Thread (11 messages) 11 messages, 3 authors, 2019-12-17

Re: [Intel-gfx] [PATCH v3 4/7] drm/i915/perf: open access for CAP_SYS_PERFMON privileged process

From: Alexey Budankov <hidden>
Date: 2019-12-17 11:39:08
Also in: bpf, intel-gfx, linux-perf-users, linux-security-module, lkml, selinux

On 17.12.2019 12:45, Lionel Landwerlin wrote:
On 16/12/2019 22:03, Alexey Budankov wrote:
quoted
Open access to i915_perf monitoring for CAP_SYS_PERFMON privileged processes.
For backward compatibility reasons access to i915_perf subsystem remains open
for CAP_SYS_ADMIN privileged processes but CAP_SYS_ADMIN usage for secure
i915_perf monitoring is discouraged with respect to CAP_SYS_PERFMON capability.

Signed-off-by: Alexey Budankov <redacted>

Assuming people are fine with this new cap, I like this idea of a lighter privilege for i915-perf.
Lionel, thanks for your meaningful input!
Appreciate your collaboration.

Regards,
Alexey

-Lionel

Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help