[PATCH 5/6] ipe: fix enforcement audit

sashiko-bot at kernel.org sashiko-bot at kernel.org
Sat Oct 3 02:55:34 UTC 2026


> ipe_audit_enforce() starts an audit buffer but writes the state change
> with audit_log(), which logs its own record. Ending the unused buffer
> then emits an extra empty AUDIT_MAC_STATUS record.
> 
> Remove the unused buffer and log the state change with audit_log()
> alone.
> 
> Fixes: a68916eaedcd ("ipe: add permissive toggle")
> Assisted-by: LLM
> Signed-off-by: Fan Wu <wufan at kernel.org>

Sashiko has reviewed this patch and found no issues. It looks great!

-- 
Sashiko AI review · https://sashiko.dev/#/patchset/20261003025135.3666767-1-wufan@kernel.org?part=5




More information about the Linux-security-module-archive mailing list