From: Lee Revell <rlrevell@joe-job.com>
To: Chris Wright <chrisw@osdl.org>
Cc: Alexander Nyberg <alexn@telia.com>,
Manfred Georg <mgeorg@arl.wustl.edu>,
gregkh@suse.de, linux-kernel@vger.kernel.org
Subject: Re: [PATCH] capabilities not inherited
Date: Wed, 08 Jun 2005 19:49:25 -0400 [thread overview]
Message-ID: <1118274566.4539.28.camel@mindpipe> (raw)
In-Reply-To: <20050608215904.GE13152@shell0.pdx.osdl.net>
On Wed, 2005-06-08 at 14:59 -0700, Chris Wright wrote:
> * Alexander Nyberg (alexn@telia.com) wrote:
> > btw since the last discussion was about not changing the existing
> > interface and thus exposing security flaws, what about introducing
> > another prctrl that says maybe PRCTRL_ACROSS_EXECVE?
>
> It's not ideal (as you mention, mess upon mess), but maybe it is the
> sanest way to go forward.
>
> > Any new user-space applications must understand the implications of
> > using it so it's safe in that aspect. Yes?
>
> At least less-likely to surprise ;-)
Any new user-space application developers that think about using
capabilities for anything should run away screaming. When the JACK
developers proposed extending the mechanism to meet our needs, we were
basically told the capabilities subsystem is deeply broken and that we'd
have to rewrite the subsystem to do anything useful. We ended up
shoehorning LSM and finally rlimits into doing what we need. Please see
various "realtime LSM" threads for more (a LOT more) on the topic.
Lee
next prev parent reply other threads:[~2005-06-09 0:11 UTC|newest]
Thread overview: 14+ messages / expand[flat|nested] mbox.gz Atom feed top
2005-06-08 20:27 [PATCH] capabilities not inherited Manfred Georg
2005-06-08 20:41 ` Alexander Nyberg
2005-06-08 21:26 ` Manfred Georg
2005-06-08 20:44 ` Chris Wright
2005-06-08 21:20 ` Alexander Nyberg
2005-06-08 21:33 ` Manfred Georg
2005-06-08 21:46 ` Alexander Nyberg
2005-06-08 21:54 ` Chris Wright
2005-06-08 21:59 ` Chris Wright
2005-06-08 23:49 ` Lee Revell [this message]
2005-06-09 2:59 ` David Wagner
2005-06-09 10:32 ` Alexander Nyberg
2005-06-09 14:55 ` David Wagner
2005-06-09 15:31 ` Lee Revell
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1118274566.4539.28.camel@mindpipe \
--to=rlrevell@joe-job.com \
--cc=alexn@telia.com \
--cc=chrisw@osdl.org \
--cc=gregkh@suse.de \
--cc=linux-kernel@vger.kernel.org \
--cc=mgeorg@arl.wustl.edu \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox