diff options
author | John Johansen <john.johansen@canonical.com> | 2017-05-25 05:52:56 -0700 |
---|---|---|
committer | John Johansen <john.johansen@canonical.com> | 2017-06-08 12:51:51 -0700 |
commit | a481f4d917835cad86701fc0d1e620c74bb5cd5f (patch) | |
tree | 23841658b0582eedeed9d3891d434a051dcbdceb /security/apparmor/policy_ns.c | |
parent | 64c8697045f87713f0648e8429fcc3a0c4c61ffd (diff) | |
download | lwn-a481f4d917835cad86701fc0d1e620c74bb5cd5f.tar.gz lwn-a481f4d917835cad86701fc0d1e620c74bb5cd5f.zip |
apparmor: add custom apparmorfs that will be used by policy namespace files
AppArmor policy needs to be able to be resolved based on the policy
namespace a task is confined by. Add a base apparmorfs filesystem that
(like nsfs) will exist as a kern mount and be accessed via jump_link
through a securityfs file.
Setup the base apparmorfs fns and data, but don't use it yet.
Signed-off-by: John Johansen <john.johansen@canonical.com>
Reviewed-by: Seth Arnold <seth.arnold@canonical.com>
Reviewed-by: Kees Cook <keescook@chromium.org>
Diffstat (limited to 'security/apparmor/policy_ns.c')
0 files changed, 0 insertions, 0 deletions