1 /*
2  * Copyright 2011 Tresys Technology, LLC. All rights reserved.
3  *
4  * Redistribution and use in source and binary forms, with or without
5  * modification, are permitted provided that the following conditions are met:
6  *
7  *    1. Redistributions of source code must retain the above copyright notice,
8  *       this list of conditions and the following disclaimer.
9  *
10  *    2. Redistributions in binary form must reproduce the above copyright notice,
11  *       this list of conditions and the following disclaimer in the documentation
12  *       and/or other materials provided with the distribution.
13  *
14  * THIS SOFTWARE IS PROVIDED BY TRESYS TECHNOLOGY, LLC ``AS IS'' AND ANY EXPRESS
15  * OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
16  * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO
17  * EVENT SHALL TRESYS TECHNOLOGY, LLC OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
18  * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
19  * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
20  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
21  * LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE
22  * OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF
23  * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
24  *
25  * The views and conclusions contained in the software and documentation are those
26  * of the authors and should not be interpreted as representing official policies,
27  * either expressed or implied, of Tresys Technology, LLC.
28  */
29 
30 #ifndef CIL_H_
31 #define CIL_H_
32 
33 #include <sepol/policydb/policydb.h>
34 
35 #ifdef __cplusplus
36 extern "C" {
37 #endif
38 
39 struct cil_db;
40 typedef struct cil_db cil_db_t;
41 
42 extern void cil_db_init(cil_db_t **db);
43 extern void cil_db_destroy(cil_db_t **db);
44 
45 extern int cil_add_file(cil_db_t *db, char *name, char *data, size_t size);
46 
47 extern int cil_compile(cil_db_t *db);
48 extern int cil_build_policydb(cil_db_t *db, sepol_policydb_t **sepol_db);
49 extern int cil_userprefixes_to_string(cil_db_t *db, char **out, size_t *size);
50 extern int cil_selinuxusers_to_string(cil_db_t *db, char **out, size_t *size);
51 extern int cil_filecons_to_string(cil_db_t *db, char **out, size_t *size);
52 extern void cil_set_disable_dontaudit(cil_db_t *db, int disable_dontaudit);
53 extern void cil_set_multiple_decls(cil_db_t *db, int multiple_decls);
54 extern void cil_set_disable_neverallow(cil_db_t *db, int disable_neverallow);
55 extern void cil_set_preserve_tunables(cil_db_t *db, int preserve_tunables);
56 extern int cil_set_handle_unknown(cil_db_t *db, int handle_unknown);
57 extern void cil_set_mls(cil_db_t *db, int mls);
58 extern void cil_set_attrs_expand_generated(struct cil_db *db, int attrs_expand_generated);
59 extern void cil_set_attrs_expand_size(struct cil_db *db, unsigned attrs_expand_size);
60 extern void cil_set_target_platform(cil_db_t *db, int target_platform);
61 extern void cil_set_policy_version(cil_db_t *db, int policy_version);
62 extern void cil_write_policy_conf(FILE *out, struct cil_db *db);
63 
64 enum cil_log_level {
65 	CIL_ERR = 1,
66 	CIL_WARN,
67 	CIL_INFO
68 };
69 extern void cil_set_log_level(enum cil_log_level lvl);
70 extern void cil_set_log_handler(void (*handler)(int lvl, char *msg));
71 
72 #ifdef __GNUC__
73 __attribute__ ((format(printf, 2, 3)))
74 #endif
75 extern void cil_log(enum cil_log_level lvl, const char *msg, ...);
76 
77 extern void cil_set_malloc_error_handler(void (*handler)(void));
78 
79 #ifdef __cplusplus
80 }
81 #endif
82 #endif
83