selinux.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* Clarification on kernel threads
@ 2025-09-14  5:15 Rahul Sandhu
  2025-09-15 12:16 ` Stephen Smalley
  0 siblings, 1 reply; 2+ messages in thread
From: Rahul Sandhu @ 2025-09-14  5:15 UTC (permalink / raw)
  To: selinux

Hey,

SELinux has the sid kernel, which when used e.g. as following:
(sidcontext kernel (sys.id sys.role kernel.subj sys.lowlow))

But what privilege level (ring) do kernel threads run in? I can't find
much clarification, and if a kernel thread runs in ring 0, then SELinux
isn't of much use at all then given that the thread has complete access
to both the processor and memory no?

Thanks,
Rahul

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2025-09-15 12:16 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2025-09-14  5:15 Clarification on kernel threads Rahul Sandhu
2025-09-15 12:16 ` Stephen Smalley

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).