Thread (14 messages) flat view 14 messages, 3 authors, 2006-09-25

Re: [PATCH 1/6] NetLabel: correct improper handling of non-NetLabel peer contexts

From: James Morris <jmorris@namei.org>
Date: 2006-09-21 18:08:16
Also in: selinux

On Thu, 21 Sep 2006, paul.moore@hp.com wrote:
Fix a problem where NetLabel would always set the value of 
sk_security_struct->peer_sid in selinux_netlbl_sock_graft() to the context of
the socket, causing problems when users would query the context of the
connection.  This patch fixes this so that the value in
sk_security_struct->peer_sid is only set when the connection is NetLabel based,
otherwise the value is untouched.
I'll let Thomas comment on the Netlink changes, as he's been working with 
you on them.

These changes otherwise seem ok.  How much testing has this had with and 
without Netlabel enabled?



- James
-- 
James Morris
[off-list ref]
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help