Home
last modified time | relevance | path

Searched refs:capable (Results 1 – 15 of 15) sorted by relevance

/security/
A Dmin_addr.c37 if (write && !capable(CAP_SYS_RAWIO)) in mmap_min_addr_handler()
A Dcommoncap.c144 if (!capable(CAP_SYS_TIME)) in cap_settime()
1481 LSM_HOOK_INIT(capable, cap_capable),
A Ddevice_cgroup.c620 if (!capable(CAP_SYS_ADMIN)) in devcgroup_update_access()
A Dsecurity.c1142 return call_int_hook(capable, cred, ns, cap, opts); in security_capable()
/security/integrity/evm/
A Devm_secfs.c71 if (!capable(CAP_SYS_ADMIN) || (evm_initialized & EVM_SETUP_COMPLETE)) in evm_write_key()
188 if (!capable(CAP_SYS_ADMIN) || evm_xattrs_locked) in evm_write_xattrs()
A Devm_main.c504 if (!capable(CAP_SYS_ADMIN)) in evm_protect_xattr()
/security/safesetid/
A Dlsm.c274 LSM_HOOK_INIT(capable, safesetid_security_capable)
/security/keys/
A Dkeyctl.c433 if (capable(CAP_SYS_ADMIN)) { in keyctl_invalidate_key()
478 if (capable(CAP_SYS_ADMIN)) { in keyctl_keyring_clear()
996 if (is_privileged_op && !capable(CAP_SYS_ADMIN)) in keyctl_chown_key()
1097 if (uid_eq(key->uid, current_fsuid()) || capable(CAP_SYS_ADMIN)) { in keyctl_setperm_key()
/security/apparmor/
A Dpolicy.c870 bool capable = policy_ns_capable(subj_cred, label, user_ns, in aa_policy_admin_capable() local
873 AA_DEBUG(DEBUG_POLICY, "cap_mac_admin? %d\n", capable); in aa_policy_admin_capable()
876 return aa_policy_view_capable(subj_cred, label, ns) && capable && in aa_policy_admin_capable()
A Dlsm.c1675 LSM_HOOK_INIT(capable, apparmor_capable),
/security/yama/
A Dyama_lsm.c437 if (write && !capable(CAP_SYS_PTRACE)) in yama_dointvec_minmax()
/security/integrity/ima/
A Dima_fs.c438 if (!capable(CAP_SYS_ADMIN)) in ima_open_policy()
A Dima_appraise.c690 if (!capable(CAP_SYS_ADMIN)) in ima_protect_xattr()
/security/keys/trusted-keys/
A Dtrusted_tpm1.c393 if (!capable(CAP_SYS_ADMIN)) in pcrlock()
/security/selinux/
A Dhooks.c7327 LSM_HOOK_INIT(capable, selinux_capable),

Completed in 54 milliseconds