diff options
Diffstat (limited to 'libpoldiff/include/poldiff/role_diff.h')
-rw-r--r-- | libpoldiff/include/poldiff/role_diff.h | 127 |
1 files changed, 127 insertions, 0 deletions
diff --git a/libpoldiff/include/poldiff/role_diff.h b/libpoldiff/include/poldiff/role_diff.h new file mode 100644 index 0000000..9526cb5 --- /dev/null +++ b/libpoldiff/include/poldiff/role_diff.h @@ -0,0 +1,127 @@ +/** + * @file + * Public interface for computing semantic differences in roles. + * + * @author Jeremy A. Mowery jmowery@tresys.com + * @author Jason Tang jtang@tresys.com + * + * Copyright (C) 2006-2007 Tresys Technology, LLC + * + * This library is free software; you can redistribute it and/or + * modify it under the terms of the GNU Lesser General Public + * License as published by the Free Software Foundation; either + * version 2.1 of the License, or (at your option) any later version. + * + * This library is distributed in the hope that it will be useful, + * but WITHOUT ANY WARRANTY; without even the implied warranty of + * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU + * Lesser General Public License for more details. + * + * You should have received a copy of the GNU Lesser General Public + * License along with this library; if not, write to the Free Software + * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA + */ + +#ifndef POLDIFF_ROLE_DIFF_H +#define POLDIFF_ROLE_DIFF_H + +#ifdef __cplusplus +extern "C" +{ +#endif + +#include <apol/vector.h> +#include <poldiff/poldiff.h> + + typedef struct poldiff_role poldiff_role_t; + +/** + * Get an array of statistics for the number of differences of each + * form for roles. + * + * @param diff The policy difference structure from which to get the + * stats. + * @param stats Array into which to write the numbers (array must be + * pre-allocated). The order of the values written to the array is + * as follows: number of items of form POLDIFF_FORM_ADDED, number of + * POLDIFF_FORM_REMOVED, number of POLDIFF_FORM_MODIFIED, number of + * POLDIFF_FORM_ADD_TYPE, and number of POLDIFF_FORM_REMOVE_TYPE. + */ + extern void poldiff_role_get_stats(const poldiff_t * diff, size_t stats[5]); + +/** + * Get the vector of role differences from the role difference + * summary. + * + * @param diff The policy difference structure associated with the + * role difference summary. + * + * @return A vector of elements of type poldiff_role_t, or NULL on + * error. The caller should <b>not</b> destroy the vector + * returned. If the call fails, errno will be set. + */ + extern const apol_vector_t *poldiff_get_role_vector(const poldiff_t * diff); + +/** + * Obtain a newly allocated string representation of a difference in + * a role. + * + * @param diff The policy difference structure associated with the role. + * @param role The role from which to generate the string. + * + * @return A string representation of role difference; the caller is + * responsible for free()ing this string. On error, return NULL and + * set errno. + */ + extern char *poldiff_role_to_string(const poldiff_t * diff, const void *role); + +/** + * Get the name of the role from a role diff. + * + * @param role The role from which to get the name. + * + * @return Name of the role on success and NULL on failure; if the + * call fails, errno will be set. The caller should not free the + * returned string. + */ + extern const char *poldiff_role_get_name(const poldiff_role_t * role); + +/** + * Get the form of difference from a role diff. + * + * @param role The role from which to get the difference form. + * + * @return The form of difference (one of POLDIFF_FORM_*) or + * POLDIFF_FORM_NONE on error. If the call fails, errno will be set. + */ + extern poldiff_form_e poldiff_role_get_form(const void *role); + +/** + * Get a vector of types added to the role. + * + * @param role The role diff from which to get the types vector. + * + * @return a vector of type names (type char *) that are allowed to + * the role in the modified policy. If no types were added the size + * of the returned vector will be 0. The caller must not destroy + * this vector. On error, errno will be set. + */ + extern const apol_vector_t *poldiff_role_get_added_types(const poldiff_role_t * role); + +/** + * Get a vector of types removed from the role. + * + * @param role The role diff from which to get the types vector. + * + * @return A vector of type names (type char *) that are allowed to + * the role in the original policy. If no types were removed the + * size of the returned vector will be 0. The caller must not + * destroy this vector. On error, errno will be set. + */ + extern const apol_vector_t *poldiff_role_get_removed_types(const poldiff_role_t * role); + +#ifdef __cplusplus +} +#endif + +#endif /* POLDIFF_ROLE_DIFF_H */ |