[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <20240422150651.2908169-1-stefanb@linux.ibm.com>
Date: Mon, 22 Apr 2024 11:06:49 -0400
From: Stefan Berger <stefanb@...ux.ibm.com>
To: linux-integrity@...r.kernel.org, linux-unionfs@...r.kernel.org
Cc: linux-kernel@...r.kernel.org, zohar@...ux.ibm.com,
roberto.sassu@...wei.com, amir73il@...il.com, miklos@...redi.hu,
brauner@...nel.org, Stefan Berger <stefanb@...ux.ibm.com>
Subject: [RFC PATCH v2 0/2] ima: Fix detection of read/write violations on stacked filesystems
This series fixes the detection of read/write violations on stacked
filesystems. To be able to access the relevant dentries necessary to
detect files opened for writing on a stacked filesystem a new d_real_type
D_REAL_FILEDATA is introduced that allows callers to access all relevant
files involved in a stacked filesystem while traversing the layers.
Stefan
v2:
- Simplified 2nd patch
- Improvements on patch description on 1st patch
Stefan Berger (2):
ovl: Define D_REAL_FILEDATA for d_real to return dentry with data
ima: Fix detection of read/write violations on stacked filesystems
fs/overlayfs/super.c | 6 ++++++
include/linux/dcache.h | 1 +
security/integrity/ima/ima_main.c | 21 ++++++++++++++++-----
3 files changed, 23 insertions(+), 5 deletions(-)
--
2.43.0
Powered by blists - more mailing lists