xref: /linux/arch/x86/kernel/audit_64.c (revision 827634added7f38b7d724cab1dccdb2b004c13c3)
1 #include <linux/init.h>
2 #include <linux/types.h>
3 #include <linux/audit.h>
4 #include <asm/unistd.h>
5 
6 static unsigned dir_class[] = {
7 #include <asm-generic/audit_dir_write.h>
8 ~0U
9 };
10 
11 static unsigned read_class[] = {
12 #include <asm-generic/audit_read.h>
13 ~0U
14 };
15 
16 static unsigned write_class[] = {
17 #include <asm-generic/audit_write.h>
18 ~0U
19 };
20 
21 static unsigned chattr_class[] = {
22 #include <asm-generic/audit_change_attr.h>
23 ~0U
24 };
25 
26 static unsigned signal_class[] = {
27 #include <asm-generic/audit_signal.h>
28 ~0U
29 };
30 
31 int audit_classify_arch(int arch)
32 {
33 #ifdef CONFIG_IA32_EMULATION
34 	if (arch == AUDIT_ARCH_I386)
35 		return 1;
36 #endif
37 	return 0;
38 }
39 
40 int audit_classify_syscall(int abi, unsigned syscall)
41 {
42 #ifdef CONFIG_IA32_EMULATION
43 	extern int ia32_classify_syscall(unsigned);
44 	if (abi == AUDIT_ARCH_I386)
45 		return ia32_classify_syscall(syscall);
46 #endif
47 	switch(syscall) {
48 	case __NR_open:
49 		return 2;
50 	case __NR_openat:
51 		return 3;
52 	case __NR_execve:
53 	case __NR_execveat:
54 		return 5;
55 	default:
56 		return 0;
57 	}
58 }
59 
60 static int __init audit_classes_init(void)
61 {
62 #ifdef CONFIG_IA32_EMULATION
63 	extern __u32 ia32_dir_class[];
64 	extern __u32 ia32_write_class[];
65 	extern __u32 ia32_read_class[];
66 	extern __u32 ia32_chattr_class[];
67 	extern __u32 ia32_signal_class[];
68 	audit_register_class(AUDIT_CLASS_WRITE_32, ia32_write_class);
69 	audit_register_class(AUDIT_CLASS_READ_32, ia32_read_class);
70 	audit_register_class(AUDIT_CLASS_DIR_WRITE_32, ia32_dir_class);
71 	audit_register_class(AUDIT_CLASS_CHATTR_32, ia32_chattr_class);
72 	audit_register_class(AUDIT_CLASS_SIGNAL_32, ia32_signal_class);
73 #endif
74 	audit_register_class(AUDIT_CLASS_WRITE, write_class);
75 	audit_register_class(AUDIT_CLASS_READ, read_class);
76 	audit_register_class(AUDIT_CLASS_DIR_WRITE, dir_class);
77 	audit_register_class(AUDIT_CLASS_CHATTR, chattr_class);
78 	audit_register_class(AUDIT_CLASS_SIGNAL, signal_class);
79 	return 0;
80 }
81 
82 __initcall(audit_classes_init);
83