capability.h revision 1.2.6.2 1 1.2.6.2 martin /* $NetBSD: capability.h,v 1.2.6.2 2020/04/08 14:08:27 martin Exp $ */
2 1.2.6.2 martin
3 1.2.6.2 martin /*-
4 1.2.6.2 martin * Copyright (c) 2020 The NetBSD Foundation, Inc.
5 1.2.6.2 martin * All rights reserved.
6 1.2.6.2 martin *
7 1.2.6.2 martin * Redistribution and use in source and binary forms, with or without
8 1.2.6.2 martin * modification, are permitted provided that the following conditions
9 1.2.6.2 martin * are met:
10 1.2.6.2 martin * 1. Redistributions of source code must retain the above copyright
11 1.2.6.2 martin * notice, this list of conditions and the following disclaimer.
12 1.2.6.2 martin * 2. Redistributions in binary form must reproduce the above copyright
13 1.2.6.2 martin * notice, this list of conditions and the following disclaimer in the
14 1.2.6.2 martin * documentation and/or other materials provided with the distribution.
15 1.2.6.2 martin *
16 1.2.6.2 martin * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
17 1.2.6.2 martin * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
18 1.2.6.2 martin * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
19 1.2.6.2 martin * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
20 1.2.6.2 martin * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
21 1.2.6.2 martin * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
22 1.2.6.2 martin * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
23 1.2.6.2 martin * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
24 1.2.6.2 martin * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
25 1.2.6.2 martin * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
26 1.2.6.2 martin * POSSIBILITY OF SUCH DAMAGE.
27 1.2.6.2 martin */
28 1.2.6.2 martin
29 1.2.6.2 martin #ifndef _LINUX_CAPABILITY_H_
30 1.2.6.2 martin #define _LINUX_CAPABILITY_H_
31 1.2.6.2 martin
32 1.2.6.2 martin #include <sys/kauth.h>
33 1.2.6.2 martin
34 1.2.6.2 martin enum linux_capability {
35 1.2.6.2 martin LINUX_CAP_SYS_ADMIN,
36 1.2.6.2 martin #define CAP_SYS_ADMIN LINUX_CAP_SYS_ADMIN
37 1.2.6.2 martin };
38 1.2.6.2 martin
39 1.2.6.2 martin static inline bool
40 1.2.6.2 martin capable(enum linux_capability cap)
41 1.2.6.2 martin {
42 1.2.6.2 martin
43 1.2.6.2 martin KASSERT(cap == CAP_SYS_ADMIN);
44 1.2.6.2 martin return kauth_authorize_generic(kauth_cred_get(), KAUTH_GENERIC_ISSUSER,
45 1.2.6.2 martin NULL) == 0;
46 1.2.6.2 martin }
47 1.2.6.2 martin
48 1.2.6.2 martin #endif /* _LINUX_CAPABILITY_H_ */
49