diff options
author | Casey Schaufler <casey@schaufler-ca.com> | 2020-11-10 18:28:41 +0100 |
---|---|---|
committer | Jonathan Corbet <corbet@lwn.net> | 2020-11-13 23:02:19 +0100 |
commit | bfe7bf311497815d7c7a21f97598b8e9cb47cb52 (patch) | |
tree | 8478d6dbbfc8f745149abfd6282ac06c5e11e5df /Documentation/ABI/testing/procfs-attr-current | |
parent | Documentation: include sign off for reverts (diff) | |
download | linux-bfe7bf311497815d7c7a21f97598b8e9cb47cb52.tar.xz linux-bfe7bf311497815d7c7a21f97598b8e9cb47cb52.zip |
docs: ABI: ABI documentation for procfs attribute files used by multiple LSMs
Provide basic ABI descriptions for the process attribute entries
that are shared between multiple Linux security modules.
Signed-off-by: Casey Schaufler <casey@schaufler-ca.com>
Link: https://lore.kernel.org/r/30c36660-3694-0c0d-d472-8f3b3ca4098e@schaufler-ca.com
Signed-off-by: Jonathan Corbet <corbet@lwn.net>
Diffstat (limited to 'Documentation/ABI/testing/procfs-attr-current')
-rw-r--r-- | Documentation/ABI/testing/procfs-attr-current | 20 |
1 files changed, 20 insertions, 0 deletions
diff --git a/Documentation/ABI/testing/procfs-attr-current b/Documentation/ABI/testing/procfs-attr-current new file mode 100644 index 000000000000..198b9fe1c8e8 --- /dev/null +++ b/Documentation/ABI/testing/procfs-attr-current @@ -0,0 +1,20 @@ +What: /proc/*/attr/current +Contact: linux-security-module@vger.kernel.org, + selinux@vger.kernel.org, + apparmor@lists.ubuntu.com +Description: The current security information used by a Linux + security module (LSM) that is active on the system. + The details of permissions required to read from + this interface and hence obtain the security state + of the task identified is LSM dependent. + A process cannot write to this interface unless it + refers to itself. + The other details of permissions required to write to + this interface and hence change the security state of + the task identified are LSM dependent. + The format of the data used by this interface is LSM + dependent. + SELinux, Smack and AppArmor provide this interface. +Users: SELinux user-space + Smack user-space + AppArmor user-space |