Eric Paris efaffd6e44 audit: allow matching on obj_uid
Allow syscall exit filter matching based on the uid of the owner of an
inode used in a syscall.  aka:

auditctl -a always,exit -S open -F obj_uid=0 -F perm=wa

Signed-off-by: Eric Paris <eparis@redhat.com>
2012-01-17 16:16:59 -05:00
..
2011-07-26 16:49:45 -07:00
2012-01-17 16:16:59 -05:00
2012-01-17 16:16:59 -05:00
2011-09-23 12:05:29 +05:30
2011-07-14 12:59:14 +03:00
2012-01-03 22:54:56 -05:00
2011-10-31 17:30:44 -07:00
2011-08-12 16:21:35 -05:00
2011-09-19 17:04:37 -07:00