1/*
2 * Copyright 2011 Tresys Technology, LLC. All rights reserved.
3 *
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions are met:
6 *
7 *    1. Redistributions of source code must retain the above copyright notice,
8 *       this list of conditions and the following disclaimer.
9 *
10 *    2. Redistributions in binary form must reproduce the above copyright notice,
11 *       this list of conditions and the following disclaimer in the documentation
12 *       and/or other materials provided with the distribution.
13 *
14 * THIS SOFTWARE IS PROVIDED BY TRESYS TECHNOLOGY, LLC ``AS IS'' AND ANY EXPRESS
15 * OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
16 * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO
17 * EVENT SHALL TRESYS TECHNOLOGY, LLC OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
18 * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
19 * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
20 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
21 * LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE
22 * OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF
23 * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
24 *
25 * The views and conclusions contained in the software and documentation are those
26 * of the authors and should not be interpreted as representing official policies,
27 * either expressed or implied, of Tresys Technology, LLC.
28 */
29
30#ifndef CIL_BUILD_AST_H_
31#define CIL_BUILD_AST_H_
32
33#include <stdint.h>
34
35#include "cil_internal.h"
36#include "cil_flavor.h"
37#include "cil_tree.h"
38#include "cil_list.h"
39
40int cil_add_decl_to_symtab(struct cil_db *db, symtab_t *symtab, hashtab_key_t key, struct cil_symtab_datum *datum, struct cil_tree_node *node);
41
42int cil_gen_node(struct cil_db *db, struct cil_tree_node *ast_node, struct cil_symtab_datum *datum, hashtab_key_t key, enum cil_sym_index sflavor, enum cil_flavor nflavor);
43int cil_parse_to_list(struct cil_tree_node *parse_cl_head, struct cil_list *ast_cl, enum cil_flavor flavor);
44
45int cil_gen_block(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, uint16_t is_abstract);
46void cil_destroy_block(struct cil_block *block);
47int cil_gen_blockinherit(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
48void cil_destroy_blockinherit(struct cil_blockinherit *inherit);
49int cil_gen_blockabstract(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
50void cil_destroy_blockabstract(struct cil_blockabstract *abstract);
51int cil_gen_in(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
52void cil_destroy_in(struct cil_in *in);
53int cil_gen_class(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
54void cil_destroy_class(struct cil_class *class);
55int cil_gen_classorder(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
56void cil_destroy_classorder(struct cil_classorder *classorder);
57int cil_gen_perm(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor, unsigned int *num_perms);
58void cil_destroy_perm(struct cil_perm *perm);
59int cil_gen_perm_nodes(struct cil_db *db, struct cil_tree_node *current_perm, struct cil_tree_node *ast_node, enum cil_flavor flavor, unsigned int *num_perms);
60int cil_fill_perms(struct cil_tree_node *start_perm, struct cil_list **perm_strs);
61int cil_fill_classperms(struct cil_tree_node *parse_current, struct cil_classperms **cp);
62void cil_destroy_classperms(struct cil_classperms *cp);
63void cil_fill_classperms_set(struct cil_tree_node *parse_current, struct cil_classperms_set **cp_set);
64void cil_destroy_classperms_set(struct cil_classperms_set *cp_set);
65int cil_fill_classperms_list(struct cil_tree_node *parse_current, struct cil_list **expr_list);
66void cil_destroy_classperms_list(struct cil_list **cp_list);
67int cil_gen_classpermission(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
68void cil_destroy_classpermission(struct cil_classpermission *cp);
69int cil_gen_classpermissionset(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
70void cil_destroy_classpermissionset(struct cil_classpermissionset *cps);
71int cil_gen_map_class(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
72int cil_gen_classmapping(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
73void cil_destroy_classmapping(struct cil_classmapping *mapping);
74int cil_gen_common(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
75int cil_gen_classcommon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
76void cil_destroy_classcommon(struct cil_classcommon *clscom);
77int cil_gen_sid(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
78void cil_destroy_sid(struct cil_sid *sid);
79int cil_gen_sidcontext(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
80void cil_destroy_sidcontext(struct cil_sidcontext *sidcon);
81int cil_gen_sidorder(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
82void cil_destroy_sidorder(struct cil_sidorder *sidorder);
83int cil_gen_user(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
84void cil_destroy_user(struct cil_user *user);
85int cil_gen_userattribute(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
86void cil_destroy_userattribute(struct cil_userattribute *attr);
87int cil_gen_userattributeset(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
88void cil_destroy_userattributeset(struct cil_userattributeset *attrset);
