All of lore.kernel.org
 help / color / mirror / Atom feed
* [PATCH 0/2] [PATCH 0/2] Updated NetLabel/secid-reconciliation bits and a bugfix
@ 2006-10-04 15:46 ` paul.moore
  0 siblings, 0 replies; 18+ messages in thread
From: paul.moore @ 2006-10-04 15:46 UTC (permalink / raw)
  To: netdev, selinux; +Cc: eparis, jmorris, sds, vyekkirala

This patchset includes an update to the NetLabel/secid-reconciliation patch,
replacing my "v3" patch from earlier this week, and a bugfix patch to cure a
race condition found during testing this week.  The bugfix patch does not
rely on the secid patches and should be merged regardless as it fixes a bug
which has been around since the very first NetLabel patches (not sure why I
didn't see this sooner).

--
paul moore
linux security @ hp


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 18+ messages in thread
* RE: [PATCH 0/2] [PATCH 0/2] Updated NetLabel/secid-reconciliation bits and a bugfix
@ 2006-10-04 19:11 ` Venkat Yekkirala
  0 siblings, 0 replies; 18+ messages in thread
From: Venkat Yekkirala @ 2006-10-04 19:11 UTC (permalink / raw)
  To: Paul Moore, James Morris; +Cc: netdev, selinux, eparis, sds, Venkat Yekkirala

> > As for the rest of the network labeling, please work 
> together with Venkat 
> > and the SELinux developers on a final patchset which meets 
> all of the 
> > design goals and has been tested, with policy which has been merged 
> > upstream and is available via Fedora devel.  Please keep 
> the discussion 
> > going, but ensure that the final patchset for review and merge 
> > consideration is a complete set against the current git 
> kernel coming from 
> > one person.
> 
> I'm trying :)  When I posted the NetLabel secid support patch 
> last week
> I asked Venkat if he could merge it with the main secid 
> patchset (due to
> size and dependencies that seemed like the most reasonable course of
> action).  For reasons I'm not aware of he chose not to.

FYI- I am no NetLabel expert, and the pathset I sent out that day included
the peersid changes. And since you were going to have to post a patch for
that
again, I thought it best you ported and reposted the entire patch again.

>  As a result I
> keep posting updated patches backed against Venkat's latest and
> incorporating the latest feedback.

And let's keep this going like this on the selinux list. When all the
testing is done and selinux ok's the patchsets, I will combine them
and send them onto netdev. How does that sound?

> 
> Venkat, can you please merge the latest my latest NetLabel 
> secid support
> patch in with your next release?

I would, but it currently is premature. As James says, let's
get policy done, the design proven, and tested and then we will
go to netdev with one patchset.

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 18+ messages in thread
* RE: [PATCH 0/2] [PATCH 0/2] Updated NetLabel/secid-reconciliation bits and a bugfix
@ 2006-10-04 19:48 Venkat Yekkirala
  2006-10-04 20:13 ` Paul Moore
  0 siblings, 1 reply; 18+ messages in thread
From: Venkat Yekkirala @ 2006-10-04 19:48 UTC (permalink / raw)
  To: Paul Moore, Venkat Yekkirala; +Cc: James Morris, selinux, eparis, sds

[ EXCLUDING netdev ]
> There was a secid patchset posted on Thursday (9/28) night, I 
> posted the
> a patch on Friday (9/29) to provide NetLabel support.
> 
> There was a secid patchset posted on Sunday (10/1) night, I respun the
> NetLabel support patch on Monday (10/2) - "v2".
> 
> I respun the NetLabel support patch to take into account Stephen
> Smalley's comments on Monday (10/2) - "v3".
> 
> There was a small update to the secid patches yesterday (10/3) so I
> respun the NetLabel support patch (10/4) - "v4".

You are making my head spin :)

> 
> >> As a result I
> >>keep posting updated patches backed against Venkat's latest and
> >>incorporating the latest feedback.
> >  
> > And let's keep this going like this on the selinux list. 
> When all the
> > testing is done and selinux ok's the patchsets, I will combine them
> > and send them onto netdev. How does that sound?
> 
> Yes, the discussion is a good one I don't want to disrupt that.
> 
> I would prefer if all of the patches were in one patchset, 
> pushed out by
> one person as that would save me from having to respin my 
> patch if all I
> need to do is update it for the latest secid patches.  I 
> think that has
> value so people can review/test/etc all of the parts as one coherent
> patchset.  However, it's ultimately up to you as you are the 
> one working
> on the main secid patchset.
> 
> >>Venkat, can you please merge the latest my latest NetLabel 
> >>secid support
> >>patch in with your next release?
> >  
> > I would, but it currently is premature. As James says, let's
> > get policy done, the design proven, and tested and then we will
> > go to netdev with one patchset.
> 
> I think it's easier to decide on policy, review the design, 
> and test it
> all if there is one place/patchset with all of the latest 
> bits/patches.
>  Right not it's not that easy with different patches scattered around.

I believe Eric Paris is already keeping track of this and I believe
people are testing HIS kernel.

Actually since your patches need to be modified based on mine, it seems
to make sense for either you or Eric take on the responsibility of tracking
the patches and forwarding them on finally.

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 18+ messages in thread

end of thread, other threads:[~2006-10-04 22:56 UTC | newest]

Thread overview: 18+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2006-10-04 15:46 [PATCH 0/2] [PATCH 0/2] Updated NetLabel/secid-reconciliation bits and a bugfix paul.moore
2006-10-04 15:46 ` paul.moore
2006-10-04 15:46 ` [PATCH v4 1/2] NetLabel: secid reconciliation support paul.moore
2006-10-04 15:46   ` paul.moore
2006-10-04 15:46 ` [PATCH 2/2] NetLabel: fix a cache race condition paul.moore
2006-10-04 15:46   ` paul.moore
2006-10-04 18:44 ` [PATCH 0/2] [PATCH 0/2] Updated NetLabel/secid-reconciliation bits and a bugfix James Morris
2006-10-04 18:44   ` James Morris
2006-10-04 18:54   ` Paul Moore
2006-10-04 18:54     ` Paul Moore
2006-10-04 22:56     ` James Morris
2006-10-04 22:56       ` James Morris
  -- strict thread matches above, loose matches on Subject: below --
2006-10-04 19:11 Venkat Yekkirala
2006-10-04 19:11 ` Venkat Yekkirala
2006-10-04 19:42 ` Paul Moore
2006-10-04 19:42   ` Paul Moore
2006-10-04 19:48 Venkat Yekkirala
2006-10-04 20:13 ` Paul Moore

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.