| /xnu-10002.1.13/security/ |
| H A D | mac_skywalk.c | 41 MAC_CHECK(skywalk_flow_check_connect, kauth_cred_get(), flow, addr, type, protocol); in mac_skywalk_flow_check_connect() 51 MAC_CHECK(skywalk_flow_check_listen, kauth_cred_get(), flow, addr, type, protocol); in mac_skywalk_flow_check_listen()
|
| /xnu-10002.1.13/bsd/kern/ |
| H A D | posix_shm.c | 272 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in pshm_cache_purge_all() 292 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in pshm_cache_purge_uid() 406 error = mac_posixshm_check_create(kauth_cred_get(), new_pinfo->pshm_hdr.pshm_name); in shm_open() 468 if ((error = mac_posixshm_check_open(kauth_cred_get(), &pinfo->pshm_hdr, fmode))) { in shm_open() 472 if ((error = pshm_access(pinfo, fmode, kauth_cred_get(), p))) { in shm_open() 477 mac_posixshm_label_associate(kauth_cred_get(), &pinfo->pshm_hdr, pinfo->pshm_hdr.pshm_name); in shm_open() 587 error = mac_posixshm_check_truncate(kauth_cred_get(), &pinfo->pshm_hdr, length); in pshm_truncate() 688 error = mac_posixshm_check_stat(kauth_cred_get(), &pinfo->pshm_hdr); in pshm_stat() 818 error = mac_posixshm_check_mmap(kauth_cred_get(), &pinfo->pshm_hdr, prot, flags); in pshm_mmap() 982 …error = mac_posixshm_check_unlink(kauth_cred_get(), &pinfo->pshm_hdr, name_pinfo->pshm_hdr.pshm_na… in shm_unlink() [all …]
|
| H A D | posix_sem.c | 335 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in psem_cache_purge_all() 545 error = mac_posixsem_check_create(kauth_cred_get(), nameptr); in sem_open() 549 mac_posixsem_label_associate(kauth_cred_get(), pinfo, nameptr); in sem_open() 564 error = mac_posixsem_check_open(kauth_cred_get(), pinfo); in sem_open() 569 if ((error = psem_access(pinfo, fmode, kauth_cred_get()))) { in sem_open() 762 error = mac_posixsem_check_unlink(kauth_cred_get(), pinfo, nameptr); in sem_unlink() 768 if ((error = psem_access(pinfo, pinfo->psem_mode, kauth_cred_get()))) { in sem_unlink() 837 error = mac_posixsem_check_wait(kauth_cred_get(), pinfo); in sem_wait_nocancel() 896 error = mac_posixsem_check_wait(kauth_cred_get(), pinfo); in sem_trywait() 959 error = mac_posixsem_check_post(kauth_cred_get(), pinfo); in sem_post()
|
| H A D | kern_sfi.c | 81 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_ctl() 122 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_ctl() 205 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_pidctl()
|
| H A D | sysv_msg.c | 377 kauth_cred_t cred = kauth_cred_get(); in msgctl() 423 eval = mac_sysvmsq_check_msqctl(kauth_cred_get(), msqptr, cmd); in msgctl() 451 eval = mac_sysvmsq_check_msgrmid(kauth_cred_get(), msghdr); in msgctl() 586 kauth_cred_t cred = kauth_cred_get(); in msgget() 764 if ((eval = ipcperm(kauth_cred_get(), &msqptr->u.msg_perm, IPC_W))) { in msgsnd_nocancel() 772 eval = mac_sysvmsq_check_msqsnd(kauth_cred_get(), msqptr); in msgsnd_nocancel() 946 mac_sysvmsg_label_associate(kauth_cred_get(), msqptr, msghdr); in msgsnd_nocancel() 1096 eval = mac_sysvmsq_check_enqueue(kauth_cred_get(), msghdr, msqptr); in msgsnd_nocancel() 1194 if ((eval = ipcperm(kauth_cred_get(), &msqptr->u.msg_perm, IPC_R))) { in msgrcv_nocancel() 1202 eval = mac_sysvmsq_check_msqrcv(kauth_cred_get(), msqptr); in msgrcv_nocancel() [all …]
|
| H A D | kern_ktrace.c | 277 bool is_superuser = kauth_cred_issuser(kauth_cred_get()); in _current_task_can_own_ktrace() 417 if ((err = priv_check_cred(kauth_cred_get(), PRIV_KTRACE_BACKGROUND, 0))) { in ktrace_init_background() 575 if (!kauth_cred_issuser(kauth_cred_get())) {
