capability.h revision 1.2.2.2 1 1.2.2.2 ad /* $NetBSD: capability.h,v 1.2.2.2 2020/02/29 20:20:17 ad Exp $ */
2 1.2.2.2 ad
3 1.2.2.2 ad /*-
4 1.2.2.2 ad * Copyright (c) 2020 The NetBSD Foundation, Inc.
5 1.2.2.2 ad * All rights reserved.
6 1.2.2.2 ad *
7 1.2.2.2 ad * Redistribution and use in source and binary forms, with or without
8 1.2.2.2 ad * modification, are permitted provided that the following conditions
9 1.2.2.2 ad * are met:
10 1.2.2.2 ad * 1. Redistributions of source code must retain the above copyright
11 1.2.2.2 ad * notice, this list of conditions and the following disclaimer.
12 1.2.2.2 ad * 2. Redistributions in binary form must reproduce the above copyright
13 1.2.2.2 ad * notice, this list of conditions and the following disclaimer in the
14 1.2.2.2 ad * documentation and/or other materials provided with the distribution.
15 1.2.2.2 ad *
16 1.2.2.2 ad * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
17 1.2.2.2 ad * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
18 1.2.2.2 ad * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
19 1.2.2.2 ad * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
20 1.2.2.2 ad * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
21 1.2.2.2 ad * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
22 1.2.2.2 ad * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
23 1.2.2.2 ad * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
24 1.2.2.2 ad * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
25 1.2.2.2 ad * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
26 1.2.2.2 ad * POSSIBILITY OF SUCH DAMAGE.
27 1.2.2.2 ad */
28 1.2.2.2 ad
29 1.2.2.2 ad #ifndef _LINUX_CAPABILITY_H_
30 1.2.2.2 ad #define _LINUX_CAPABILITY_H_
31 1.2.2.2 ad
32 1.2.2.2 ad #include <sys/kauth.h>
33 1.2.2.2 ad
34 1.2.2.2 ad enum linux_capability {
35 1.2.2.2 ad LINUX_CAP_SYS_ADMIN,
36 1.2.2.2 ad #define CAP_SYS_ADMIN LINUX_CAP_SYS_ADMIN
37 1.2.2.2 ad };
38 1.2.2.2 ad
39 1.2.2.2 ad static inline bool
40 1.2.2.2 ad capable(enum linux_capability cap)
41 1.2.2.2 ad {
42 1.2.2.2 ad
43 1.2.2.2 ad KASSERT(cap == CAP_SYS_ADMIN);
44 1.2.2.2 ad return kauth_authorize_generic(kauth_cred_get(), KAUTH_GENERIC_ISSUSER,
45 1.2.2.2 ad NULL) == 0;
46 1.2.2.2 ad }
47 1.2.2.2 ad
48 1.2.2.2 ad #endif /* _LINUX_CAPABILITY_H_ */
49