[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <CA+EESO5GZtSNEyXkmLGS6vNQDDGqrwhmzEpcueQydr99=n+apQ@mail.gmail.com>
Date: Thu, 4 Jun 2020 12:24:53 -0700
From: Lokesh Gidra <lokeshgidra@...gle.com>
To: Stephen Smalley <stephen.smalley.work@...il.com>
Cc: James Morris <jmorris@...ei.org>,
Daniel Colascione <dancol@...gle.com>,
Tim Murray <timmurray@...gle.com>,
SElinux list <selinux@...r.kernel.org>,
LSM List <linux-security-module@...r.kernel.org>,
Linux FS Devel <linux-fsdevel@...r.kernel.org>,
linux-kernel <linux-kernel@...r.kernel.org>, kvm@...r.kernel.org,
Al Viro <viro@...iv.linux.org.uk>,
Paul Moore <paul@...l-moore.com>,
Nick Kralevich <nnk@...gle.com>,
Stephen Smalley <sds@...ho.nsa.gov>,
Andrew Morton <akpm@...ux-foundation.org>,
Suren Baghdasaryan <surenb@...gle.com>
Subject: Re: [PATCH v5 0/3] SELinux support for anonymous inodes and UFFD
Adding a colleague from the Android kernel team.
On Thu, Jun 4, 2020 at 11:52 AM Stephen Smalley
<stephen.smalley.work@...il.com> wrote:
>
> On Wed, Jun 3, 2020 at 11:59 PM James Morris <jmorris@...ei.org> wrote:
> >
> > On Wed, 1 Apr 2020, Daniel Colascione wrote:
> >
> > > Daniel Colascione (3):
> > > Add a new LSM-supporting anonymous inode interface
> > > Teach SELinux about anonymous inodes
> > > Wire UFFD up to SELinux
> > >
> > > fs/anon_inodes.c | 191 ++++++++++++++++++++++------
> > > fs/userfaultfd.c | 30 ++++-
> > > include/linux/anon_inodes.h | 13 ++
> > > include/linux/lsm_hooks.h | 11 ++
> > > include/linux/security.h | 3 +
> > > security/security.c | 9 ++
> > > security/selinux/hooks.c | 53 ++++++++
> > > security/selinux/include/classmap.h | 2 +
> > > 8 files changed, 267 insertions(+), 45 deletions(-)
> >
> > Applied to
> > git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security.git secure_uffd_v5.9
> > and next-testing.
> >
> > This will provide test coverage in linux-next, as we aim to get this
> > upstream for v5.9.
> >
> > I had to make some minor fixups, please review.
>
> LGTM and my userfaultfd test case worked.
Powered by blists - more mailing lists