|
| H A D | kern_resource.c | 244 uap->who = kauth_cred_getuid(kauth_cred_get()); in getpriority() 457 uap->who = kauth_cred_getuid(kauth_cred_get()); in setpriority() 629 ucred = kauth_cred_get(); in set_gpudeny_proc() 678 ucred = kauth_cred_get(); in proc_set_darwin_role() 732 ucred = kauth_cred_get(); in proc_get_darwin_role() 768 ucred = kauth_cred_get(); in proc_set_game_mode() 809 ucred = kauth_cred_get(); in proc_get_game_mode() 848 ucred = kauth_cred_get(); in get_background_proc() 879 ucred = kauth_cred_get(); in do_background_proc() 1111 error = suser(kauth_cred_get(), &p->p_acflag); in dosetrlimit() [all …]
|
| H A D | kern_priv.c | 133 return priv_check_cred(kauth_cred_get(), PRIV_VM_FOOTPRINT_LIMIT, 0); in proc_check_footprint_priv()
|
| H A D | kern_ecc.c | 47 if (priv_check_cred(kauth_cred_get(), PRIV_HW_DEBUG_DATA, 0) != 0) { in get_ecc_data_handler()
|
| H A D | sys_persona.c | 285 if (!kauth_cred_issuser(kauth_cred_get()) && in kpersona_getpath_syscall() 343 if (!kauth_cred_issuser(kauth_cred_get()) && in kpersona_info_syscall() 380 if (!kauth_cred_issuser(kauth_cred_get()) in kpersona_pidinfo_syscall()
|
| H A D | kern_ntptime.c | 355 error = mac_system_check_settime(kauth_cred_get()); in ntp_adjtime() 360 if ((error = priv_check_cred(kauth_cred_get(), PRIV_ADJTIME, 0))) { in ntp_adjtime() 718 error = mac_system_check_settime(kauth_cred_get()); in adjtime() 723 if ((error = priv_check_cred(kauth_cred_get(), PRIV_ADJTIME, 0))) { in adjtime()
|
| H A D | sysv_shm.c | 360 shmdtret = mac_sysvshm_check_shmdt(kauth_cred_get(), shmsegptr); in shmdt() 436 error = ipcperm(kauth_cred_get(), &shmseg->u.shm_perm, in shmat() 444 error = mac_sysvshm_check_shmat(kauth_cred_get(), shmseg, uap->shmflg); in shmat() 592 kauth_cred_t cred = kauth_cred_get(); in shmctl() 742 error = mac_sysvshm_check_shmget(kauth_cred_get(), shmseg, uap->shmflg); in shmget_existing() 765 kauth_cred_t cred = kauth_cred_get(); in shmget_allocate_segment()
|
| H A D | stackshot.c | 413 if (suser(kauth_cred_get(), &self->p_acflag) != 0 && 516 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in stack_snapshot_with_config() 584 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in microstackshot()
|
| H A D | sys_socket.c | 171 error = mac_socket_check_ioctl(kauth_cred_get(), so, cmd); in soioctl() 361 ret = mac_socket_check_stat(kauth_cred_get(), so); in soo_stat()
|
| H A D | mach_process.c | 156 if (kauth_cred_issuser(kauth_cred_get())) { in ptrace() 272 err = kauth_authorize_process(kauth_cred_get(), KAUTH_PROCESS_CANTRACE, in ptrace()
|
| H A D | sys_pipe.c | 438 mac_pipe_label_associate(kauth_cred_get(), rpipe); in pipe() 472 error = mac_pipe_check_stat(kauth_cred_get(), cpipe); in pipe_stat() 766 error = mac_pipe_check_read(kauth_cred_get(), rpipe); in pipe_read() 939 error = mac_pipe_check_write(kauth_cred_get(), wpipe); in pipe_write() 1198 error = mac_pipe_check_ioctl(kauth_cred_get(), mpipe, cmd); in pipe_ioctl() 1684 error = mac_pipe_check_stat(kauth_cred_get(), cpipe); in fill_pipeinfo()
|