89int cil_gen_userlevel(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
90void cil_destroy_userlevel(struct cil_userlevel *usrlvl);
91int cil_gen_userrange(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
92void cil_destroy_userrange(struct cil_userrange *userrange);
93int cil_gen_userbounds(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
94int cil_gen_userprefix(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
95void cil_destroy_userprefix(struct cil_userprefix *userprefix);
96int cil_gen_selinuxuser(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
97int cil_gen_selinuxuserdefault(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
98void cil_destroy_selinuxuser(struct cil_selinuxuser *selinuxuser);
99int cil_gen_role(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
100void cil_destroy_role(struct cil_role *role);
101int cil_gen_roletype(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
102void cil_destroy_roletype(struct cil_roletype *roletype);
103int cil_gen_userrole(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
104void cil_destroy_userrole(struct cil_userrole *userrole);
105int cil_gen_roletransition(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
106void cil_destroy_roletransition(struct cil_roletransition *roletrans);
107int cil_gen_roleallow(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
108void cil_destroy_roleallow(struct cil_roleallow *roleallow);
109int cil_gen_roleattribute(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
110void cil_destroy_roleattribute(struct cil_roleattribute *role);
111int cil_gen_roleattributeset(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
112void cil_destroy_roleattributeset(struct cil_roleattributeset *attrset);
113int cil_gen_rolebounds(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
114int cil_gen_avrule(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, uint32_t rule_kind);
115void cil_destroy_avrule(struct cil_avrule *rule);
116int cil_gen_avrulex(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, uint32_t rule_kind);
117int cil_gen_permissionx(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
118void cil_destroy_permissionx(struct cil_permissionx *permx);
119int cil_gen_type_rule(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, uint32_t rule_kind);
120void cil_destroy_type_rule(struct cil_type_rule *rule);
121int cil_gen_type(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
122void cil_destroy_type(struct cil_type *type);
123int cil_gen_typeattribute(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
124void cil_destroy_typeattribute(struct cil_typeattribute *type);
125int cil_gen_bool(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, int tunableif);
126void cil_destroy_bool(struct cil_bool *boolean);
127int cil_gen_tunable(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
128void cil_destroy_tunable(struct cil_tunable *tunable);
129int cil_gen_constrain_expr(struct cil_tree_node *current, enum cil_flavor flavor, struct cil_list **stack);
130int cil_gen_expr(struct cil_tree_node *current, enum cil_flavor flavor, struct cil_list **stack);
131int cil_gen_boolif(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, int tunable_if);
132void cil_destroy_boolif(struct cil_booleanif *bif);
133int cil_gen_tunif(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
134void cil_destroy_tunif(struct cil_tunableif *tif);
135int cil_gen_condblock(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor);
136void cil_destroy_condblock(struct cil_condblock *cb);
137int cil_gen_alias(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor);
138void cil_destroy_alias(struct cil_alias *alias);
139int cil_gen_aliasactual(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor);
140void cil_destroy_aliasactual(struct cil_aliasactual *aliasactual);
141int cil_gen_typeattributeset(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
142void cil_destroy_typeattributeset(struct cil_typeattributeset *attrtypes);
143int cil_gen_expandtypeattribute(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
144void cil_destroy_expandtypeattribute(struct cil_expandtypeattribute *expandattr);
145int cil_gen_typebounds(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
146int cil_gen_typepermissive(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
147void cil_destroy_typepermissive(struct cil_typepermissive *typeperm);
148int cil_gen_typetransition(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
149void cil_destroy_name(struct cil_name *name);
150void cil_destroy_typetransition(struct cil_nametypetransition *nametypetrans);
151int cil_gen_rangetransition(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
152void cil_destroy_rangetransition(struct cil_rangetransition *rangetrans);
153int cil_gen_sensitivity(struct cil_db *idb, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
154void cil_destroy_sensitivity(struct cil_sens *sens);
155int cil_gen_category(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
156void cil_destroy_category(struct cil_cat *cat);
157int cil_set_to_list(struct cil_tree_node *parse_current, struct cil_list *ast_cl);
158void cil_destroy_catset(struct cil_catset *catset);
159int cil_gen_catorder(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
160void cil_destroy_catorder(struct cil_catorder *catorder);
