Landlock Domain Is Scoped

The domain_is_scoped() helper implements the following predicate:

l[0,16)(hasbit(self,l)D(self,l)=D(other,l))

That is, we require for each layer l nesting depth that:

For example:

client server self and other layer are the same self and other layer differ