[PATCH 5/6] ipe: fix enforcement audit
sashiko-bot at kernel.org
sashiko-bot at kernel.org
Sat Oct 3 02:55:34 UTC 2026
> ipe_audit_enforce() starts an audit buffer but writes the state change
> with audit_log(), which logs its own record. Ending the unused buffer
> then emits an extra empty AUDIT_MAC_STATUS record.
>
> Remove the unused buffer and log the state change with audit_log()
> alone.
>
> Fixes: a68916eaedcd ("ipe: add permissive toggle")
> Assisted-by: LLM
> Signed-off-by: Fan Wu <wufan at kernel.org>
Sashiko has reviewed this patch and found no issues. It looks great!
--
Sashiko AI review · https://sashiko.dev/#/patchset/20261003025135.3666767-1-wufan@kernel.org?part=5
More information about the Linux-security-module-archive
mailing list