| /xnu-8020.140.41/security/ |
| H A D | mac_skywalk.c | 41 MAC_CHECK(skywalk_flow_check_connect, kauth_cred_get(), flow, addr, type, protocol); in mac_skywalk_flow_check_connect() 51 MAC_CHECK(skywalk_flow_check_listen, kauth_cred_get(), flow, addr, type, protocol); in mac_skywalk_flow_check_listen()
|
| /xnu-8020.140.41/bsd/kern/ |
| H A D | posix_shm.c | 272 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in pshm_cache_purge_all() 292 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in pshm_cache_purge_uid() 406 error = mac_posixshm_check_create(kauth_cred_get(), new_pinfo->pshm_hdr.pshm_name); in shm_open() 468 if ((error = mac_posixshm_check_open(kauth_cred_get(), &pinfo->pshm_hdr, fmode))) { in shm_open() 472 if ((error = pshm_access(pinfo, fmode, kauth_cred_get(), p))) { in shm_open() 477 mac_posixshm_label_associate(kauth_cred_get(), &pinfo->pshm_hdr, pinfo->pshm_hdr.pshm_name); in shm_open() 587 error = mac_posixshm_check_truncate(kauth_cred_get(), &pinfo->pshm_hdr, length); in pshm_truncate() 688 error = mac_posixshm_check_stat(kauth_cred_get(), &pinfo->pshm_hdr); in pshm_stat() 819 error = mac_posixshm_check_mmap(kauth_cred_get(), &pinfo->pshm_hdr, prot, flags); in pshm_mmap() 988 …error = mac_posixshm_check_unlink(kauth_cred_get(), &pinfo->pshm_hdr, name_pinfo->pshm_hdr.pshm_na… in shm_unlink() [all …]
|
| H A D | kern_ktrace.c | 261 return kauth_cred_issuser(kauth_cred_get()) ? 0 : EPERM; in ktrace_read_check() 315 if (!kauth_cred_issuser(kauth_cred_get())) { in ktrace_configure() 382 if ((err = priv_check_cred(kauth_cred_get(), PRIV_KTRACE_BACKGROUND, 0))) { in ktrace_init_background() 530 if (!kauth_cred_issuser(kauth_cred_get())) {
|
| H A D | posix_sem.c | 335 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in psem_cache_purge_all() 545 error = mac_posixsem_check_create(kauth_cred_get(), nameptr); in sem_open() 549 mac_posixsem_label_associate(kauth_cred_get(), pinfo, nameptr); in sem_open() 564 error = mac_posixsem_check_open(kauth_cred_get(), pinfo); in sem_open() 569 if ((error = psem_access(pinfo, fmode, kauth_cred_get()))) { in sem_open() 762 error = mac_posixsem_check_unlink(kauth_cred_get(), pinfo, nameptr); in sem_unlink() 768 if ((error = psem_access(pinfo, pinfo->psem_mode, kauth_cred_get()))) { in sem_unlink() 837 error = mac_posixsem_check_wait(kauth_cred_get(), pinfo); in sem_wait_nocancel() 896 error = mac_posixsem_check_wait(kauth_cred_get(), pinfo); in sem_trywait() 959 error = mac_posixsem_check_post(kauth_cred_get(), pinfo); in sem_post()
|
| H A D | kern_sfi.c | 81 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_ctl() 122 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_ctl() 205 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_pidctl()
|
| H A D | stackshot.c | 114 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in stack_snapshot_with_config() 160 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in microstackshot()
|
