[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-Id: <20160618.222418.1416412894394180688.davem@davemloft.net>
Date: Sat, 18 Jun 2016 22:24:18 -0700 (PDT)
From: David Miller <davem@...emloft.net>
To: miao.wang@...a.tsinghua.edu.cn
Cc: netdev@...r.kernel.org, hannes@...essinduktion.org,
richard.weinberger@...il.com, g.nault@...halink.fr,
shankerwangmiao@...il.com
Subject: Re: [PATCH] net:ppp: replace too strict capability restriction on
opening /dev/ppp
From: Shanker Wang <miao.wang@...a.tsinghua.edu.cn>
Date: Sun, 19 Jun 2016 07:21:27 +0200
> This patch removes the check for CAP_NET_ADMIN in the initial namespace
> when opening /dev/open. Instead, CAP_NET_ADMIN is checked in the user
> namespace the net namespace was created so that /dev/ppp cat get opened
> in a unprivileged container.
>
> Cc: Hannes Frederic Sowa <hannes@...essinduktion.org>
> Cc: Richard Weinberger <richard.weinberger@...il.com>
> Cc: Guillaume Nault <g.nault@...halink.fr>
> Cc: Miao Wang <shankerwangmiao@...il.com>
> Signed-off-by: Miao Wang <miao.wang@...a.tsinghua.edu.cn>
Why are you posting this again?
Powered by blists - more mailing lists