1 /* 2 * Copyright (C) 2005-2010 IBM Corporation 3 * 4 * Authors: 5 * Mimi Zohar <zohar@us.ibm.com> 6 * Kylene Hall <kjhall@us.ibm.com> 7 * 8 * This program is free software; you can redistribute it and/or modify 9 * it under the terms of the GNU General Public License as published by 10 * the Free Software Foundation, version 2 of the License. 11 * 12 * File: evm.h 13 * 14 */ 15 16 #ifndef __INTEGRITY_EVM_H 17 #define __INTEGRITY_EVM_H 18 19 #include <linux/xattr.h> 20 #include <linux/security.h> 21 22 #include "../integrity.h" 23 24 extern int evm_initialized; 25 extern char *evm_hmac; 26 extern char *evm_hash; 27 28 #define EVM_ATTR_FSUUID 0x0001 29 30 extern int evm_hmac_attrs; 31 32 extern struct crypto_shash *hmac_tfm; 33 extern struct crypto_shash *hash_tfm; 34 35 /* List of EVM protected security xattrs */ 36 extern char *evm_config_xattrnames[]; 37 38 int evm_init_key(void); 39 int evm_update_evmxattr(struct dentry *dentry, 40 const char *req_xattr_name, 41 const char *req_xattr_value, 42 size_t req_xattr_value_len); 43 int evm_calc_hmac(struct dentry *dentry, const char *req_xattr_name, 44 const char *req_xattr_value, 45 size_t req_xattr_value_len, char *digest); 46 int evm_calc_hash(struct dentry *dentry, const char *req_xattr_name, 47 const char *req_xattr_value, 48 size_t req_xattr_value_len, char *digest); 49 int evm_init_hmac(struct inode *inode, const struct xattr *xattr, 50 char *hmac_val); 51 int evm_init_secfs(void); 52 53 #endif 54