kernel: Only expose su when daemon is running
[GitHub/mt8127/android_kernel_alcatel_ttab.git] / include / linux / uidgid.h
CommitLineData
7a4e7408
EB
1#ifndef _LINUX_UIDGID_H
2#define _LINUX_UIDGID_H
3
4/*
5 * A set of types for the internal kernel types representing uids and gids.
6 *
7 * The types defined in this header allow distinguishing which uids and gids in
8 * the kernel are values used by userspace and which uid and gid values are
9 * the internal kernel values. With the addition of user namespaces the values
10 * can be different. Using the type system makes it possible for the compiler
11 * to detect when we overlook these differences.
12 *
13 */
14#include <linux/types.h>
15#include <linux/highuid.h>
16
17struct user_namespace;
18extern struct user_namespace init_user_ns;
19
5673a94c 20#ifdef CONFIG_UIDGID_STRICT_TYPE_CHECKS
7a4e7408
EB
21
22typedef struct {
23 uid_t val;
24} kuid_t;
25
26
27typedef struct {
28 gid_t val;
29} kgid_t;
30
31#define KUIDT_INIT(value) (kuid_t){ value }
32#define KGIDT_INIT(value) (kgid_t){ value }
33
34static inline uid_t __kuid_val(kuid_t uid)
35{
36 return uid.val;
37}
38
39static inline gid_t __kgid_val(kgid_t gid)
40{
41 return gid.val;
42}
43
44#else
45
46typedef uid_t kuid_t;
47typedef gid_t kgid_t;
48
49static inline uid_t __kuid_val(kuid_t uid)
50{
51 return uid;
52}
53
54static inline gid_t __kgid_val(kgid_t gid)
55{
56 return gid;
57}
58
59#define KUIDT_INIT(value) ((kuid_t) value )
60#define KGIDT_INIT(value) ((kgid_t) value )
61
62#endif
63
64#define GLOBAL_ROOT_UID KUIDT_INIT(0)
65#define GLOBAL_ROOT_GID KGIDT_INIT(0)
66
672c40a1
TM
67#define GLOBAL_SYSTEM_UID KUIDT_INIT(1000)
68#define GLOBAL_SYSTEM_GID KGIDT_INIT(1000)
69
7a4e7408
EB
70#define INVALID_UID KUIDT_INIT(-1)
71#define INVALID_GID KGIDT_INIT(-1)
72
73static inline bool uid_eq(kuid_t left, kuid_t right)
74{
75 return __kuid_val(left) == __kuid_val(right);
76}
77
78static inline bool gid_eq(kgid_t left, kgid_t right)
79{
80 return __kgid_val(left) == __kgid_val(right);
81}
82
83static inline bool uid_gt(kuid_t left, kuid_t right)
84{
85 return __kuid_val(left) > __kuid_val(right);
86}
87
88static inline bool gid_gt(kgid_t left, kgid_t right)
89{
90 return __kgid_val(left) > __kgid_val(right);
91}
92
93static inline bool uid_gte(kuid_t left, kuid_t right)
94{
95 return __kuid_val(left) >= __kuid_val(right);
96}
97
98static inline bool gid_gte(kgid_t left, kgid_t right)
99{
100 return __kgid_val(left) >= __kgid_val(right);
101}
102
103static inline bool uid_lt(kuid_t left, kuid_t right)
104{
105 return __kuid_val(left) < __kuid_val(right);
106}
107
108static inline bool gid_lt(kgid_t left, kgid_t right)
109{
110 return __kgid_val(left) < __kgid_val(right);
111}
112
113static inline bool uid_lte(kuid_t left, kuid_t right)
114{
115 return __kuid_val(left) <= __kuid_val(right);
116}
117
118static inline bool gid_lte(kgid_t left, kgid_t right)
119{
120 return __kgid_val(left) <= __kgid_val(right);
121}
122
123static inline bool uid_valid(kuid_t uid)
124{
125 return !uid_eq(uid, INVALID_UID);
126}
127
128static inline bool gid_valid(kgid_t gid)
129{
130 return !gid_eq(gid, INVALID_GID);
131}
132
22d917d8
EB
133#ifdef CONFIG_USER_NS
134
135extern kuid_t make_kuid(struct user_namespace *from, uid_t uid);
136extern kgid_t make_kgid(struct user_namespace *from, gid_t gid);
137
138extern uid_t from_kuid(struct user_namespace *to, kuid_t uid);
139extern gid_t from_kgid(struct user_namespace *to, kgid_t gid);
140extern uid_t from_kuid_munged(struct user_namespace *to, kuid_t uid);
141extern gid_t from_kgid_munged(struct user_namespace *to, kgid_t gid);
142
143static inline bool kuid_has_mapping(struct user_namespace *ns, kuid_t uid)
144{
145 return from_kuid(ns, uid) != (uid_t) -1;
146}
147
148static inline bool kgid_has_mapping(struct user_namespace *ns, kgid_t gid)
149{
150 return from_kgid(ns, gid) != (gid_t) -1;
151}
152
153#else
154
7a4e7408
EB
155static inline kuid_t make_kuid(struct user_namespace *from, uid_t uid)
156{
157 return KUIDT_INIT(uid);
158}
159
160static inline kgid_t make_kgid(struct user_namespace *from, gid_t gid)
161{
162 return KGIDT_INIT(gid);
163}
164
165static inline uid_t from_kuid(struct user_namespace *to, kuid_t kuid)
166{
167 return __kuid_val(kuid);
168}
169
170static inline gid_t from_kgid(struct user_namespace *to, kgid_t kgid)
171{
172 return __kgid_val(kgid);
173}
174
175static inline uid_t from_kuid_munged(struct user_namespace *to, kuid_t kuid)
176{
177 uid_t uid = from_kuid(to, kuid);
178 if (uid == (uid_t)-1)
179 uid = overflowuid;
180 return uid;
181}
182
183static inline gid_t from_kgid_munged(struct user_namespace *to, kgid_t kgid)
184{
185 gid_t gid = from_kgid(to, kgid);
186 if (gid == (gid_t)-1)
187 gid = overflowgid;
188 return gid;
189}
190
191static inline bool kuid_has_mapping(struct user_namespace *ns, kuid_t uid)
192{
193 return true;
194}
195
196static inline bool kgid_has_mapping(struct user_namespace *ns, kgid_t gid)
197{
198 return true;
199}
200
22d917d8
EB
201#endif /* CONFIG_USER_NS */
202
7a4e7408 203#endif /* _LINUX_UIDGID_H */