Changes in v3:
- do some minor refactoring while there
- move new fields to the end of the record
- introduce a new security_sid_to_context_inval() function to get the raw
context instead of (ab)using strcmp() to check if the raw context is
different from the effective one
v2:
https://lore.kernel.org/selinux/20190121153605.26847-1-omosnace@redhat.co...
Changes in v2:
- rename new fields to *rawcon
v1:
https://lore.kernel.org/selinux/20190118100429.11703-1-omosnace@redhat.co...
Ondrej Mosnacek (4):
selinux: inline some AVC functions used only once
selinux: replace some BUG_ON()s with a WARN_ON()
selinux: remove some useless BUG_ONs
selinux: log invalid contexts in AVCs
security/selinux/avc.c | 159 +++++++++++++---------------
security/selinux/include/security.h | 3 +
security/selinux/ss/services.c | 37 ++++++-
3 files changed, 109 insertions(+), 90 deletions(-)
--
2.20.1