Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM)

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Serge E. Hallyn
Date: Tuesday, October 14, 2008 - 4:27 pm

Quoting Mimi Zohar (zohar@linux.vnet.ibm.com):

Don't you need to do a security_inode_free(inode) if the
integrity_inode_alloc() fails?


Apparently it must be safe to call this (and all these hooks) under
rcu_read_lock.  That needs to be mentioned in these descriptions.


Another sentence here to give a random person an idea of whether they
 want this or nog?


Ok but what is 'integrity auditing?'  And does disabling it mean that
hooks are enforced but there's just no audit, or are integrity modules
which can do more (i.e. refuse access or whatever) also stopped?

I guess the word 'audit' is confusing to me in this context.


leak?


"and the contents must be used or copied before the rcu_read_lock is
dropped."

--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
[PATCH 0/3] integrity , Mimi Zohar, (Mon Oct 13, 10:17 am)
[PATCH 1/3] integrity: TPM internel kernel interface, Mimi Zohar, (Mon Oct 13, 10:17 am)
[PATCH 2/3] integrity: Linux Integrity Module(LIM), Mimi Zohar, (Mon Oct 13, 10:17 am)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Christoph Hellwig, (Tue Oct 14, 6:28 am)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), david safford, (Tue Oct 14, 8:27 am)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Serge E. Hallyn, (Tue Oct 14, 8:53 am)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), david safford, (Tue Oct 14, 10:06 am)
Re: [PATCH 1/3] integrity: TPM internel kernel interface, Serge E. Hallyn, (Tue Oct 14, 3:23 pm)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Serge E. Hallyn, (Tue Oct 14, 4:27 pm)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Serge E. Hallyn, (Mon Oct 20, 8:12 am)
Re: [PATCH 1/3] integrity: TPM internel kernel interface, Rajiv Andrade, (Wed Oct 22, 5:47 am)
Re: [PATCH 1/3] integrity: TPM internel kernel interface, Serge E. Hallyn, (Wed Oct 22, 7:49 am)
Re: [PATCH 1/3] integrity: TPM internel kernel interface, Rajiv Andrade, (Fri Oct 24, 1:16 pm)
Re: [PATCH 1/3] integrity: TPM internel kernel interface, Serge E. Hallyn, (Fri Oct 24, 1:31 pm)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Serge E. Hallyn, (Fri Oct 31, 9:22 am)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Dave Hansen, (Fri Oct 31, 9:40 am)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Dave Hansen, (Fri Oct 31, 9:51 am)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Mimi Zohar, (Fri Oct 31, 12:35 pm)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Mimi Zohar, (Fri Oct 31, 12:48 pm)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Dave Hansen, (Fri Oct 31, 2:02 pm)
Re: [PATCH 2/3] integrity: Linux Integrity Module(LIM), Serge E. Hallyn, (Sun Nov 2, 3:57 pm)