lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <1454316409.4754.9.camel@chaos.site>
Date:	Mon, 01 Feb 2016 09:46:49 +0100
From:	Jean Delvare <jdelvare@...e.de>
To:	Andy Lutomirski <luto@...capital.net>
Cc:	Corey Minyard <minyard@....org>, Andy Lutomirski <luto@...nel.org>,
	OpenIPMI Developers <openipmi-developer@...ts.sourceforge.net>,
	linux-kernel <linux-kernel@...r.kernel.org>,
	brijeshkumar.singh@....com
Subject: Re: [Openipmi-developer] ipmi_si feature request: SMBIOS-based
 autoloading

Le Tuesday 26 January 2016 à 09:29 -0800, Andy Lutomirski a écrit :
> On Tue, Jan 26, 2016 at 5:43 AM, Corey Minyard <minyard@....org> wrote:
> >
> > On 01/26/2016 07:32 AM, Corey Minyard wrote:
> >>
> >> On 01/24/2016 07:45 PM, Andy Lutomirski wrote:
> >>> Alternatively, maybe /sys/firmware/dmi could learn how to advertise
> >>> modaliases.  But that might be a giant mess to solve a tiny problem.
> >>
> >> This sounds like the right way, but you are probably right.  Are
> >> there any other resources that could benefit from this?  I"m
> >> guessing not.
> 
> No clue.  Jean might know.  Jean?

In principle I agree it would be the right thing to do.

Now in practice I'm afraid the interest would be limited, because 1* on
so many occasions the DMI data is wrong and 2* the level of details that
can be encoded in the DMI table data is fairly limited. The IPMI records
may be an exception there because IPMI is only found on high-end
hardware and this is where in general the DMI data is correct. But for
most other records, you want to trust the hardware itself more than the
DMI data.

So you only want to rely on DMI data for information you can't get in
any other way. That being said, advertising a modalias is something
fairly safe. The driver getting loaded is free to use or not use the DMI
data.

And even if the only modalias in /sys/firmware/dmi is going to be for
IPMI, I see no reason for not doing that, if it serves the purpose.

-- 
Jean Delvare
SUSE L3 Support

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