diff options
Diffstat (limited to 'src/shared/lsm-util.c')
-rw-r--r-- | src/shared/lsm-util.c | 33 |
1 files changed, 33 insertions, 0 deletions
diff --git a/src/shared/lsm-util.c b/src/shared/lsm-util.c new file mode 100644 index 0000000..7b6d419 --- /dev/null +++ b/src/shared/lsm-util.c @@ -0,0 +1,33 @@ +/* SPDX-License-Identifier: LGPL-2.1-or-later */ + +#include "alloc-util.h" +#include "extract-word.h" +#include "fileio.h" +#include "lsm-util.h" +#include "string-util.h" + +int lsm_supported(const char *name) { + _cleanup_free_ char *lsm_list = NULL; + int r; + + assert(name); + + r = read_one_line_file("/sys/kernel/security/lsm", &lsm_list); + if (r == -ENOENT) /* LSM support not available at all? */ + return false; + if (r < 0) + return log_debug_errno(r, "Failed to read /sys/kernel/security/lsm: %m"); + + for (const char *p = lsm_list;;) { + _cleanup_free_ char *word = NULL; + + r = extract_first_word(&p, &word, ",", 0); + if (r == 0) + return false; + if (r < 0) + return log_debug_errno(r, "Failed to parse /sys/kernel/security/lsm: %m"); + + if (streq(word, name)) + return true; + } +} |