Skip to content
Projects
Groups
Snippets
Help
This project
Loading...
Sign in / Register
Toggle navigation
L
lxc
Project
Overview
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
Chen Yisong
lxc
Commits
d6df2b8f
Unverified
Commit
d6df2b8f
authored
Apr 02, 2021
by
Christian Brauner
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
confile: complain when LXC is built without selinux support
Link:
https://github.com/lxc/lxc/issues/3765
Signed-off-by:
Christian Brauner
<
christian.brauner@ubuntu.com
>
parent
6fde9fb1
Hide whitespace changes
Inline
Side-by-side
Showing
1 changed file
with
24 additions
and
0 deletions
+24
-0
confile.c
src/lxc/confile.c
+24
-0
No files found.
src/lxc/confile.c
View file @
d6df2b8f
...
@@ -1628,13 +1628,21 @@ static int set_config_apparmor_raw(const char *key,
...
@@ -1628,13 +1628,21 @@ static int set_config_apparmor_raw(const char *key,
static
int
set_config_selinux_context
(
const
char
*
key
,
const
char
*
value
,
static
int
set_config_selinux_context
(
const
char
*
key
,
const
char
*
value
,
struct
lxc_conf
*
lxc_conf
,
void
*
data
)
struct
lxc_conf
*
lxc_conf
,
void
*
data
)
{
{
#if HAVE_SELINUX
return
set_config_string_item
(
&
lxc_conf
->
lsm_se_context
,
value
);
return
set_config_string_item
(
&
lxc_conf
->
lsm_se_context
,
value
);
#else
return
syserror_set
(
-
EINVAL
,
"Built without SELinux support"
);
#endif
}
}
static
int
set_config_selinux_context_keyring
(
const
char
*
key
,
const
char
*
value
,
static
int
set_config_selinux_context_keyring
(
const
char
*
key
,
const
char
*
value
,
struct
lxc_conf
*
lxc_conf
,
void
*
data
)
struct
lxc_conf
*
lxc_conf
,
void
*
data
)
{
{
#if HAVE_SELINUX
return
set_config_string_item
(
&
lxc_conf
->
lsm_se_keyring_context
,
value
);
return
set_config_string_item
(
&
lxc_conf
->
lsm_se_keyring_context
,
value
);
#else
return
syserror_set
(
-
EINVAL
,
"Built without SELinux support"
);
#endif
}
}
static
int
set_config_keyring_session
(
const
char
*
key
,
const
char
*
value
,
static
int
set_config_keyring_session
(
const
char
*
key
,
const
char
*
value
,
...
@@ -3732,13 +3740,21 @@ static int get_config_apparmor_raw(const char *key, char *retv,
...
@@ -3732,13 +3740,21 @@ static int get_config_apparmor_raw(const char *key, char *retv,
static
int
get_config_selinux_context
(
const
char
*
key
,
char
*
retv
,
int
inlen
,
static
int
get_config_selinux_context
(
const
char
*
key
,
char
*
retv
,
int
inlen
,
struct
lxc_conf
*
c
,
void
*
data
)
struct
lxc_conf
*
c
,
void
*
data
)
{
{
#if HAVE_SELINUX
return
lxc_get_conf_str
(
retv
,
inlen
,
c
->
lsm_se_context
);
return
lxc_get_conf_str
(
retv
,
inlen
,
c
->
lsm_se_context
);
#else
return
syserror_set
(
-
EINVAL
,
"Built without SELinux support"
);
#endif
}
}
static
int
get_config_selinux_context_keyring
(
const
char
*
key
,
char
*
retv
,
int
inlen
,
static
int
get_config_selinux_context_keyring
(
const
char
*
key
,
char
*
retv
,
int
inlen
,
struct
lxc_conf
*
c
,
void
*
data
)
struct
lxc_conf
*
c
,
void
*
data
)
{
{
#if HAVE_SELINUX
return
lxc_get_conf_str
(
retv
,
inlen
,
c
->
lsm_se_keyring_context
);
return
lxc_get_conf_str
(
retv
,
inlen
,
c
->
lsm_se_keyring_context
);
#else
return
syserror_set
(
-
EINVAL
,
"Built without SELinux support"
);
#endif
}
}
static
int
get_config_keyring_session
(
const
char
*
key
,
char
*
retv
,
int
inlen
,
static
int
get_config_keyring_session
(
const
char
*
key
,
char
*
retv
,
int
inlen
,
...
@@ -4740,15 +4756,23 @@ static inline int clr_config_apparmor_raw(const char *key,
...
@@ -4740,15 +4756,23 @@ static inline int clr_config_apparmor_raw(const char *key,
static
inline
int
clr_config_selinux_context
(
const
char
*
key
,
static
inline
int
clr_config_selinux_context
(
const
char
*
key
,
struct
lxc_conf
*
c
,
void
*
data
)
struct
lxc_conf
*
c
,
void
*
data
)
{
{
#if HAVE_SELINUX
free_disarm
(
c
->
lsm_se_context
);
free_disarm
(
c
->
lsm_se_context
);
return
0
;
return
0
;
#else
return
syserror_set
(
-
EINVAL
,
"Built without SELinux support"
);
#endif
}
}
static
inline
int
clr_config_selinux_context_keyring
(
const
char
*
key
,
static
inline
int
clr_config_selinux_context_keyring
(
const
char
*
key
,
struct
lxc_conf
*
c
,
void
*
data
)
struct
lxc_conf
*
c
,
void
*
data
)
{
{
#if HAVE_SELINUX
free_disarm
(
c
->
lsm_se_keyring_context
);
free_disarm
(
c
->
lsm_se_keyring_context
);
return
0
;
return
0
;
#else
return
syserror_set
(
-
EINVAL
,
"Built without SELinux support"
);
#endif
}
}
static
inline
int
clr_config_keyring_session
(
const
char
*
key
,
static
inline
int
clr_config_keyring_session
(
const
char
*
key
,
...
...
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment