packages: kernel/kernel-apparmor.patch - fix for 3.0.3
arekm
arekm at pld-linux.org
Wed Aug 24 11:09:58 CEST 2011
Author: arekm Date: Wed Aug 24 09:09:58 2011 GMT
Module: packages Tag: HEAD
---- Log message:
- fix for 3.0.3
---- Files affected:
packages/kernel:
kernel-apparmor.patch (1.12 -> 1.13)
---- Diffs:
================================================================
Index: packages/kernel/kernel-apparmor.patch
diff -u packages/kernel/kernel-apparmor.patch:1.12 packages/kernel/kernel-apparmor.patch:1.13
--- packages/kernel/kernel-apparmor.patch:1.12 Mon Jul 11 01:09:05 2011
+++ packages/kernel/kernel-apparmor.patch Wed Aug 24 11:09:53 2011
@@ -162,7 +162,27 @@
#include "include/path.h"
#include "include/policy.h"
#include "include/procattr.h"
-@@ -620,6 +621,104 @@ static int apparmor_task_setrlimit(struct task_struct *task,
+@@ -651,6 +750,19 @@ static struct security_operations apparmor_ops = {
+ .getprocattr = apparmor_getprocattr,
+ .setprocattr = apparmor_setprocattr,
+
++ .socket_create = apparmor_socket_create,
++ .socket_bind = apparmor_socket_bind,
++ .socket_connect = apparmor_socket_connect,
++ .socket_listen = apparmor_socket_listen,
++ .socket_accept = apparmor_socket_accept,
++ .socket_sendmsg = apparmor_socket_sendmsg,
++ .socket_recvmsg = apparmor_socket_recvmsg,
++ .socket_getsockname = apparmor_socket_getsockname,
++ .socket_getpeername = apparmor_socket_getpeername,
++ .socket_getsockopt = apparmor_socket_getsockopt,
++ .socket_setsockopt = apparmor_socket_setsockopt,
++ .socket_shutdown = apparmor_socket_shutdown,
++
+ .cred_alloc_blank = apparmor_cred_alloc_blank,
+ .cred_free = apparmor_cred_free,
+ .cred_prepare = apparmor_cred_prepare,
+@@ -949,4 +950,102 @@ static int apparmor_task_setrlimit(struct task_struct *task,
return error;
}
@@ -264,29 +284,8 @@
+ return aa_revalidate_sk(OP_SOCK_SHUTDOWN, sk);
+}
+
- static struct security_operations apparmor_ops = {
- .name = "apparmor",
-
-@@ -651,6 +750,19 @@ static struct security_operations apparmor_ops = {
- .getprocattr = apparmor_getprocattr,
- .setprocattr = apparmor_setprocattr,
-
-+ .socket_create = apparmor_socket_create,
-+ .socket_bind = apparmor_socket_bind,
-+ .socket_connect = apparmor_socket_connect,
-+ .socket_listen = apparmor_socket_listen,
-+ .socket_accept = apparmor_socket_accept,
-+ .socket_sendmsg = apparmor_socket_sendmsg,
-+ .socket_recvmsg = apparmor_socket_recvmsg,
-+ .socket_getsockname = apparmor_socket_getsockname,
-+ .socket_getpeername = apparmor_socket_getpeername,
-+ .socket_getsockopt = apparmor_socket_getsockopt,
-+ .socket_setsockopt = apparmor_socket_setsockopt,
-+ .socket_shutdown = apparmor_socket_shutdown,
-+
- .cred_alloc_blank = apparmor_cred_alloc_blank,
- .cred_free = apparmor_cred_free,
- .cred_prepare = apparmor_cred_prepare,
+ security_initcall(apparmor_init);
+
diff --git a/security/apparmor/net.c b/security/apparmor/net.c
new file mode 100644
index 0000000..1765901
================================================================
---- CVS-web:
http://cvs.pld-linux.org/cgi-bin/cvsweb.cgi/packages/kernel/kernel-apparmor.patch?r1=1.12&r2=1.13&f=u
More information about the pld-cvs-commit
mailing list