| H A D | sysv_msg.c | 377 kauth_cred_t cred = kauth_cred_get(); in msgctl() 423 eval = mac_sysvmsq_check_msqctl(kauth_cred_get(), msqptr, cmd); in msgctl() 451 eval = mac_sysvmsq_check_msgrmid(kauth_cred_get(), msghdr); in msgctl() 586 kauth_cred_t cred = kauth_cred_get(); in msgget() 764 if ((eval = ipcperm(kauth_cred_get(), &msqptr->u.msg_perm, IPC_W))) { in msgsnd_nocancel() 772 eval = mac_sysvmsq_check_msqsnd(kauth_cred_get(), msqptr); in msgsnd_nocancel() 946 mac_sysvmsg_label_associate(kauth_cred_get(), msqptr, msghdr); in msgsnd_nocancel() 1096 eval = mac_sysvmsq_check_enqueue(kauth_cred_get(), msghdr, msqptr); in msgsnd_nocancel() 1194 if ((eval = ipcperm(kauth_cred_get(), &msqptr->u.msg_perm, IPC_R))) { in msgrcv_nocancel() 1202 eval = mac_sysvmsq_check_msqrcv(kauth_cred_get(), msqptr); in msgrcv_nocancel() [all …]
|
| H A D | kern_priv.c | 133 return priv_check_cred(kauth_cred_get(), PRIV_VM_FOOTPRINT_LIMIT, 0); in proc_check_footprint_priv()
|
| H A D | kern_ecc.c | 47 if (priv_check_cred(kauth_cred_get(), PRIV_HW_DEBUG_DATA, 0) != 0) { in get_ecc_data_handler()
|
| H A D | kern_resource.c | 242 uap->who = kauth_cred_getuid(kauth_cred_get()); in getpriority() 433 uap->who = kauth_cred_getuid(kauth_cred_get()); in setpriority() 584 ucred = kauth_cred_get(); in set_gpudeny_proc() 633 ucred = kauth_cred_get(); in proc_set_darwin_role() 687 ucred = kauth_cred_get(); in proc_get_darwin_role() 722 ucred = kauth_cred_get(); in get_background_proc() 753 ucred = kauth_cred_get(); in do_background_proc() 985 error = suser(kauth_cred_get(), &p->p_acflag); in dosetrlimit() 1173 if (kauth_cred_issuser(kauth_cred_get())) { in dosetrlimit() 1853 if (0 == kauth_cred_issuser(kauth_cred_get())) { in iopolicysys_vfs_hfs_case_sensitivity() [all …]
|
| H A D | sys_persona.c | 283 if (!kauth_cred_issuser(kauth_cred_get()) && in kpersona_getpath_syscall() 324 if (!kauth_cred_issuser(kauth_cred_get()) && in kpersona_info_syscall() 376 if (!kauth_cred_issuser(kauth_cred_get()) in kpersona_pidinfo_syscall()
|
| H A D | kern_ntptime.c | 355 error = mac_system_check_settime(kauth_cred_get()); in ntp_adjtime() 360 if ((error = priv_check_cred(kauth_cred_get(), PRIV_ADJTIME, 0))) { in ntp_adjtime() 719 error = mac_system_check_settime(kauth_cred_get()); in adjtime() 724 if ((error = priv_check_cred(kauth_cred_get(), PRIV_ADJTIME, 0))) { in adjtime()
|
| H A D | sysv_shm.c | 360 shmdtret = mac_sysvshm_check_shmdt(kauth_cred_get(), shmsegptr); in shmdt() 436 error = ipcperm(kauth_cred_get(), &shmseg->u.shm_perm, in shmat() 444 error = mac_sysvshm_check_shmat(kauth_cred_get(), shmseg, uap->shmflg); in shmat() 596 kauth_cred_t cred = kauth_cred_get(); in shmctl() 746 error = mac_sysvshm_check_shmget(kauth_cred_get(), shmseg, uap->shmflg); in shmget_existing() 769 kauth_cred_t cred = kauth_cred_get(); in shmget_allocate_segment()
|
| H A D | kern_xxx.c | 111 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in reboot()
|
| H A D | uipc_syscalls.c | 241 if ((error = mac_socket_check_create(kauth_cred_get(), domain, in socket_common() 248 error = priv_check_cred(kauth_cred_get(), in socket_common() 339 (error = mac_socket_check_bind(kauth_cred_get(), so, sa)) == 0) { in bind() 378 error = mac_socket_check_listen(kauth_cred_get(), so); in listen() 443 if ((error = mac_socket_check_accept(kauth_cred_get(), head)) != 0) { in accept_nocancel() 536 if ((error = mac_socket_check_accepted(kauth_cred_get(), so)) != 0) { in accept_nocancel() 949 if ((error = mac_socket_check_connect(kauth_cred_get(), so, sa)) != 0) { in connectit() 1005 if ((error = mac_socket_check_connect(kauth_cred_get(), so, dst)) != 0) { in connectitx() 1010 if ((error = mac_socket_check_send(kauth_cred_get(), so, dst)) != 0) { in connectitx() 1293 (error = mac_socket_check_send(kauth_cred_get(), so, to)) != 0) { in sendit() [all …]
