Manual Page Search Parameters

PRISON_CHECK(9) Kernel Developer's Manual PRISON_CHECK(9)

prison_checkdetermine if subjects may see entities according to jail restrictions

#include <sys/jail.h>

int
prison_check(struct ucred *cred1, struct ucred *cred2);

This function determines if a subject with credentials cred1 is denied access to subjects or objects with credentials cred2 according to the policy that a subject can see subjects or objects in its own jail or any sub-jail of it.

The prison_check() function returns ESRCH if cred2 is not in the same jail or a sub-jail of that of cred1. In all other cases, prison_check() returns zero.

jail(2)

August 18, 2023 dev