All of lore.kernel.org
 help / color / mirror / Atom feed
From: Dan Smith <danms@us.ibm.com>
To: "Serge E. Hallyn" <serue@us.ibm.com>
Cc: containers@lists.osdl.org, John Dykstra <jdykstra72@gmail.com>,
	netdev@vger.kernel.org
Subject: Re: [PATCH 2/4] [RFC] Add c/r support for connected INET sockets
Date: Wed, 21 Oct 2009 11:05:05 -0700	[thread overview]
Message-ID: <87ws2oei7i.fsf@caffeine.danplanet.com> (raw)
In-Reply-To: <20091021175624.GA20972@us.ibm.com> (Serge E. Hallyn's message of "Wed\, 21 Oct 2009 12\:56\:24 -0500")

SH> Sorry, I think we've discussed this before but can't recall - does
SH> setting sport here allow an unpriv user to bypass
SH> CAP_NET_BIND_SERVICE?

Yes, it does.  I was kinda considering that part of the input sanity
checking that I officially punted on.  However, as far as I know,
we'll just need to check that capability before we bind() in the
listen/closed case and hash in the connected case.

-- 
Dan Smith
IBM Linux Technology Center
email: danms@us.ibm.com

  reply	other threads:[~2009-10-21 18:05 UTC|newest]

Thread overview: 13+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2009-10-20 21:06 c/r: Add support for connected AF_INET sockets Dan Smith
     [not found] ` <1256072803-3518-1-git-send-email-danms-r/Jw6+rmf7HQT0dZR+AlfA@public.gmane.org>
2009-10-20 21:06   ` [PATCH 1/4] Record and restore skb header marks Dan Smith
     [not found]     ` <1256072803-3518-2-git-send-email-danms-r/Jw6+rmf7HQT0dZR+AlfA@public.gmane.org>
2009-10-21 15:52       ` Serge E. Hallyn
     [not found]         ` <20091021155201.GA15402-r/Jw6+rmf7HQT0dZR+AlfA@public.gmane.org>
2009-10-21 15:57           ` Dan Smith
2009-10-20 21:06   ` [PATCH 3/4] Adjust TCP timestamp values by a scalar value Dan Smith
     [not found]     ` <1256072803-3518-4-git-send-email-danms-r/Jw6+rmf7HQT0dZR+AlfA@public.gmane.org>
2009-10-21 18:06       ` Serge E. Hallyn
     [not found]         ` <20091021180638.GA24465-r/Jw6+rmf7HQT0dZR+AlfA@public.gmane.org>
2009-10-21 18:10           ` Dan Smith
2009-10-20 21:06   ` [PATCH 4/4] Add some content to the readme.txt for socket c/r Dan Smith
     [not found]     ` <1256072803-3518-5-git-send-email-danms-r/Jw6+rmf7HQT0dZR+AlfA@public.gmane.org>
2009-10-23 19:41       ` Oren Laadan
2009-10-20 21:06 ` [PATCH 2/4] [RFC] Add c/r support for connected INET sockets Dan Smith
2009-10-21 17:56   ` Serge E. Hallyn
2009-10-21 18:05     ` Dan Smith [this message]
2009-10-23 19:37   ` Oren Laadan

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=87ws2oei7i.fsf@caffeine.danplanet.com \
    --to=danms@us.ibm.com \
    --cc=containers@lists.osdl.org \
    --cc=jdykstra72@gmail.com \
    --cc=netdev@vger.kernel.org \
    --cc=serue@us.ibm.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.