summaryrefslogtreecommitdiffstats
path: root/src/shared/lsm-util.c
diff options
context:
space:
mode:
authorDaniel Baumann <daniel.baumann@progress-linux.org>2024-04-10 20:49:52 +0000
committerDaniel Baumann <daniel.baumann@progress-linux.org>2024-04-10 20:49:52 +0000
commit55944e5e40b1be2afc4855d8d2baf4b73d1876b5 (patch)
tree33f869f55a1b149e9b7c2b7e201867ca5dd52992 /src/shared/lsm-util.c
parentInitial commit. (diff)
downloadsystemd-55944e5e40b1be2afc4855d8d2baf4b73d1876b5.tar.xz
systemd-55944e5e40b1be2afc4855d8d2baf4b73d1876b5.zip
Adding upstream version 255.4.upstream/255.4
Signed-off-by: Daniel Baumann <daniel.baumann@progress-linux.org>
Diffstat (limited to 'src/shared/lsm-util.c')
-rw-r--r--src/shared/lsm-util.c33
1 files changed, 33 insertions, 0 deletions
diff --git a/src/shared/lsm-util.c b/src/shared/lsm-util.c
new file mode 100644
index 0000000..7b6d419
--- /dev/null
+++ b/src/shared/lsm-util.c
@@ -0,0 +1,33 @@
+/* SPDX-License-Identifier: LGPL-2.1-or-later */
+
+#include "alloc-util.h"
+#include "extract-word.h"
+#include "fileio.h"
+#include "lsm-util.h"
+#include "string-util.h"
+
+int lsm_supported(const char *name) {
+ _cleanup_free_ char *lsm_list = NULL;
+ int r;
+
+ assert(name);
+
+ r = read_one_line_file("/sys/kernel/security/lsm", &lsm_list);
+ if (r == -ENOENT) /* LSM support not available at all? */
+ return false;
+ if (r < 0)
+ return log_debug_errno(r, "Failed to read /sys/kernel/security/lsm: %m");
+
+ for (const char *p = lsm_list;;) {
+ _cleanup_free_ char *word = NULL;
+
+ r = extract_first_word(&p, &word, ",", 0);
+ if (r == 0)
+ return false;
+ if (r < 0)
+ return log_debug_errno(r, "Failed to parse /sys/kernel/security/lsm: %m");
+
+ if (streq(word, name))
+ return true;
+ }
+}