Lines Matching full:permitted
169 * Determine whether the nominated task is permitted to trace the current
196 * @permitted: The place to record the permitted set
202 kernel_cap_t *inheritable, kernel_cap_t *permitted) in cap_capget() argument
211 *permitted = cred->cap_permitted; in cap_capget()
218 * permitted set. Returns 1 if they are limited, 0 if they are not.
237 * @permitted: A pointer to the proposed new permitted capabilities set
247 const kernel_cap_t *permitted) in cap_capset() argument
262 /* verify restrictions on target's new Permitted set */ in cap_capset()
263 if (!cap_issubset(*permitted, old->cap_permitted)) in cap_capset()
267 if (!cap_issubset(*effective, *permitted)) in cap_capset()
272 new->cap_permitted = *permitted; in cap_capset()
275 * Mask off ambient bits that are no longer both permitted and in cap_capset()
279 cap_intersect(*permitted, in cap_capset()
606 (new->cap_bset.val & caps->permitted.val) | in bprm_caps_from_vfs_caps()
609 if (caps->permitted.val & ~new->cap_permitted.val) in bprm_caps_from_vfs_caps()
616 * missing some "forced" (aka file-permitted) capabilities. in bprm_caps_from_vfs_caps()
699 cpu_caps->permitted.val = le32_to_cpu(caps->data[0].permitted); in get_vfs_caps_from_disk()
707 cpu_caps->permitted.val += (u64)le32_to_cpu(caps->data[1].permitted) << 32; in get_vfs_caps_from_disk()
711 cpu_caps->permitted.val &= CAP_VALID_MASK; in get_vfs_caps_from_disk()
867 __cap_gained(permitted, new, old)) || in nonroot_raised_pE()
907 if (__cap_gained(permitted, new, old)) in cap_bprm_creds_from_file()
917 if ((is_setid || __cap_gained(permitted, new, old)) && in cap_bprm_creds_from_file()
970 __cap_grew(permitted, ambient, new)))) in cap_bprm_creds_from_file()
1057 * cap_emulate_setxuid() fixes the effective / permitted capabilities of
1061 * {r,e,s}uid != 0, the permitted and effective capabilities are
1068 * capabilities are set to the permitted capabilities.
1077 * calls setuid() and switches away from uid==0. Both permitted and
1188 * cap_task_setscheduler - Determine if scheduler policy change is permitted
1191 * Determine if the requested scheduler policy change is permitted for the
1202 * cap_task_setioprio - Determine if I/O priority change is permitted
1206 * Determine if the requested I/O priority change is permitted for the specified
1217 * cap_task_setnice - Determine if task priority change is permitted
1221 * Determine if the requested task priority change is permitted for the
1392 * cap_vm_enough_memory - Determine whether a new virtual mapping is permitted
1397 * task is permitted.