All of lore.kernel.org
 help / color / mirror / Atom feed
From: Gilles Chanteperdrix <gilles.chanteperdrix@xenomai.org>
To: Anders Blomdell <anders.blomdell@domain.hid>
Cc: "xenomai@xenomai.org" <xenomai@xenomai.org>
Subject: Re: [Xenomai-help] Xenomai and capabilities
Date: Tue, 12 Oct 2010 15:53:25 +0200	[thread overview]
Message-ID: <4CB46855.4010401@domain.hid> (raw)
In-Reply-To: <4CB45B06.2070905@domain.hid>

Anders Blomdell wrote:
> CAP_DAC_OVERRIDE fixes this issue (and how safe is that :-( )
> 
> How necessary are CAP_SYS_RAWIO and CAP_DAC_OVERRIDE [the two capabiltities i
> think have the most severe security implications] when main has started running,
> i.e. could I drop them after initialization and still do something useful?

Again: you have just found some reason why Xenomai is unsecure, it just
proves that it is unsecure and there are probably other reasons why it
is unsecure. So, here I do not concur with Jan. Security *is* a
black-and-white domain. Any security hole makes the system unsecure,
there is no gray area, no "partially secure" code.

Either you are ready to make a thourough auditing of the code and plug
all the security holes you find, or you consider Xenomai unsecure.
Plugging two holes you have found and say "I stop now, this is
'reasonably' secure" does not really make sense.

-- 
					    Gilles.


  reply	other threads:[~2010-10-12 13:53 UTC|newest]

Thread overview: 19+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2010-10-11 16:11 [Xenomai-help] Xenomai and capabilities Anders Blomdell
2010-10-11 16:17 ` Gilles Chanteperdrix
2010-10-11 16:17 ` Jan Kiszka
2010-10-11 16:23   ` Gilles Chanteperdrix
2010-10-11 16:44     ` Jan Kiszka
2010-10-11 16:49       ` Gilles Chanteperdrix
2010-10-11 16:58         ` Jan Kiszka
2010-10-12  9:25           ` Anders Blomdell
2010-10-12 10:23             ` Anders Blomdell
2010-10-12 12:56               ` Anders Blomdell
2010-10-12 13:53                 ` Gilles Chanteperdrix [this message]
2010-10-12 14:42                   ` Anders Blomdell
2010-10-12 14:57                     ` Gilles Chanteperdrix
2010-10-12 15:29                       ` Anders Blomdell
2010-10-12 15:41                         ` Gilles Chanteperdrix
2010-10-12 15:33                     ` Philippe Gerum
2010-10-12 17:20                 ` Jan Kiszka
2010-10-12 18:01                   ` Anders Blomdell
2010-10-12 18:13                     ` Jan Kiszka

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=4CB46855.4010401@domain.hid \
    --to=gilles.chanteperdrix@xenomai.org \
    --cc=anders.blomdell@domain.hid \
    --cc=xenomai@xenomai.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.