Date: Tue, 29 Dec 2009 17:31:52 +0000 (UTC) From: Robert Watson <rwatson@FreeBSD.org> To: src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-stable@freebsd.org, svn-src-stable-7@freebsd.org Subject: svn commit: r201206 - stable/7/sys/security/mac Message-ID: <200912291731.nBTHVqho031188@svn.freebsd.org>
next in thread | raw e-mail | index | archive | help
Author: rwatson Date: Tue Dec 29 17:31:52 2009 New Revision: 201206 URL: http://svn.freebsd.org/changeset/base/201206 Log: Merge r187666 from head to stable/7: Begin to add SDT tracing of the MAC Framework: add policy modevent, register, and unregister hooks that give access to the mac_policy_conf for the policy. Obtained from: TrustedBSD Project Requested by: bz Modified: stable/7/sys/security/mac/mac_framework.c Directory Properties: stable/7/sys/ (props changed) stable/7/sys/cddl/contrib/opensolaris/ (props changed) stable/7/sys/contrib/dev/acpica/ (props changed) stable/7/sys/contrib/pf/ (props changed) Modified: stable/7/sys/security/mac/mac_framework.c ============================================================================== --- stable/7/sys/security/mac/mac_framework.c Tue Dec 29 16:01:22 2009 (r201205) +++ stable/7/sys/security/mac/mac_framework.c Tue Dec 29 17:31:52 2009 (r201206) @@ -1,5 +1,5 @@ /*- - * Copyright (c) 1999-2002, 2006 Robert N. M. Watson + * Copyright (c) 1999-2002, 2006, 2009 Robert N. M. Watson * Copyright (c) 2001 Ilmar S. Habibulin * Copyright (c) 2001-2005 Networks Associates Technology, Inc. * Copyright (c) 2005-2006 SPARTA, Inc. @@ -62,6 +62,7 @@ * src/sys/security/mac_*. */ +#include "opt_kdtrace.h" #include "opt_mac.h" #include <sys/cdefs.h> @@ -74,6 +75,7 @@ __FBSDID("$FreeBSD$"); #include <sys/mutex.h> #include <sys/mac.h> #include <sys/module.h> +#include <sys/sdt.h> #include <sys/systm.h> #include <sys/sysctl.h> @@ -82,6 +84,24 @@ __FBSDID("$FreeBSD$"); #include <security/mac/mac_policy.h> /* + * DTrace SDT provider for MAC. + */ +SDT_PROVIDER_DEFINE(mac); + +SDT_PROBE_DEFINE(mac, kernel, policy, modevent); +SDT_PROBE_ARGTYPE(mac, kernel, policy, modevent, 0, "int"); +SDT_PROBE_ARGTYPE(mac, kernel, policy, modevent, 1, + "struct mac_policy_conf *mpc"); + +SDT_PROBE_DEFINE(mac, kernel, policy, register); +SDT_PROBE_ARGTYPE(mac, kernel, policy, register, 0, + "struct mac_policy_conf *"); + +SDT_PROBE_DEFINE(mac, kernel, policy, unregister); +SDT_PROBE_ARGTYPE(mac, kernel, policy, unregister, 0, + "struct mac_policy_conf *"); + +/* * Root sysctl node for all MAC and MAC policy controls. */ SYSCTL_NODE(_security, OID_AUTO, mac, CTLFLAG_RW, 0, @@ -435,6 +455,7 @@ mac_policy_register(struct mac_policy_co (*(mpc->mpc_ops->mpo_init))(mpc); mac_policy_updateflags(); + SDT_PROBE(mac, kernel, policy, register, mpc, 0, 0, 0, 0); printf("Security policy loaded: %s (%s)\n", mpc->mpc_fullname, mpc->mpc_name); @@ -482,6 +503,7 @@ mac_policy_unregister(struct mac_policy_ mac_policy_release_exclusive(); + SDT_PROBE(mac, kernel, policy, unregister, mpc, 0, 0, 0, 0); printf("Security policy unload: %s (%s)\n", mpc->mpc_fullname, mpc->mpc_name); @@ -507,6 +529,7 @@ mac_policy_modevent(module_t mod, int ty } #endif + SDT_PROBE(mac, kernel, policy, modevent, type, mpc, 0, 0, 0); switch (type) { case MOD_LOAD: if (mpc->mpc_loadtime_flags & MPC_LOADTIME_FLAG_NOTLATE &&
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200912291731.nBTHVqho031188>