Re: [PATCH net-next v6 1/5] bpf: Add file mode configuration into bpf maps
From: Daniel Borkmann <daniel@iogearbox.net>
Date: 2017-10-16 22:59:21
Also in:
linux-security-module, selinux
From: Daniel Borkmann <daniel@iogearbox.net>
Date: 2017-10-16 22:59:21
Also in:
linux-security-module, selinux
On 10/16/2017 09:11 PM, Chenbo Feng wrote:
From: Chenbo Feng <redacted> Introduce the map read/write flags to the eBPF syscalls that returns the map fd. The flags is used to set up the file mode when construct a new file descriptor for bpf maps. To not break the backward capability, the f_flags is set to O_RDWR if the flag passed by syscall is 0. Otherwise it should be O_RDONLY or O_WRONLY. When the userspace want to modify or read the map content, it will check the file mode to see if it is allowed to make the change. Signed-off-by: Chenbo Feng <redacted> Acked-by: Alexei Starovoitov <ast@kernel.org>
Acked-by: Daniel Borkmann <daniel@iogearbox.net>