161int cil_gen_sensitivityorder(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
162void cil_destroy_sensitivityorder(struct cil_sensorder *sensorder);
163int cil_gen_senscat(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
164void cil_destroy_senscat(struct cil_senscat *senscat);
165int cil_gen_level(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
166void cil_destroy_level(struct cil_level *level);
167int cil_fill_levelrange(struct cil_tree_node *low, struct cil_levelrange *lvlrange);
168int cil_gen_levelrange(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
169void cil_destroy_levelrange(struct cil_levelrange *lvlrange);
170void cil_destroy_constrain_node(struct cil_tree_node *cons_node);
171int cil_gen_constrain(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor);
172void cil_destroy_constrain(struct cil_constrain *cons);
173int cil_gen_validatetrans(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor);
174void cil_destroy_validatetrans(struct cil_validatetrans *validtrans);
175int cil_fill_context(struct cil_tree_node *user_node, struct cil_context *context);
176int cil_gen_context(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
177void cil_destroy_context(struct cil_context *context);
178int cil_gen_filecon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
179void cil_destroy_filecon(struct cil_filecon *filecon);
180int cil_gen_ibpkeycon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
181void cil_destroy_ibpkeycon(struct cil_ibpkeycon *ibpkeycon);
182int cil_gen_ibendportcon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
183void cil_destroy_ibendportcon(struct cil_ibendportcon *ibendportcon);
184int cil_gen_portcon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
185void cil_destroy_portcon(struct cil_portcon *portcon);
186int cil_gen_nodecon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
187void cil_destroy_nodecon(struct cil_nodecon *nodecon);
188int cil_gen_genfscon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
189void cil_destroy_genfscon(struct cil_genfscon *genfscon);
190int cil_gen_netifcon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
191void cil_destroy_netifcon(struct cil_netifcon *netifcon);
192int cil_gen_pirqcon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
193void cil_destroy_pirqcon(struct cil_pirqcon *pirqcon);
194int cil_gen_iomemcon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
195void cil_destroy_iomemcon(struct cil_iomemcon *iomemcon);
196int cil_gen_ioportcon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
197void cil_destroy_ioportcon(struct cil_ioportcon *ioportcon);
198int cil_gen_pcidevicecon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
199void cil_destroy_pcidevicecon(struct cil_pcidevicecon *pcidevicecon);
200int cil_gen_devicetreecon(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
201void cil_destroy_devicetreecon(struct cil_devicetreecon *devicetreecon);
202int cil_gen_fsuse(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
203void cil_destroy_fsuse(struct cil_fsuse *fsuse);
204void cil_destroy_param(struct cil_param *param);
205int cil_gen_macro(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
206void cil_destroy_macro(struct cil_macro *macro);
207int cil_gen_call(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
208void cil_destroy_call(struct cil_call *call);
209void cil_destroy_args(struct cil_args *args);
210int cil_gen_optional(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
211void cil_destroy_optional(struct cil_optional *optional);
212int cil_gen_policycap(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
213void cil_destroy_policycap(struct cil_policycap *polcap);
214int cil_gen_ipaddr(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
215void cil_destroy_ipaddr(struct cil_ipaddr *ipaddr);
216int cil_gen_bounds(struct cil_db *db, struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor);
217void cil_destroy_bounds(struct cil_bounds *bounds);
218int cil_gen_default(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node, enum cil_flavor flavor);
219void cil_destroy_default(struct cil_default *def);
220int cil_gen_handleunknown(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
221void cil_destroy_handleunknown(struct cil_handleunknown *unk);
222int cil_gen_mls(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
223void cil_destroy_mls(struct cil_mls *mls);
224int cil_gen_defaultrange(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
225void cil_destroy_defaultrange(struct cil_defaultrange *def);
226int cil_gen_src_info(struct cil_tree_node *parse_current, struct cil_tree_node *ast_node);
227void cil_destroy_src_info(struct cil_src_info *info);
228
229int cil_fill_cats(struct cil_tree_node *curr, struct cil_cats **cats);
230void cil_destroy_cats(struct cil_cats *cats);
231int cil_fill_context(struct cil_tree_node *user_node, struct cil_context *context);
232int cil_fill_integer(struct cil_tree_node *int_node, uint32_t *integer, int base);
233int cil_fill_integer64(struct cil_tree_node *int_node, uint64_t *integer, int base);
234int cil_fill_ipaddr(struct cil_tree_node *addr_node, struct cil_ipaddr *addr);
235int cil_fill_level(struct cil_tree_node *sens, struct cil_level *level);
236
237int cil_build_ast(struct cil_db *db, struct cil_tree_node *parse_tree, struct cil_tree_node *ast);
238
239#endif /* CIL_BUILD_AST_H_ */
240