Firstly, the following code pattern is harder to follow:
if (func() < 0) {
error();
} else {
/* success */
}
We should put 'goto cleanup' into the error branch and move the
else branch one level up.
Secondly, 'rc' should really be named 'ret' because it holds
return value of the function. Not some intermediate value.
Signed-off-by: Michal Privoznik <mprivozn@redhat.com>
Reviewed-by: John Ferlan <jferlan@redhat.com>
{
struct stat buf;
security_context_t fcon = NULL;
- int rc = -1;
char *newpath = NULL;
char ebuf[1024];
+ int ret = -1;
/* Some paths are auto-generated, so let's be safe here and do
* nothing if nothing is needed.
* which makes this an expected non error
*/
VIR_WARN("cannot lookup default selinux label for %s", newpath);
- rc = 0;
- } else {
- rc = virSecuritySELinuxSetFilecon(mgr, newpath, fcon);
+ ret = 0;
+ goto cleanup;
}
+ if (virSecuritySELinuxSetFilecon(mgr, newpath, fcon) < 0)
+ goto cleanup;
+
+ ret = 0;
cleanup:
freecon(fcon);
VIR_FREE(newpath);
- return rc;
+ return ret;
}