[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <20231206213102.1824398-1-idosch@nvidia.com>
Date: Wed, 6 Dec 2023 23:31:00 +0200
From: Ido Schimmel <idosch@...dia.com>
To: <netdev@...r.kernel.org>
CC: <davem@...emloft.net>, <kuba@...nel.org>, <pabeni@...hat.com>,
<edumazet@...gle.com>, <nhorman@...driver.com>, <yotam.gi@...il.com>,
<jiri@...nulli.us>, <johannes@...solutions.net>, <jacob.e.keller@...el.com>,
<horms@...nel.org>, <andriy.shevchenko@...ux.intel.com>, <jhs@...atatu.com>,
Ido Schimmel <idosch@...dia.com>
Subject: [PATCH net 0/2] Generic netlink multicast fixes
Restrict two generic netlink multicast groups - in the "psample" and
"NET_DM" families - to be root-only with the appropriate capabilities.
See individual patches for more details.
Ido Schimmel (2):
psample: Require 'CAP_NET_ADMIN' when joining "packets" group
drop_monitor: Require 'CAP_SYS_ADMIN' when joining "events" group
include/net/genetlink.h | 2 ++
net/core/drop_monitor.c | 4 +++-
net/netlink/genetlink.c | 3 +++
net/psample/psample.c | 3 ++-
4 files changed, 10 insertions(+), 2 deletions(-)
--
2.40.1
Powered by blists - more mailing lists