1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * linux/fs/ext4/xattr_security.c
4*4882a593Smuzhiyun * Handler for storing security labels as extended attributes.
5*4882a593Smuzhiyun */
6*4882a593Smuzhiyun
7*4882a593Smuzhiyun #include <linux/string.h>
8*4882a593Smuzhiyun #include <linux/fs.h>
9*4882a593Smuzhiyun #include <linux/security.h>
10*4882a593Smuzhiyun #include <linux/slab.h>
11*4882a593Smuzhiyun #include "ext4_jbd2.h"
12*4882a593Smuzhiyun #include "ext4.h"
13*4882a593Smuzhiyun #include "xattr.h"
14*4882a593Smuzhiyun
15*4882a593Smuzhiyun static int
ext4_xattr_security_get(const struct xattr_handler * handler,struct dentry * unused,struct inode * inode,const char * name,void * buffer,size_t size,int flags)16*4882a593Smuzhiyun ext4_xattr_security_get(const struct xattr_handler *handler,
17*4882a593Smuzhiyun struct dentry *unused, struct inode *inode,
18*4882a593Smuzhiyun const char *name, void *buffer, size_t size, int flags)
19*4882a593Smuzhiyun {
20*4882a593Smuzhiyun return ext4_xattr_get(inode, EXT4_XATTR_INDEX_SECURITY,
21*4882a593Smuzhiyun name, buffer, size);
22*4882a593Smuzhiyun }
23*4882a593Smuzhiyun
24*4882a593Smuzhiyun static int
ext4_xattr_security_set(const struct xattr_handler * handler,struct dentry * unused,struct inode * inode,const char * name,const void * value,size_t size,int flags)25*4882a593Smuzhiyun ext4_xattr_security_set(const struct xattr_handler *handler,
26*4882a593Smuzhiyun struct dentry *unused, struct inode *inode,
27*4882a593Smuzhiyun const char *name, const void *value,
28*4882a593Smuzhiyun size_t size, int flags)
29*4882a593Smuzhiyun {
30*4882a593Smuzhiyun return ext4_xattr_set(inode, EXT4_XATTR_INDEX_SECURITY,
31*4882a593Smuzhiyun name, value, size, flags);
32*4882a593Smuzhiyun }
33*4882a593Smuzhiyun
34*4882a593Smuzhiyun static int
ext4_initxattrs(struct inode * inode,const struct xattr * xattr_array,void * fs_info)35*4882a593Smuzhiyun ext4_initxattrs(struct inode *inode, const struct xattr *xattr_array,
36*4882a593Smuzhiyun void *fs_info)
37*4882a593Smuzhiyun {
38*4882a593Smuzhiyun const struct xattr *xattr;
39*4882a593Smuzhiyun handle_t *handle = fs_info;
40*4882a593Smuzhiyun int err = 0;
41*4882a593Smuzhiyun
42*4882a593Smuzhiyun for (xattr = xattr_array; xattr->name != NULL; xattr++) {
43*4882a593Smuzhiyun err = ext4_xattr_set_handle(handle, inode,
44*4882a593Smuzhiyun EXT4_XATTR_INDEX_SECURITY,
45*4882a593Smuzhiyun xattr->name, xattr->value,
46*4882a593Smuzhiyun xattr->value_len, XATTR_CREATE);
47*4882a593Smuzhiyun if (err < 0)
48*4882a593Smuzhiyun break;
49*4882a593Smuzhiyun }
50*4882a593Smuzhiyun return err;
51*4882a593Smuzhiyun }
52*4882a593Smuzhiyun
53*4882a593Smuzhiyun int
ext4_init_security(handle_t * handle,struct inode * inode,struct inode * dir,const struct qstr * qstr)54*4882a593Smuzhiyun ext4_init_security(handle_t *handle, struct inode *inode, struct inode *dir,
55*4882a593Smuzhiyun const struct qstr *qstr)
56*4882a593Smuzhiyun {
57*4882a593Smuzhiyun return security_inode_init_security(inode, dir, qstr,
58*4882a593Smuzhiyun &ext4_initxattrs, handle);
59*4882a593Smuzhiyun }
60*4882a593Smuzhiyun
61*4882a593Smuzhiyun const struct xattr_handler ext4_xattr_security_handler = {
62*4882a593Smuzhiyun .prefix = XATTR_SECURITY_PREFIX,
63*4882a593Smuzhiyun .get = ext4_xattr_security_get,
64*4882a593Smuzhiyun .set = ext4_xattr_security_set,
65*4882a593Smuzhiyun };
66