Home
last modified time | relevance | path

Searched refs:file_ns_capable (Results 1 – 16 of 16) sorted by relevance

/linux-6.14.4/security/ipe/
Dfs.c38 if (!file_ns_capable(f, &init_user_ns, CAP_MAC_ADMIN)) in setaudit()
86 if (!file_ns_capable(f, &init_user_ns, CAP_MAC_ADMIN)) in setenforce()
144 if (!file_ns_capable(f, &init_user_ns, CAP_MAC_ADMIN)) in new_policy()
Dpolicy_fs.c211 if (!file_ns_capable(f, &init_user_ns, CAP_MAC_ADMIN)) in setactive()
295 if (!file_ns_capable(f, &init_user_ns, CAP_MAC_ADMIN)) in update_policy()
338 if (!file_ns_capable(f, &init_user_ns, CAP_MAC_ADMIN)) in delete_policy()
/linux-6.14.4/kernel/
Dcapability.c449 bool file_ns_capable(const struct file *file, struct user_namespace *ns, in file_ns_capable() function
461 EXPORT_SYMBOL(file_ns_capable);
Duser_namespace.c915 if (!file_ns_capable(file, map_ns->parent, CAP_SETFCAP)) in verify_root_map()
976 if (cap_valid(cap_setid) && !file_ns_capable(file, map_ns, CAP_SYS_ADMIN)) in map_write()
1198 file_ns_capable(file, ns->parent, cap_setid)) in new_idmap_permitted()
Dresource.c130 if (file_ns_capable(m->file, &init_user_ns, CAP_SYS_ADMIN)) { in r_show()
Dseccomp.c2521 if (!file_ns_capable(m->file, &init_user_ns, CAP_SYS_ADMIN)) in proc_pid_seccomp_cache()
/linux-6.14.4/security/safesetid/
Dsecurityfs.c243 if (!file_ns_capable(file, &init_user_ns, CAP_MAC_ADMIN)) in safesetid_uid_file_write()
257 if (!file_ns_capable(file, &init_user_ns, CAP_MAC_ADMIN)) in safesetid_gid_file_write()
/linux-6.14.4/include/linux/
Dcapability.h193 extern bool file_ns_capable(const struct file *file, struct user_namespace *ns, int cap);
/linux-6.14.4/kernel/time/
Dnamespace.c393 if (!file_ns_capable(file, time_ns->user_ns, CAP_SYS_TIME)) { in proc_timens_set_offset()
/linux-6.14.4/kernel/cgroup/
Dcgroup-v1.c564 !file_ns_capable(of->file, &init_user_ns, CAP_SYS_ADMIN)) in cgroup_release_agent_write()
/linux-6.14.4/net/netlink/
Daf_netlink.c853 file_ns_capable(nsp->sk->sk_socket->file, user_ns, cap)) && in __netlink_ns_capable()
1430 if (!file_ns_capable(sk->sk_socket->file, p->net->user_ns, in do_one_broadcast()
/linux-6.14.4/drivers/pci/
Dpci-sysfs.c707 if (file_ns_capable(filp, &init_user_ns, CAP_SYS_ADMIN)) in pci_read_config()
/linux-6.14.4/fs/proc/
Dtask_mmu.c1973 pm.show_pfn = file_ns_capable(file, &init_user_ns, CAP_SYS_ADMIN); in pagemap_read()
Dbase.c480 if (!file_ns_capable(m->file, &init_user_ns, CAP_SYS_ADMIN)) in proc_pid_stack()
/linux-6.14.4/net/core/
Dsock.c172 return file_ns_capable(sk->sk_socket->file, user_ns, cap) && in sk_ns_capable()
Dskbuff.c5424 file_ns_capable(sk->sk_socket->file, &init_user_ns, CAP_NET_RAW); in skb_may_tx_timestamp()