summaryrefslogtreecommitdiffstats
path: root/src/shared/lsm-util.c
diff options
context:
space:
mode:
Diffstat (limited to 'src/shared/lsm-util.c')
-rw-r--r--src/shared/lsm-util.c33
1 files changed, 33 insertions, 0 deletions
diff --git a/src/shared/lsm-util.c b/src/shared/lsm-util.c
new file mode 100644
index 0000000..7b6d419
--- /dev/null
+++ b/src/shared/lsm-util.c
@@ -0,0 +1,33 @@
+/* SPDX-License-Identifier: LGPL-2.1-or-later */
+
+#include "alloc-util.h"
+#include "extract-word.h"
+#include "fileio.h"
+#include "lsm-util.h"
+#include "string-util.h"
+
+int lsm_supported(const char *name) {
+ _cleanup_free_ char *lsm_list = NULL;
+ int r;
+
+ assert(name);
+
+ r = read_one_line_file("/sys/kernel/security/lsm", &lsm_list);
+ if (r == -ENOENT) /* LSM support not available at all? */
+ return false;
+ if (r < 0)
+ return log_debug_errno(r, "Failed to read /sys/kernel/security/lsm: %m");
+
+ for (const char *p = lsm_list;;) {
+ _cleanup_free_ char *word = NULL;
+
+ r = extract_first_word(&p, &word, ",", 0);
+ if (r == 0)
+ return false;
+ if (r < 0)
+ return log_debug_errno(r, "Failed to parse /sys/kernel/security/lsm: %m");
+
+ if (streq(word, name))
+ return true;
+ }
+}