From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-yb1-f193.google.com ([209.85.219.193]:35235 "EHLO mail-yb1-f193.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1725854AbeIVIpS (ORCPT ); Sat, 22 Sep 2018 04:45:18 -0400 Received: by mail-yb1-f193.google.com with SMTP id o63-v6so6267685yba.2 for ; Fri, 21 Sep 2018 19:53:28 -0700 (PDT) Received: from mail-yw1-f53.google.com (mail-yw1-f53.google.com. [209.85.161.53]) by smtp.gmail.com with ESMTPSA id b135-v6sm10619966ywh.24.2018.09.21.19.53.25 for (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Fri, 21 Sep 2018 19:53:25 -0700 (PDT) Received: by mail-yw1-f53.google.com with SMTP id m129-v6so201720ywc.1 for ; Fri, 21 Sep 2018 19:53:25 -0700 (PDT) MIME-Version: 1.0 In-Reply-To: <1ca14e0b-6a95-4efe-7a23-e82d7562df26@schaufler-ca.com> References: <1ca14e0b-6a95-4efe-7a23-e82d7562df26@schaufler-ca.com> From: Kees Cook Date: Fri, 21 Sep 2018 19:53:24 -0700 Message-ID: Subject: Re: [PATCH v4 11/19] LSM: Infrastructure management of the file security To: Casey Schaufler Cc: LSM , James Morris , SE Linux , LKLM , John Johansen , Tetsuo Handa , Paul Moore , Stephen Smalley , "linux-fsdevel@vger.kernel.org" , Alexey Dobriyan , =?UTF-8?B?TWlja2HDq2wgU2FsYcO8bg==?= , Salvatore Mesoraca Content-Type: text/plain; charset="UTF-8" Sender: linux-fsdevel-owner@vger.kernel.org List-ID: On Fri, Sep 21, 2018 at 5:19 PM, Casey Schaufler wrote: > Move management of the file->f_security blob out of the > individual security modules and into the infrastructure. > The modules no longer allocate or free the data, instead > they tell the infrastructure how much space they require. > > Signed-off-by: Casey Schaufler Reviewed-by: Kees Cook -Kees -- Kees Cook Pixel Security