Re: [PATCH 3/3] p9auth: add p9auth driver

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Serge E. Hallyn
Date: Wednesday, April 21, 2010 - 6:39 am

Quoting Alan Cox (alan@lxorguk.ukuu.org.uk):

Hi Alan,

sorry I thought I had cc:d you, bc I was pretty sure you'd have some
neat ideas.  Like this one.

One could try to argue that this makes every linux process susceptible
to a trojan making it grant its userid to other tasks, but of course
that's silly since the trojan could just fork.  Well, what this would
buy the attacker is the ability to sit inconspicuously under his old
userid, holding on to the fd until the admin goes out to coffee before
switching userids.

The other thing is that offhand I think the server can't easily tell
from the socket which user namespace the client is in, as ucred only
has .uid.  Though (1) we might need to create a 'struct puser' analogous
to 'struct pid' for signals anyway, (2) userspace can segragate with
fs or net_ns (if abstract sock), and (3) client in a container
presumably won't be able to authenticate itself to server on the
host anyway.

Ashwin (and Ron), I think this idea will give us the same tools that
the p9auth driver does, perhaps in a more unix-y way.  Would you have
objections, or do you see shortcomings?

Thanks, Alan.

-serge
--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
[PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Tue Apr 20, 6:29 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Greg KH, (Tue Apr 20, 8:04 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Tue Apr 20, 8:45 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Ashwin Ganti, (Tue Apr 20, 9:18 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric W. Biederman, (Tue Apr 20, 9:45 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Alan Cox, (Wed Apr 21, 2:27 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, David Howells, (Wed Apr 21, 3:49 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:21 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:39 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:40 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:47 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric Paris, (Wed Apr 21, 6:55 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Alan Cox, (Wed Apr 21, 7:19 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 7:30 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Ashwin Ganti, (Wed Apr 21, 7:44 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 8:09 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric W. Biederman, (Wed Apr 21, 12:15 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 1:23 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Kyle Moffett, (Wed Apr 21, 9:57 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Thu Apr 22, 7:36 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Fri Apr 23, 8:36 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, ron minnich, (Sat Apr 24, 9:25 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric W. Biederman, (Sat Apr 24, 11:01 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Sat Apr 24, 8:24 pm)