
69}
70
Mingming Cao617ba132006-10-11 01:20:53 -070071struct xattr_handler ext4_xattr_security_handler = {
Dave Kleikampac27a0e2006-10-11 01:20:50 -070072 .prefix = XATTR_SECURITY_PREFIX,
Mingming Cao617ba132006-10-11 01:20:53 -070073 .list = ext4_xattr_security_list,
74 .get = ext4_xattr_security_get,
75 .set = ext4_xattr_security_set,
Dave Kleikampac27a0e2006-10-11 01:20:50 -070076};