|
| H A D | sys_socket.c | 171 error = mac_socket_check_ioctl(kauth_cred_get(), so, cmd); in soioctl() 361 ret = mac_socket_check_stat(kauth_cred_get(), so); in soo_stat()
|
| H A D | mach_process.c | 156 if (kauth_cred_issuser(kauth_cred_get())) { in ptrace() 260 err = kauth_authorize_process(kauth_cred_get(), KAUTH_PROCESS_CANTRACE, in ptrace()
|
| H A D | sys_pipe.c | 438 mac_pipe_label_associate(kauth_cred_get(), rpipe); in pipe() 472 error = mac_pipe_check_stat(kauth_cred_get(), cpipe); in pipe_stat() 766 error = mac_pipe_check_read(kauth_cred_get(), rpipe); in pipe_read() 939 error = mac_pipe_check_write(kauth_cred_get(), wpipe); in pipe_write() 1198 error = mac_pipe_check_ioctl(kauth_cred_get(), mpipe, cmd); in pipe_ioctl() 1684 error = mac_pipe_check_stat(kauth_cred_get(), cpipe); in fill_pipeinfo()
|
| H A D | sys_work_interval.c | 69 if ((error = priv_check_cred(kauth_cred_get(), PRIV_WORK_INTERVAL, 0)) != 0) { in work_interval_ctl()
|
| H A D | kern_overrides.c | 104 if ((error = priv_check_cred(kauth_cred_get(), PRIV_SYSTEM_OVERRIDE, 0))) { in system_override()
|
| H A D | process_policy.c | 141 my_cred = kauth_cred_get(); in process_policy() 290 privileged = (priv_check_cred(kauth_cred_get(), PRIV_PROC_CPUMON_OVERRIDE, 0) == 0); in handle_cpuuse()
|
| /xnu-8020.140.41/bsd/security/audit/ |
| H A D | audit_syscalls.c | 173 error = suser(kauth_cred_get(), &p->p_acflag); in audit() 245 error = mac_system_check_audit(kauth_cred_get(), rec, uap->length); in audit() 378 error = mac_system_check_auditon(kauth_cred_get(), uap->cmd); in auditon() 438 } else if (!kauth_cred_issuser(kauth_cred_get())) { in auditon() 457 error = suser(kauth_cred_get(), &p->p_acflag); in auditon() 880 bcopy(&(kauth_cred_get()->cr_audit.as_aia_p->ai_flags), in auditon() 888 bcopy(kauth_cred_get()->cr_audit.as_aia_p, &aia, sizeof(aia)); in auditon() 1171 error = suser(kauth_cred_get(), &p->p_acflag); in auditctl() 1218 error = mac_system_check_auditctl(kauth_cred_get(), vp); in auditctl()
|
| /xnu-8020.140.41/bsd/pgo/ |
| H A D | profile_runtime.c | 164 if (!kauth_cred_issuser(kauth_cred_get())) { in grab_pgo_data() 170 err = mac_system_check_info(kauth_cred_get(), "kern.profiling_data"); in grab_pgo_data()
|
| /xnu-8020.140.41/bsd/vm/ |
| H A D | dp_backing_file.c | 130 if ((error = suser(kauth_cred_get(), 0))) { in macx_backing_store_compaction()
|
| H A D | vm_unix.c | 801 mycred = kauth_cred_get(); in task_for_pid_posix_check() 947 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_CONTROL); in task_for_pid() 955 if (!kauth_cred_issuser(kauth_cred_get()) && in task_for_pid() 1071 || kauth_cred_issuser(kauth_cred_get()) in task_name_for_pid() 1072 || ((kauth_cred_getuid(target_cred) == kauth_cred_getuid(kauth_cred_get())) && in task_name_for_pid() 1083 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_NAME); in task_name_for_pid() 1185 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_INSPECT); in task_inspect_for_pid() 1193 if (!kauth_cred_issuser(kauth_cred_get()) && in task_inspect_for_pid() 1307 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_READ); in task_read_for_pid() 1315 if (!kauth_cred_issuser(kauth_cred_get()) && in task_read_for_pid() [all …]
|