]> git.baikalelectronics.ru Git - kernel.git/commit
ima: add support for new "euid" policy condition
authorMimi Zohar <zohar@linux.vnet.ibm.com>
Wed, 5 Nov 2014 12:48:36 +0000 (07:48 -0500)
committerMimi Zohar <zohar@linux.vnet.ibm.com>
Tue, 16 Jun 2015 12:18:43 +0000 (08:18 -0400)
commite44138e72a8d65fbf54a3e1c7a4ab52c56a2948d
treeb042f562de014a0376ac13b1452f1d9fbd003eb9
parentabf8d137e22820307dc737c4813a7a3a8bb721c5
ima: add support for new "euid" policy condition

The new "euid" policy condition measures files with the specified
effective uid (euid).  In addition, for CAP_SETUID files it measures
files with the specified uid or suid.

Changelog:
- fixed checkpatch.pl warnings
- fixed avc denied {setuid} messages - based on Roberto's feedback

Signed-off-by: Mimi Zohar <zohar@linux.vnet.ibm.com>
Signed-off-by: Dr. Greg Wettstein <gw@idfusion.org>
Cc: stable@vger.kernel.org
Documentation/ABI/testing/ima_policy
security/integrity/ima/ima_policy.c