linux-fsdevel.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
From: Dave Kleikamp <shaggy@linux.vnet.ibm.com>
To: Pavel Fedin <sonic_amiga@rambler.ru>
Cc: linux-fsdevel@vger.kernel.org, viro@zeniv.linux.org.uk
Subject: Re: [PATCH] small smbfs bugfix
Date: Fri, 26 Jan 2007 08:57:35 -0600	[thread overview]
Message-ID: <1169823455.11159.23.camel@kleikamp.austin.ibm.com> (raw)
In-Reply-To: <9510655228.20070126095123@rambler.ru>

On Fri, 2007-01-26 at 09:51 +0300, Pavel Fedin wrote:
>  Hello!
> 
>  This small patch fixes a problem with smbfs in 2.6.19.2 kernel.
> Should also apply to other kernels.

NACK

>  The problem is that smbfs doesn't understand "user" and "noexec"
> options. This makes it impossible to include into /etc/fstab lines
> like:
> 
> /pc2/myshare /mnt/smb/pc2/myshare smbfs user,noauto 0 0
> 
>  Smbmount expands "user,noauto" to "user,noauto,noexec" plus something
> else, don't remember exactly what. In the result such an entry simply
> can't be mounted because smbfs fails due to unknown options.
>  This patch makes smbfs silently ignoring all unknown options instead of
> producing an error.

I believe the problem is in smbmount.  At the system call level, "user"
and "noauto" are not valid options.  These are usually parsed by the
mount command, but not sent to the mount syscall.  "noexec" also
shouldn't be passed as a string in the syscall, but the MS_NOEXEC flag
should be set in the mountflags argument.

>  Also i would suggest to introduce this behavor to all other
> filesystems. This would greatly improve autofs usability. Imagine a
> situation: i have a ZIP drive and i'd like to be able to use ext2,
> ext3 and vfat-formatted cartridges. Also i'm russian user so i use NLS feature
> for names translation. In the fstab i would write:
> 
> /dev/hdd /mnt/zip ext2,ext3,vfat user,noauto,iocharset=koi8-r,codepage=866 0 0
> 
>  But in this case ext2 and ext3 wouldn't work at all since they would
> fail due to unknown "iocharset" and "codepage" options.

If the file system doesn't honor the option, it shouldn't accept it.  In
the first example, if you really want to mount with noexec, and smbfs
simply ignores it, you've undermined the security of the system.  Not
recognizing the iocharset and codepage probably isn't as big a problem,
but ext2/3 would not be behaving the same was as if it truly respected
those options.

> 
> -- 
> Best regards,
>  Pavel                          mailto:sonic_amiga@rambler.ru

Shaggy
-- 
David Kleikamp
IBM Linux Technology Center


      reply	other threads:[~2007-01-26 14:57 UTC|newest]

Thread overview: 2+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2007-01-26  6:51 [PATCH] small smbfs bugfix Pavel Fedin
2007-01-26 14:57 ` Dave Kleikamp [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=1169823455.11159.23.camel@kleikamp.austin.ibm.com \
    --to=shaggy@linux.vnet.ibm.com \
    --cc=linux-fsdevel@vger.kernel.org \
    --cc=sonic_amiga@rambler.ru \
    --cc=viro@zeniv.linux.org.uk \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).