Thread (47 messages) 47 messages, 6 authors, 2024-07-23

Re: [PATCH bpf-next v4 11/20] bpf, lsm: Add disabled BPF LSM hook list

From: Alexei Starovoitov <hidden>
Date: 2024-07-12 17:56:47
Also in: bpf, linux-integrity, linux-kselftest, linux-security-module, selinux

On Thu, Jul 11, 2024 at 07:18:59PM +0800, Xu Kuohai wrote:
From: Xu Kuohai <redacted>

Add a disabled hooks list for BPF LSM. progs being attached to the
listed hooks will be rejected by the verifier.

Suggested-by: KP Singh <kpsingh@kernel.org>
Signed-off-by: Xu Kuohai <redacted>
Xu,

The patches 11 and higher are mostly independent from lsm refactoring.
Please send them as a separate patchset for bpf-next.
While lsm cleanups are being reviewed this lsm_disabled list can be
a bit larger temporarily.
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help