kensmith
1f1979ea2c
Insta-MFC of the shared library version bump. All shared libraries
...
whose version has not already been bumped since RELENG_5 are being
bumped.
Revisions of files being MFC-ed:
> Path Revision
> src/gnu/lib/libdialog/Makefile 1.43
> src/gnu/lib/libg2c/Makefile 1.16
> src/gnu/lib/libobjc/Makefile 1.27
> src/gnu/lib/libreadline/Makefile.inc 1.12
> src/gnu/lib/libregex/Makefile 1.32
> src/gnu/lib/libstdc++/Makefile 1.56
> src/kerberos5/lib/Makefile.inc 1.7
> src/lib/Makefile.inc 1.3
> src/lib/libalias/Makefile 1.31
> src/lib/libarchive/Makefile 1.37
> src/lib/libbegemot/Makefile 1.3
> src/lib/libbluetooth/Makefile 1.2
> src/lib/libbsnmp/Makefile.inc 1.6
> src/lib/libbz2/Makefile 1.6
> src/lib/libc_r/Makefile 1.42
> src/lib/libcrypt/Makefile 1.36
> src/lib/libdevstat/Makefile 1.15
> src/lib/libdevstat/devstat.h 1.11
> src/lib/libedit/Makefile 1.29
> src/lib/libexpat/Makefile 1.5
> src/lib/libfetch/Makefile 1.45
> src/lib/libftpio/Makefile 1.14
> src/lib/libgpib/Makefile 1.2
> src/lib/libipsec/Makefile 1.17
> src/lib/libkiconv/Makefile 1.3
> src/lib/libmagic/Makefile 1.7
> src/lib/libmp/Makefile 1.10
> src/lib/libncp/Makefile 1.6
> src/lib/libncurses/Makefile 1.79
> src/lib/libnetgraph/Makefile 1.11
> src/lib/libngatm/Makefile 1.6
> src/lib/libopie/Makefile 1.21
> src/lib/libpam/Makefile.inc 1.17
> src/lib/libpthread/Makefile 1.54
> src/lib/libradius/Makefile 1.12
> src/lib/libsdp/Makefile 1.4
> src/lib/libsmb/Makefile 1.8
> src/lib/libtacplus/Makefile 1.7
> src/lib/libthr/Makefile 1.14
> src/lib/libthread_db/Makefile 1.6
> src/lib/libugidfw/Makefile 1.7
> src/lib/libusbhid/Makefile 1.10
> src/lib/libutil/Makefile 1.57
> src/lib/libvgl/Makefile 1.11
> src/lib/libwrap/Makefile 1.17
> src/lib/libypclnt/Makefile 1.13
> src/lib/msun/Makefile 1.72
> src/secure/lib/libcrypto/Makefile 1.74
> src/secure/lib/libssh/Makefile 1.35
> src/secure/lib/libssl/Makefile 1.22
> src/usr.sbin/bsnmpd/modules/Makefile.inc 1.10
Reviewed by: ru
Approved by: re (scottl)
2005-07-22 17:29:10 +00:00
trhodes
71a4283929
Fix two typos in comments.
2005-04-23 02:20:35 +00:00
rwatson
c2d86096e6
When parsing the second {uid,gid} in an identity phrase for ugidfw,
...
check the password or group database before attempting to parse as an
integer, as is done for the first {uid,gid} in an identity phrase.
Obtained from: TrustedBSD Project
Sponsored by: SPAWAR, SPARTA
2005-04-16 11:58:55 +00:00
rwatson
74350013ae
In practice, you need to include <sys/types.h> and
...
<security/mac_bsdextended/mac_bsdextended.h> in order to include
<ugidfw.h>, so document that.
MFC after: 3 days
2005-04-16 11:32:46 +00:00
pjd
0e1fcdd3a6
Fix typo - link for bsde_add_rule(3) manual page was not created.
...
MFC after: 1 week
2005-03-28 09:38:43 +00:00
pjd
838e3ffcb1
Properly return rule number.
...
Submitted by: Wojciech A. Koszek
PR: bin/79292
MFC after: 1 week
2005-03-28 09:37:44 +00:00
rwatson
b59317a711
Modify libugidfw(3) to use MBI_* permission flags from mac_bsdextended.h
...
instead of using the V* permission flags from vnode.h. Remove include
of vnode.h.
Requested by: phk
2004-10-21 11:21:13 +00:00
ru
01548ace15
Mechanically kill hard sentence breaks.
2004-07-02 23:52:20 +00:00
ru
615a6a246a
Markup, grammar, punctuation.
2004-07-01 18:20:57 +00:00
bde
4a50f50816
Fixed misspellings of 0 as NULL.
2004-03-11 09:56:04 +00:00
rwatson
09eb839cca
Add bsde_add_rule(), which is similar to bsde_set_rule() except that
...
the caller does not specify the rule number -- instead, the kernel
module is probed for the next available rule, which is then used.
Obtained from: TrustedBSD Project
Sponsored by: DARPA, McAfee Research
2004-02-25 03:24:39 +00:00
ru
2515dba9ff
Assorted mdoc(7) fixes.
2003-06-01 19:41:49 +00:00
chris
69abe13c7f
Correct a couple small typos.
...
Submitted by: Attila Nagy <bra@fsn.hu>
2003-01-07 13:18:21 +00:00
chris
788e08dc50
Document the file system firewall interface library functions.
...
Sponsored by: DARPA, Network Associates Laboratories
2003-01-07 11:23:43 +00:00
rwatson
007eb8a428
License and blurb update authorized by Network Associates.
2002-11-07 20:37:04 +00:00
peter
0a7f0ba37e
Zap now-unused SHLIB_MINOR
2002-09-28 00:25:32 +00:00
rwatson
6ef83883d8
Use size_t instead of int for len variables passed in/out of sysctl.
...
Pointed out by: jake
2002-09-27 16:35:19 +00:00
rwatson
476f71cec5
Use "ugidfw.h" rather than <ugidfw.h> so that mkdep can find it.
...
Suggested by: mike
2002-08-14 22:30:07 +00:00
rwatson
2e2c35ec82
De-gccize CFLAGS by removing it.
...
NOMAN is no longer required when a man page is not yet present.
Submitted by: ru
2002-08-02 13:33:17 +00:00
rwatson
b7b34f0249
Introduce support for Mandatory Access Control and extensible
...
kernel access control.
Provide a library to manage user file system firewall-like rules
supported by the mac_bsdextended.ko security model. The kernel
module exports the current rule set using sysctl, and this
library provides a front end that includes support for retrieving
and setting rules, as well as printing and parsing them.
Note: as with other userland components, this is a WIP. However,
when used in combination with the soon-to-be-committed ugidfw,
it can actually be quite useful in multi-user environments to
allow the administrator to limit inter-user file operations without
resorting to heavier weight labeled security policies.
Obtained form: TrustedBSD Project
Sponsored by: DARPA, NAI Labs
2002-08-02 07:07:35 +00:00