selinux: remove secondary ops call to inode_permission
authorJames Morris <jmorris@namei.org>
Thu, 29 Jan 2009 01:14:03 +0000 (12:14 +1100)
committerJames Morris <jmorris@namei.org>
Thu, 29 Jan 2009 21:55:09 +0000 (08:55 +1100)
Remove secondary ops call to inode_permission, which is
a noop in capabilities.

Acked-by: Serge Hallyn <serue@us.ibm.com>
Acked-by: Eric Paris <eparis@redhat.com>
Signed-off-by: James Morris <jmorris@namei.org>
security/selinux/hooks.c

index 67291a3..7e90c9e 100644 (file)
@@ -2681,11 +2681,6 @@ static int selinux_inode_follow_link(struct dentry *dentry, struct nameidata *na
 static int selinux_inode_permission(struct inode *inode, int mask)
 {
        const struct cred *cred = current_cred();
-       int rc;
-
-       rc = secondary_ops->inode_permission(inode, mask);
-       if (rc)
-               return rc;
 
        if (!mask) {
                /* No permission to check.  Existence test. */