apparmor: allow introspecting the loaded policy pre internal transform
authorJohn Johansen <john.johansen@canonical.com>
Mon, 16 Jan 2017 08:42:55 +0000 (00:42 -0800)
committerJohn Johansen <john.johansen@canonical.com>
Mon, 16 Jan 2017 09:18:42 +0000 (01:18 -0800)
commit5ac8c355ae0013d82b3a07b49aebeadfce9b6e52
tree41f24f5f9198ef4ba7a34624938e51b2305e21f0
parentfc1c9fd10a53a17abb3348adb2ec5d29813a0397
apparmor: allow introspecting the loaded policy pre internal transform

Store loaded policy and allow introspecting it through apparmorfs. This
has several uses from debugging, policy validation, and policy checkpoint
and restore for containers.

Signed-off-by: John Johansen <john.johansen@canonical.com>
security/apparmor/apparmorfs.c
security/apparmor/crypto.c
security/apparmor/include/apparmorfs.h
security/apparmor/include/crypto.h
security/apparmor/include/policy.h
security/apparmor/include/policy_unpack.h
security/apparmor/policy.c
security/apparmor/policy_unpack.c