Function report

Linux Kernel

v5.5.9

Brick Technologies Co., Ltd

Source Code:security\device_cgroup.c Create Date:2022-07-28 19:55:50
Last Modify:2020-03-12 14:18:49 Copyright©Brick
home page Tree
Annotation kernel can get tool activityDownload SCCTChinese

Name:match_exception_partial - iterates the exception list trying to find a partial match*@exceptions: list of exceptions*@type: device type (DEVCG_DEV_BLOCK or DEVCG_DEV_CHAR)*@major: device file major number, ~0 to match all*@minor: device file minor number,

Proto:static bool match_exception_partial(struct list_head *exceptions, short type, unsigned int major, unsigned int minor, short access)

Type:bool

Parameter:

TypeParameterName
struct list_head *exceptions
shorttype
unsigned intmajor
unsigned intminor
shortaccess
356  If type & DEVCG_DEV_BLOCK && Not (type & DEVCG_DEV_BLOCK) Then Continue
358  If type & DEVCG_DEV_CHAR && Not (type & DEVCG_DEV_CHAR) Then Continue
364  If major != ~0 && major != ~0 && major != major Then Continue
366  If minor != ~0 && minor != ~0 && minor != minor Then Continue
373  If Not (access & access) Then Continue
375  Return true
377  Return false
Caller
NameDescribe
verify_new_exverify_new_ex - verifies if a new exception is allowed by parent cgroup's permissions*@dev_cgroup: dev cgroup to be tested against*@refex: new exception*@behavior: behavior of the exception's dev_cgroup* This is used to make sure a child cgroup won't have
parent_allows_removalparent_allows_removal - verify if it's ok to remove an exception*@childcg: child cgroup from where the exception will be removed*@ex: exception being removed* When removing an exception in cgroups with default ALLOW policy, it must* be checked if removing
__devcgroup_check_permission__devcgroup_check_permission - checks if an inode operation is permitted*@dev_cgroup: the dev cgroup to be tested against*@type: device type*@major: device major number*@minor: device minor number*@access: combination of DEVCG_ACC_WRITE, DEVCG_ACC_READ