selinux.h revision 5baf2f856a9c6625993234855b07680da1c8916f
11e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington/* selinux.h  SELinux security check headers for D-BUS
21e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington *
31e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * Author: Matthew Rickard <mjricka@epoch.ncsc.mil>
41e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington *
543605a6f4e78a8c28afb4b1e924dff0301e0e95cHavoc Pennington * Licensed under the Academic Free License version 2.1
61e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington *
71e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * This program is free software; you can redistribute it and/or modify
81e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * it under the terms of the GNU General Public License as published by
91e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * the Free Software Foundation; either version 2 of the License, or
101e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * (at your option) any later version.
111e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington *
121e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * This program is distributed in the hope that it will be useful,
131e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * but WITHOUT ANY WARRANTY; without even the implied warranty of
141e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
151e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * GNU General Public License for more details.
161e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington *
171e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * You should have received a copy of the GNU General Public License
181e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington * along with this program; if not, write to the Free Software
195baf2f856a9c6625993234855b07680da1c8916fTobias Mueller * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA  02110-1301  USA
201e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington *
211e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington */
221e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
231e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington#ifndef BUS_SELINUX_H
241e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington#define BUS_SELINUX_H
251e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
261e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington#include <dbus/dbus-hash.h>
271e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington#include <dbus/dbus-connection.h>
281e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington#include "services.h"
291e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
3073ffe59d87864d61b9d22f199fc6375840bf39bbColin Waltersdbus_bool_t bus_selinux_pre_init (void);
3173ffe59d87864d61b9d22f199fc6375840bf39bbColin Waltersdbus_bool_t bus_selinux_full_init(void);
321e9b185b0c274ef0d684b1e43418388225321e72Havoc Penningtonvoid        bus_selinux_shutdown (void);
331e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
34736fa825e15c8d72eac85080e6cdf028c2f8df43Colin Waltersdbus_bool_t bus_selinux_enabled  (void);
35736fa825e15c8d72eac85080e6cdf028c2f8df43Colin Walters
361e9b185b0c274ef0d684b1e43418388225321e72Havoc Penningtonvoid bus_selinux_id_ref    (BusSELinuxID *sid);
371e9b185b0c274ef0d684b1e43418388225321e72Havoc Penningtonvoid bus_selinux_id_unref  (BusSELinuxID *sid);
381e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
391e9b185b0c274ef0d684b1e43418388225321e72Havoc PenningtonDBusHashTable* bus_selinux_id_table_new    (void);
401e9b185b0c274ef0d684b1e43418388225321e72Havoc PenningtonBusSELinuxID*  bus_selinux_id_table_lookup (DBusHashTable    *service_table,
411e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington                                            const DBusString *service_name);
421e9b185b0c274ef0d684b1e43418388225321e72Havoc Penningtondbus_bool_t    bus_selinux_id_table_insert (DBusHashTable    *service_table,
431e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington                                            const char       *service_name,
441e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington                                            const char       *service_context);
451e9b185b0c274ef0d684b1e43418388225321e72Havoc Penningtonvoid           bus_selinux_id_table_print  (DBusHashTable    *service_table);
46ee78f2800f2642b4fff962b736296d87a7f12a17Colin Waltersconst char*    bus_selinux_get_policy_root (void);
471e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
486c191520c8b33cd7e550a6e3d9d853c25f552f54Colin Waltersdbus_bool_t    bus_selinux_append_context      (DBusMessage    *message,
499a94a1350bb93ea395812dd3c983e13e17c1bcb1Colin Walters						BusSELinuxID   *context,
509a94a1350bb93ea395812dd3c983e13e17c1bcb1Colin Walters						DBusError      *error);
511e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
521e9b185b0c274ef0d684b1e43418388225321e72Havoc Penningtondbus_bool_t bus_selinux_allows_acquire_service (DBusConnection *connection,
53935a41a04c3f638134fa905503fc41ddbd18902fColin Walters                                                BusSELinuxID   *service_sid,
5444656f538f69e8f8709ddb6ab285db29f65f62ddDavid Zeuthen						const char     *service_name,
5544656f538f69e8f8709ddb6ab285db29f65f62ddDavid Zeuthen						DBusError      *error);
5644656f538f69e8f8709ddb6ab285db29f65f62ddDavid Zeuthen
571e9b185b0c274ef0d684b1e43418388225321e72Havoc Penningtondbus_bool_t bus_selinux_allows_send            (DBusConnection *sender,
58935a41a04c3f638134fa905503fc41ddbd18902fColin Walters                                                DBusConnection *proposed_recipient,
59935a41a04c3f638134fa905503fc41ddbd18902fColin Walters						const char     *msgtype, /* Supplementary audit data */
60935a41a04c3f638134fa905503fc41ddbd18902fColin Walters						const char     *interface,
61935a41a04c3f638134fa905503fc41ddbd18902fColin Walters						const char     *member,
62935a41a04c3f638134fa905503fc41ddbd18902fColin Walters						const char     *error_name,
6344656f538f69e8f8709ddb6ab285db29f65f62ddDavid Zeuthen						const char     *destination,
6444656f538f69e8f8709ddb6ab285db29f65f62ddDavid Zeuthen						DBusError      *error);
651e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
661e9b185b0c274ef0d684b1e43418388225321e72Havoc PenningtonBusSELinuxID* bus_selinux_init_connection_id (DBusConnection *connection,
671e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington                                              DBusError      *error);
681e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
691e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
705340b8de0b537380e0c445495300739d75abeb2fHavoc Penningtonvoid bus_selinux_audit_init(void);
711e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington
721e9b185b0c274ef0d684b1e43418388225321e72Havoc Pennington#endif /* BUS_SELINUX_H */
73