exynos-linux-stable/security/selinux
Connor O'Brien e4594ccafa UPSTREAM: security: selinux: allow per-file labeling for bpffs
Add support for genfscon per-file labeling of bpffs files. This allows
for separate permissions for different pinned bpf objects, which may
be completely unrelated to each other.

Signed-off-by: Connor O'Brien <connoro@google.com>
Signed-off-by: Steven Moreland <smoreland@google.com>
Acked-by: Stephen Smalley <sds@tycho.nsa.gov>
Signed-off-by: Paul Moore <paul@paul-moore.com>
(cherry picked from commit 4ca54d3d3022ce27170b50e4bdecc3a42f05dbdc)
[which is v5.6-rc1-10-g4ca54d3d3022 and thus already included in 5.10]
Bug: 200440527
Change-Id: I8234b9047f29981b8140bd81bb2ff070b3b0b843
(cherry picked from commit d52ac987ad2ae16ff313d7fb6185bc412cb221a4)
2024-01-28 03:18:44 +03:00
..
include ANDROID: selinux: modify RTM_GETNEIGH{TBL} 2023-02-21 00:37:32 +03:00
ss selinux: fix double free 2023-02-21 00:37:54 +03:00
.gitignore SELinux: add .gitignore files for dynamic classes 2009-10-24 09:42:27 +08:00
avc.c selinux: don't require auditing 2023-02-21 00:09:18 +03:00
exports.c remove ALWAYS_ENFORCE 2023-02-21 00:08:34 +03:00
hooks.c UPSTREAM: security: selinux: allow per-file labeling for bpffs 2024-01-28 03:18:44 +03:00
Kconfig selinux: add custom enforce defining from command line 2023-02-21 00:22:00 +03:00
Makefile remove ALWAYS_ENFORCE 2023-02-21 00:08:34 +03:00
netif.c remove ALWAYS_ENFORCE 2023-02-21 00:08:34 +03:00
netlabel.c calipso: Add a label cache. 2016-06-27 15:06:17 -04:00
netlink.c selinux: replace obsolete NLMSG_* with type safe nlmsg_* 2013-03-28 14:25:49 -04:00
netnode.c remove ALWAYS_ENFORCE 2023-02-21 00:08:34 +03:00
netport.c remove ALWAYS_ENFORCE 2023-02-21 00:08:34 +03:00
nlmsgtab.c ANDROID: selinux: modify RTM_GETNEIGH{TBL} 2023-02-21 00:37:32 +03:00
selinuxfs.c selinux: add custom enforce defining from command line 2023-02-21 00:22:00 +03:00
xfrm.c import G965FXXU7DTAA OSRC 2020-02-04 13:50:09 +02:00