/*
- * Copyright (c) 2000-2004 Apple Computer, Inc. All rights reserved.
+ * Copyright (c) 2000-2007 Apple Inc. All rights reserved.
*
- * @APPLE_LICENSE_HEADER_START@
+ * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
*
- * The contents of this file constitute Original Code as defined in and
- * are subject to the Apple Public Source License Version 1.1 (the
- * "License"). You may not use this file except in compliance with the
- * License. Please obtain a copy of the License at
- * http://www.apple.com/publicsource and read it before using this file.
+ * This file contains Original Code and/or Modifications of Original Code
+ * as defined in and that are subject to the Apple Public Source License
+ * Version 2.0 (the 'License'). You may not use this file except in
+ * compliance with the License. The rights granted to you under the License
+ * may not be used to create, or enable the creation or redistribution of,
+ * unlawful or unlicensed copies of an Apple operating system, or to
+ * circumvent, violate, or enable the circumvention or violation of, any
+ * terms of an Apple operating system software license agreement.
*
- * This Original Code and all software distributed under the License are
- * distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY KIND, EITHER
+ * Please obtain a copy of the License at
+ * http://www.opensource.apple.com/apsl/ and read it before using this file.
+ *
+ * The Original Code and all software distributed under the License are
+ * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
* EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
* INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
- * FITNESS FOR A PARTICULAR PURPOSE OR NON-INFRINGEMENT. Please see the
- * License for the specific language governing rights and limitations
- * under the License.
+ * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
+ * Please see the License for the specific language governing rights and
+ * limitations under the License.
*
- * @APPLE_LICENSE_HEADER_END@
+ * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
*/
/*
* @OSF_COPYRIGHT@
* any improvements or extensions that they make and grant Carnegie Mellon
* the rights to redistribute these changes.
*/
+/*
+ * NOTICE: This file was modified by McAfee Research in 2004 to introduce
+ * support for mandatory and extensible security protections. This notice
+ * is included in support of clause 2.2 (b) of the Apple Public License,
+ * Version 2.0.
+ * Copyright (c) 2005 SPARTA, Inc.
+ */
/*
*/
/*
#include <ipc/ipc_table.h>
#include <mach/machine/ndr_def.h> /* NDR_record */
+#include <ipc/ipc_labelh.h>
vm_map_t ipc_kernel_map;
vm_size_t ipc_kernel_map_size = 1024 * 1024;
vm_size_t ipc_kernel_copy_map_size = IPC_KERNEL_COPY_MAP_SIZE;
vm_size_t ipc_kmsg_max_vm_space = (IPC_KERNEL_COPY_MAP_SIZE * 7)/8;
-int ipc_space_max = SPACE_MAX;
-int ipc_tree_entry_max = ITE_MAX;
-int ipc_port_max = PORT_MAX;
-int ipc_pset_max = SET_MAX;
+int ipc_space_max;
+int ipc_tree_entry_max;
+int ipc_port_max;
+int ipc_pset_max;
+
+
+lck_grp_t ipc_lck_grp;
+lck_attr_t ipc_lck_attr;
+
+static lck_grp_attr_t ipc_lck_grp_attr;
extern void ikm_cache_init(void);
ipc_bootstrap(void)
{
kern_return_t kr;
-
+
+ lck_grp_attr_setdefault(&ipc_lck_grp_attr);
+ lck_grp_init(&ipc_lck_grp, "ipc", &ipc_lck_grp_attr);
+ lck_attr_setdefault(&ipc_lck_attr);
+
ipc_port_multiple_lock_init();
ipc_port_timestamp_lock_init();
/* make it exhaustible */
zone_change(ipc_space_zone, Z_EXHAUST, TRUE);
#endif
+ zone_change(ipc_space_zone, Z_NOENCRYPT, TRUE);
ipc_tree_entry_zone =
zinit(sizeof(struct ipc_tree_entry),
/* make it exhaustible */
zone_change(ipc_tree_entry_zone, Z_EXHAUST, TRUE);
#endif
+ zone_change(ipc_tree_entry_zone, Z_NOENCRYPT, TRUE);
/*
* populate all port(set) zones
* XXX panics when port allocation for an internal object fails.
*zone_change(ipc_object_zones[IOT_PORT], Z_EXHAUST, TRUE);
*/
+ zone_change(ipc_object_zones[IOT_PORT], Z_NOENCRYPT, TRUE);
ipc_object_zones[IOT_PORT_SET] =
zinit(sizeof(struct ipc_pset),
"ipc port sets");
/* make it exhaustible */
zone_change(ipc_object_zones[IOT_PORT_SET], Z_EXHAUST, TRUE);
+ zone_change(ipc_object_zones[IOT_PORT_SET], Z_NOENCRYPT, TRUE);
/*
* Create the basic ipc_kmsg_t zone (the one we also cache)
* elements at the processor-level to avoid the locking.
*/
ipc_kmsg_zone = zinit(IKM_SAVED_KMSG_SIZE,
- ipc_port_max * MACH_PORT_QLIMIT_MAX *
+ ipc_port_max * MACH_PORT_QLIMIT_DEFAULT *
IKM_SAVED_KMSG_SIZE,
IKM_SAVED_KMSG_SIZE,
"ipc kmsgs");
+ zone_change(ipc_kmsg_zone, Z_NOENCRYPT, TRUE);
+
+#if CONFIG_MACF_MACH
+ ipc_labelh_zone =
+ zinit(sizeof(struct ipc_labelh),
+ ipc_port_max * sizeof(struct ipc_labelh),
+ sizeof(struct ipc_labelh),
+ "label handles");
+#endif
/* create special spaces */