If a file descriptor is granted the
capability right, the list of allowed
commands can be selectively reduced (but never expanded) with the
argument is an array of
commands and the
argument specifies the number of elements in the array.
There can be up to
elements in the array.
Including an element that has been previously revoked will generate an error.
After a successful call only those listed in the array may be used.
The list of allowed ioctl commands for a given file descriptor can be obtained
argument points at memory that can hold up to
The function populates the provided buffer with up to
elements, but always returns the total number of ioctl commands allowed for the
given file descriptor.
The total number of ioctls commands for the given file descriptor can be
obtained by passing
NULL as the
If all ioctl commands are allowed
capability right is assigned to the file descriptor and the
system call was never called for this file descriptor), the
system call will return
and will not modify the buffer pointed to by the