Thread (47 messages) 47 messages, 6 authors, 2024-07-23

Re: [PATCH bpf-next v4 11/20] bpf, lsm: Add disabled BPF LSM hook list

From: Xu Kuohai <xukuohai@huaweicloud.com>
Date: 2024-07-13 08:11:12
Also in: bpf, linux-integrity, linux-kselftest, linux-security-module, selinux

On 7/13/2024 1:56 AM, Alexei Starovoitov wrote:
On Thu, Jul 11, 2024 at 07:18:59PM +0800, Xu Kuohai wrote:
quoted
From: Xu Kuohai <redacted>

Add a disabled hooks list for BPF LSM. progs being attached to the
listed hooks will be rejected by the verifier.

Suggested-by: KP Singh <kpsingh@kernel.org>
Signed-off-by: Xu Kuohai <redacted>
Xu,

The patches 11 and higher are mostly independent from lsm refactoring.
Please send them as a separate patchset for bpf-next.
While lsm cleanups are being reviewed this lsm_disabled list can be
a bit larger temporarily.
It's great to separate patches unrelated to bpf by temporarily extending
the lsm disabled list. I'll post an update. Thanks!
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help