Re: [RFC PATCH v3 1/5] kdbus: add creator credentials to the endpoints

2015-10-09 Thread Paul Moore
On Friday, October 09, 2015 10:31:07 AM Stephen Smalley wrote: > mode still remains Yes it does, it looks like I went a little crazy with the Ctrl-K ... thanks for the review, it will be fixed in the next draft. -- paul moore security @ redhat -- To unsubscribe from this list: send the line "u

Re: [RFC PATCH v3 1/5] kdbus: add creator credentials to the endpoints

2015-10-09 Thread Stephen Smalley
On 10/07/2015 07:08 PM, Paul Moore wrote: In order to effectively enforce LSM based access controls we need to have more information about the kdbus endpoint creator than the uid/gid currently stored in the kdbus_node_type struct. This patch replaces the uid/gid values with a reference to the no

[RFC PATCH v3 1/5] kdbus: add creator credentials to the endpoints

2015-10-07 Thread Paul Moore
In order to effectively enforce LSM based access controls we need to have more information about the kdbus endpoint creator than the uid/gid currently stored in the kdbus_node_type struct. This patch replaces the uid/gid values with a reference to the node creator's credential struct which serves