1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * linux/fs/hfsplus/xattr_trusted.c
4*4882a593Smuzhiyun *
5*4882a593Smuzhiyun * Vyacheslav Dubeyko <slava@dubeyko.com>
6*4882a593Smuzhiyun *
7*4882a593Smuzhiyun * Handler for storing security labels as extended attributes.
8*4882a593Smuzhiyun */
9*4882a593Smuzhiyun
10*4882a593Smuzhiyun #include <linux/security.h>
11*4882a593Smuzhiyun #include <linux/nls.h>
12*4882a593Smuzhiyun
13*4882a593Smuzhiyun #include "hfsplus_fs.h"
14*4882a593Smuzhiyun #include "xattr.h"
15*4882a593Smuzhiyun
hfsplus_security_getxattr(const struct xattr_handler * handler,struct dentry * unused,struct inode * inode,const char * name,void * buffer,size_t size,int flags)16*4882a593Smuzhiyun static int hfsplus_security_getxattr(const struct xattr_handler *handler,
17*4882a593Smuzhiyun struct dentry *unused, struct inode *inode,
18*4882a593Smuzhiyun const char *name, void *buffer,
19*4882a593Smuzhiyun size_t size, int flags)
20*4882a593Smuzhiyun {
21*4882a593Smuzhiyun return hfsplus_getxattr(inode, name, buffer, size,
22*4882a593Smuzhiyun XATTR_SECURITY_PREFIX,
23*4882a593Smuzhiyun XATTR_SECURITY_PREFIX_LEN);
24*4882a593Smuzhiyun }
25*4882a593Smuzhiyun
hfsplus_security_setxattr(const struct xattr_handler * handler,struct dentry * unused,struct inode * inode,const char * name,const void * buffer,size_t size,int flags)26*4882a593Smuzhiyun static int hfsplus_security_setxattr(const struct xattr_handler *handler,
27*4882a593Smuzhiyun struct dentry *unused, struct inode *inode,
28*4882a593Smuzhiyun const char *name, const void *buffer,
29*4882a593Smuzhiyun size_t size, int flags)
30*4882a593Smuzhiyun {
31*4882a593Smuzhiyun return hfsplus_setxattr(inode, name, buffer, size, flags,
32*4882a593Smuzhiyun XATTR_SECURITY_PREFIX,
33*4882a593Smuzhiyun XATTR_SECURITY_PREFIX_LEN);
34*4882a593Smuzhiyun }
35*4882a593Smuzhiyun
hfsplus_initxattrs(struct inode * inode,const struct xattr * xattr_array,void * fs_info)36*4882a593Smuzhiyun static int hfsplus_initxattrs(struct inode *inode,
37*4882a593Smuzhiyun const struct xattr *xattr_array,
38*4882a593Smuzhiyun void *fs_info)
39*4882a593Smuzhiyun {
40*4882a593Smuzhiyun const struct xattr *xattr;
41*4882a593Smuzhiyun char *xattr_name;
42*4882a593Smuzhiyun int err = 0;
43*4882a593Smuzhiyun
44*4882a593Smuzhiyun xattr_name = kmalloc(NLS_MAX_CHARSET_SIZE * HFSPLUS_ATTR_MAX_STRLEN + 1,
45*4882a593Smuzhiyun GFP_KERNEL);
46*4882a593Smuzhiyun if (!xattr_name)
47*4882a593Smuzhiyun return -ENOMEM;
48*4882a593Smuzhiyun for (xattr = xattr_array; xattr->name != NULL; xattr++) {
49*4882a593Smuzhiyun
50*4882a593Smuzhiyun if (!strcmp(xattr->name, ""))
51*4882a593Smuzhiyun continue;
52*4882a593Smuzhiyun
53*4882a593Smuzhiyun strcpy(xattr_name, XATTR_SECURITY_PREFIX);
54*4882a593Smuzhiyun strcpy(xattr_name +
55*4882a593Smuzhiyun XATTR_SECURITY_PREFIX_LEN, xattr->name);
56*4882a593Smuzhiyun memset(xattr_name +
57*4882a593Smuzhiyun XATTR_SECURITY_PREFIX_LEN + strlen(xattr->name), 0, 1);
58*4882a593Smuzhiyun
59*4882a593Smuzhiyun err = __hfsplus_setxattr(inode, xattr_name,
60*4882a593Smuzhiyun xattr->value, xattr->value_len, 0);
61*4882a593Smuzhiyun if (err)
62*4882a593Smuzhiyun break;
63*4882a593Smuzhiyun }
64*4882a593Smuzhiyun kfree(xattr_name);
65*4882a593Smuzhiyun return err;
66*4882a593Smuzhiyun }
67*4882a593Smuzhiyun
hfsplus_init_security(struct inode * inode,struct inode * dir,const struct qstr * qstr)68*4882a593Smuzhiyun int hfsplus_init_security(struct inode *inode, struct inode *dir,
69*4882a593Smuzhiyun const struct qstr *qstr)
70*4882a593Smuzhiyun {
71*4882a593Smuzhiyun return security_inode_init_security(inode, dir, qstr,
72*4882a593Smuzhiyun &hfsplus_initxattrs, NULL);
73*4882a593Smuzhiyun }
74*4882a593Smuzhiyun
75*4882a593Smuzhiyun const struct xattr_handler hfsplus_xattr_security_handler = {
76*4882a593Smuzhiyun .prefix = XATTR_SECURITY_PREFIX,
77*4882a593Smuzhiyun .get = hfsplus_security_getxattr,
78*4882a593Smuzhiyun .set = hfsplus_security_setxattr,
79*4882a593Smuzhiyun };
80