/usr/include/rsbac/um.h is in librsbac-dev 1.4.0-repack-0ubuntu3.
This file is owned by root:root, with mode 0o644.
The actual contents of the file can be viewed below.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 | /************************************ */
/* Rule Set Based Access Control */
/* Author and (c) 1999-2007: */
/* Amon Ott <ao@rsbac.org> */
/* API: Data structures */
/* and functions for User Management */
/* Last modified: 20/Sep/2007 */
/************************************ */
#ifndef __RSBAC_UM_H
#define __RSBAC_UM_H
#include <linux/init.h>
#include <rsbac/types.h>
#include <rsbac/um_types.h>
/***************************************************/
/* General Prototypes */
/***************************************************/
/* All functions return 0, if no error occurred, and a negative error code */
/* otherwise. The error codes are defined in rsbac_error.h. */
/****************************************************************************/
/* Initialization, including ACI restoration for all mounted devices from */
/* disk. After this call, all ACI is kept in memory for performance reasons,*/
/* but user and file/dir object ACI are written to disk on every change. */
#ifdef CONFIG_RSBAC_INIT_DELAY
extern int rsbac_init_um(void);
#else
extern int rsbac_init_um(void) __init;
#endif
/* Some information about the current status is also available */
extern int rsbac_stats_um(void);
/************************************************* */
/* Access functions */
/************************************************* */
/* Trying to access a never created or removed user entry returns an error! */
/* rsbac_um_add_user (fills *user_p with new uid) */
int rsbac_um_add_user(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t * user_p,
struct rsbac_um_user_entry_t * entry_p,
char * pass,
rsbac_time_t ttl);
int rsbac_um_add_group(
rsbac_list_ta_number_t ta_number,
rsbac_gid_t * group_p,
struct rsbac_um_group_entry_t * entry_p,
char * pass,
rsbac_time_t ttl);
int rsbac_um_add_gm(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user,
rsbac_gid_num_t group,
rsbac_time_t ttl);
int rsbac_um_mod_user(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user,
enum rsbac_um_mod_t mod,
union rsbac_um_mod_data_t * data_p);
int rsbac_um_mod_group(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t group,
enum rsbac_um_mod_t mod,
union rsbac_um_mod_data_t * data_p);
int rsbac_um_get_user_item(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user,
enum rsbac_um_mod_t mod,
union rsbac_um_mod_data_t * data_p);
int rsbac_um_get_group_item(
rsbac_list_ta_number_t ta_number,
rsbac_gid_t group,
enum rsbac_um_mod_t mod,
union rsbac_um_mod_data_t * data_p);
int rsbac_um_user_exists(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user);
int rsbac_um_group_exists(
rsbac_list_ta_number_t ta_number,
rsbac_gid_t group);
int rsbac_um_remove_user(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user);
int rsbac_um_remove_group(
rsbac_list_ta_number_t ta_number,
rsbac_gid_t group);
int rsbac_um_remove_gm(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user,
rsbac_gid_num_t group);
int rsbac_um_get_next_user(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t old_user,
rsbac_uid_t * next_user_p);
int rsbac_um_get_user_list(
rsbac_list_ta_number_t ta_number,
rsbac_um_set_t vset,
rsbac_uid_t ** list_pp);
int rsbac_um_get_gm_list(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user,
rsbac_gid_num_t ** list_pp);
int rsbac_um_get_gm_user_list(
rsbac_list_ta_number_t ta_number,
rsbac_gid_t group,
rsbac_uid_num_t ** list_pp);
int rsbac_um_get_group_list(
rsbac_list_ta_number_t ta_number,
rsbac_um_set_t vset,
rsbac_gid_t ** list_pp);
int rsbac_um_get_user_entry(
rsbac_list_ta_number_t ta_number,
rsbac_uid_t user,
struct rsbac_um_user_entry_t * entry_p,
rsbac_time_t * ttl_p);
int rsbac_um_get_uid(
rsbac_list_ta_number_t ta_number,
char * name,
rsbac_uid_t * uid_p);
int rsbac_um_get_gid(
rsbac_list_ta_number_t ta_number,
char * name,
rsbac_gid_t * gid_p);
int rsbac_um_check_pass(rsbac_uid_t uid,
char * pass);
/* Check for good password (min length etc.) */
int rsbac_um_good_pass(rsbac_uid_t uid, char * pass);
int rsbac_um_set_pass(rsbac_uid_t uid,
char * pass);
int rsbac_um_set_group_pass(rsbac_gid_t gid,
char * pass);
int rsbac_um_check_account(rsbac_uid_t user);
#endif
|