audit: document /proc/PID/loginuid
authorRichard Guy Briggs <rgb@redhat.com>
Thu, 18 Mar 2021 19:19:10 +0000 (15:19 -0400)
committerPaul Moore <paul@paul-moore.com>
Thu, 18 Mar 2021 20:56:36 +0000 (16:56 -0400)
Describe the /proc/PID/loginuid interface in Documentation/ABI/stable that
was added 2005-02-01 by commit 1e2d1492e178 ("[PATCH] audit: handle
loginuid through proc")

Signed-off-by: Richard Guy Briggs <rgb@redhat.com>
Signed-off-by: Paul Moore <paul@paul-moore.com>
Documentation/ABI/stable/procfs-audit_loginuid [new file with mode: 0644]

diff --git a/Documentation/ABI/stable/procfs-audit_loginuid b/Documentation/ABI/stable/procfs-audit_loginuid
new file mode 100644 (file)
index 0000000..e7c100b
--- /dev/null
@@ -0,0 +1,15 @@
+What:          Audit Login UID
+Date:          2005-02-01
+KernelVersion: 2.6.11-rc2 1e2d1492e178 ("[PATCH] audit: handle loginuid through proc")
+Contact:       linux-audit@redhat.com
+Format:                %u
+Users:         audit and login applications
+Description:
+               The /proc/$pid/loginuid pseudofile is written to set and
+               read to get the audit login UID of process $pid.  If it is
+               unset, permissions are not needed to set it.  The accessor must
+               have CAP_AUDIT_CONTROL in the initial user namespace to write
+               it if it has been set.  It cannot be written again if
+               AUDIT_FEATURE_LOGINUID_IMMUTABLE is enabled.  It cannot be
+               unset if AUDIT_FEATURE_ONLY_UNSET_LOGINUID is enabled.
+