Re: [PATCH 3/3] p9auth: add p9auth driver

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Eric Paris
Date: Wednesday, April 21, 2010 - 6:55 am

On Wed, 2010-04-21 at 10:27 +0100, Alan Cox wrote:

If you do go down this path there is a separate (and actually completely
opposite) but related problem I might be able and willing to work with
you on.  When looking at how auditing works in this modern day and age
of dbus+polkit to get background processes to do work on behalf of a
user we were discussing an interface that would pass the information
about the user to the background server process.  The background server
process could do some magic such that it still had all the permissions
and rights of itself, but had the audit information of the original
user.  Thus even though it was a server process with uid=0 that did the
work, the audit logs could know it was actually on behalf of uid=500.  

It was discussed passing that token of audit information over an AF_UNIX
socket.

-Eric

--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
[PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Tue Apr 20, 6:29 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Greg KH, (Tue Apr 20, 8:04 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Tue Apr 20, 8:45 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Ashwin Ganti, (Tue Apr 20, 9:18 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric W. Biederman, (Tue Apr 20, 9:45 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Alan Cox, (Wed Apr 21, 2:27 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, David Howells, (Wed Apr 21, 3:49 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:21 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:39 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:40 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 6:47 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric Paris, (Wed Apr 21, 6:55 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Alan Cox, (Wed Apr 21, 7:19 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 7:30 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Ashwin Ganti, (Wed Apr 21, 7:44 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 8:09 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric W. Biederman, (Wed Apr 21, 12:15 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Wed Apr 21, 1:23 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Kyle Moffett, (Wed Apr 21, 9:57 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Thu Apr 22, 7:36 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Fri Apr 23, 8:36 pm)
Re: [PATCH 3/3] p9auth: add p9auth driver, ron minnich, (Sat Apr 24, 9:25 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Eric W. Biederman, (Sat Apr 24, 11:01 am)
Re: [PATCH 3/3] p9auth: add p9auth driver, Serge E. Hallyn, (Sat Apr 24, 8:24 pm)