kernel_optimize_test/security/selinux/include
Yuichi Nakamura 788e7dd4c2 SELinux: Improve read/write performance
It reduces the selinux overhead on read/write by only revalidating
permissions in selinux_file_permission if the task or inode labels have
changed or the policy has changed since the open-time check.  A new LSM
hook, security_dentry_open, is added to capture the necessary state at open
time to allow this optimization.

(see http://marc.info/?l=selinux&m=118972995207740&w=2)

Signed-off-by: Yuichi Nakamura<ynakam@hitachisoft.jp>
Acked-by: Stephen Smalley <sds@tycho.nsa.gov>
Signed-off-by: James Morris <jmorris@namei.org>
2007-10-17 08:59:31 +10:00
..
av_inherit.h
av_perm_to_string.h security: Protection for exploiting null dereference using mmap 2007-07-11 22:52:29 -04:00
av_permissions.h security: Protection for exploiting null dereference using mmap 2007-07-11 22:52:29 -04:00
avc_ss.h
avc.h SELinux: Improve read/write performance 2007-10-17 08:59:31 +10:00
class_to_string.h security: Protection for exploiting null dereference using mmap 2007-07-11 22:52:29 -04:00
common_perm_to_string.h
conditional.h
flask.h security: Protection for exploiting null dereference using mmap 2007-07-11 22:52:29 -04:00
initial_sid_to_string.h
netif.h
netlabel.h SELinux: rename selinux_netlabel.h to netlabel.h 2007-04-26 01:35:50 -04:00
objsec.h SELinux: Improve read/write performance 2007-10-17 08:59:31 +10:00
security.h selinux: add selinuxfs structure for object class discovery 2007-07-11 22:52:20 -04:00
xfrm.h [SELINUX]: Fix 2.6.20-rc6 build when no xfrm 2007-01-26 19:03:48 -08:00