| H A D | uipc_syscalls.c | 290 if ((error = mac_socket_check_create(kauth_cred_get(), domain, in socket_common() 297 error = priv_check_cred(kauth_cred_get(), in socket_common() 388 (error = mac_socket_check_bind(kauth_cred_get(), so, sa)) == 0) { in bind() 427 error = mac_socket_check_listen(kauth_cred_get(), so); in listen() 493 if ((error = mac_socket_check_accept(kauth_cred_get(), head)) != 0) { in accept_nocancel() 598 if ((error = mac_socket_check_accepted(kauth_cred_get(), so)) != 0) { in accept_nocancel() 1015 if ((error = mac_socket_check_connect(kauth_cred_get(), so, sa)) != 0) { in connectit() 1071 if ((error = mac_socket_check_connect(kauth_cred_get(), so, dst)) != 0) { in connectitx() 1076 if ((error = mac_socket_check_send(kauth_cred_get(), so, dst)) != 0) { in connectitx() 1359 (error = mac_socket_check_send(kauth_cred_get(), so, to)) != 0) { in sendit() [all …]
|
| H A D | kern_overrides.c | 104 if ((error = priv_check_cred(kauth_cred_get(), PRIV_SYSTEM_OVERRIDE, 0))) { in system_override()
|
| H A D | kern_xxx.c | 117 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in reboot()
|
| /xnu-10002.1.13/bsd/security/audit/ |
| H A D | audit_syscalls.c | 173 error = suser(kauth_cred_get(), &p->p_acflag); in audit() 245 error = mac_system_check_audit(kauth_cred_get(), rec, uap->length); in audit() 378 error = mac_system_check_auditon(kauth_cred_get(), uap->cmd); in auditon() 438 } else if (!kauth_cred_issuser(kauth_cred_get())) { in auditon() 457 error = suser(kauth_cred_get(), &p->p_acflag); in auditon() 880 bcopy(&(kauth_cred_get()->cr_audit.as_aia_p->ai_flags), in auditon() 888 scred = kauth_cred_get(); in auditon() 1175 error = suser(kauth_cred_get(), &p->p_acflag); in auditctl() 1222 error = mac_system_check_auditctl(kauth_cred_get(), vp); in auditctl()
|
| /xnu-10002.1.13/bsd/skywalk/nexus/ |
| H A D | nexus_ioctl.c | 37 if (kauth_cred_issuser(kauth_cred_get())) { in nxioctl_check_entitlement()
|
| /xnu-10002.1.13/bsd/pgo/ |
| H A D | profile_runtime.c | 164 if (!kauth_cred_issuser(kauth_cred_get())) { in grab_pgo_data() 170 err = mac_system_check_info(kauth_cred_get(), "kern.profiling_data"); in grab_pgo_data()
|
| /xnu-10002.1.13/bsd/vm/ |
| H A D | dp_backing_file.c | 130 if ((error = suser(kauth_cred_get(), 0))) { in macx_backing_store_compaction()
|
| H A D | vm_unix.c | 856 mycred = kauth_cred_get(); in task_for_pid_posix_check() 1005 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_CONTROL); in task_for_pid() 1013 if (!kauth_cred_issuser(kauth_cred_get()) && in task_for_pid() 1129 || kauth_cred_issuser(kauth_cred_get()) in task_name_for_pid() 1130 || ((kauth_cred_getuid(target_cred) == kauth_cred_getuid(kauth_cred_get())) && in task_name_for_pid() 1143 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_NAME); in task_name_for_pid() 1245 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_INSPECT); in task_inspect_for_pid() 1253 if (!kauth_cred_issuser(kauth_cred_get()) && in task_inspect_for_pid() 1367 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_READ); in task_read_for_pid() 1375 if (!kauth_cred_issuser(kauth_cred_get()) && in task_read_for_pid() [all …]
|
| /xnu-10002.1.13/bsd/net/ |
| H A D | if.c | 265 if ((error = priv_check_cred(kauth_cred_get(), 4053 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4086 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4128 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4162 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4203 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4248 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4339 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4348 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4356 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() [all …]
|