summaryrefslogtreecommitdiff
path: root/security/apparmor/af_unix.c
diff options
context:
space:
mode:
authorJohn Johansen <john.johansen@canonical.com>2024-01-04 09:00:49 -0800
committerJohn Johansen <john.johansen@canonical.com>2025-01-18 06:47:12 -0800
commitce9e3b3fa25a239f5c80989a1d05719bb2793fd4 (patch)
treee106773b410868003b789eee891707c3bc2edd3d /security/apparmor/af_unix.c
parenta9eb185be84e998aa9a99c7760534ccc06216705 (diff)
apparmor: add ability to mediate caps with policy state machine
Currently the caps encoding is very limited and can't be used with conditionals. Allow capabilities to be mediated by the state machine. This will allow us to add conditionals to capabilities that aren't possible with the current encoding. This patch only adds support for using the state machine and retains the old encoding lookup as part of the runtime mediation code to support older policy abis. A follow on patch will move backwards compatibility to a mapping function done at policy load time. Signed-off-by: John Johansen <john.johansen@canonical.com>
Diffstat (limited to 'security/apparmor/af_unix.c')
0 files changed, 0 insertions, 0 deletions