linux-fsdevel.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* [RFC v2 0/3] VFS/NFS support to destroy FS credentials
@ 2017-08-04 14:49 Olga Kornievskaia
  2017-08-04 14:49 ` [RFC v2 1/3] VFS adding destroy_creds call Olga Kornievskaia
                   ` (3 more replies)
  0 siblings, 4 replies; 7+ messages in thread
From: Olga Kornievskaia @ 2017-08-04 14:49 UTC (permalink / raw)
  To: linux-fsdevel, linux-nfs

Allow a user to call into the file system and ask to destroy FS
credentials. For instance, when the user logs out after using
a kerberized NFS share, he destroys Kerberos credentials but NFS
credentials remain valid until the gss context expires. Allow
the user (or things like pam) to trigger destruction of such
credentials.

A userland application would do:

fd = open("/mnt", O_DIRECTORY|O_RDONLY);
syscall(_NR_destroy_creds, fd);

v2: fixing a hasty IS_DIR check, definition of __NR_destroy_creds
and order of the patches
 
Olga Kornievskaia (3):
  VFS adding destroy_creds call
  SUNRPC mark user credentials destroyed
  NFS define vfs destroy_creds functions

 arch/x86/entry/syscalls/syscall_32.tbl |  1 +
 arch/x86/entry/syscalls/syscall_64.tbl |  1 +
 fs/nfs/dir.c                           |  8 ++++++++
 fs/read_write.c                        | 22 ++++++++++++++++++++++
 include/linux/fs.h                     |  2 ++
 include/linux/sunrpc/auth.h            |  5 +++++
 include/linux/syscalls.h               |  2 +-
 include/uapi/asm-generic/unistd.h      |  4 +++-
 kernel/sys_ni.c                        |  1 +
 net/sunrpc/auth.c                      |  9 +++++++++
 net/sunrpc/auth_generic.c              | 15 +++++++++++++++
 net/sunrpc/auth_gss/auth_gss.c         |  3 +++
 12 files changed, 71 insertions(+), 2 deletions(-)

-- 
1.8.3.1

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2017-08-07 15:53 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2017-08-04 14:49 [RFC v2 0/3] VFS/NFS support to destroy FS credentials Olga Kornievskaia
2017-08-04 14:49 ` [RFC v2 1/3] VFS adding destroy_creds call Olga Kornievskaia
2017-08-04 14:49 ` [RFC v2 2/3] SUNRPC mark user credentials destroyed Olga Kornievskaia
2017-08-04 14:49 ` [RFC v2 3/3] NFS define vfs destroy_creds functions Olga Kornievskaia
2017-08-07 10:27 ` [RFC v2 0/3] VFS/NFS support to destroy FS credentials Jeff Layton
2017-08-07 15:35   ` Olga Kornievskaia
2017-08-07 15:53   ` Amir Goldstein

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).