Received: by 10.213.65.68 with SMTP id h4csp1546558imn; Sun, 8 Apr 2018 06:08:18 -0700 (PDT) X-Google-Smtp-Source: AIpwx482GKPa7MXA4/KNOAUBY37DTZ/rMxcHlw0nGEyQ4i8nMz+cG6g7UdSLgDeg5BXa1kZFoWwb X-Received: by 2002:a17:902:2cc1:: with SMTP id n59-v6mr35457734plb.198.1523192898071; Sun, 08 Apr 2018 06:08:18 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1523192898; cv=none; d=google.com; s=arc-20160816; b=aBR5KDWolC3k+g6xGZUbOIWXqhLSuI70E2tqwmJC4T2UpRmF3MPkY5xd9OeUqc67YP Xry3hgXUBnkWAcHuMecaQCMI2YdM1se9BZKCXidz0gwVuInUuw7LvX/UurqYicfrE3/T 41QHcP/y49iAbZ2SeqhXEWrfg2QvMzBbIKznpWs6IGKa1Pf82BOlPwVxdHN5PuE84zeJ N99DG3LrX99fE/kv/7QzUwHJUVBIeZJnWzUzBmYJ4gjc4cl9sUX0yary2RvU3QuNT53L id+yyfx2Ej6g6ID82laobADEIU//2GqVZJV4AkBQSrmVxxta2NEyBw10XH+7uNKO+6/k OJ0A== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :subject:user-agent:references:in-reply-to:message-id:date:cc:to :from:dkim-signature:arc-authentication-results; bh=AR9xcFaxJlj1MFVlMLzJte5zIahufnyiJoYE6DJgNkw=; b=Yq+QWmEvZP2aHxrmCGXZET2eWR1lav73vJSH39MTapTpyk+r5VXi9quoFkQK0TPIwg YodYk+JhSGAKSGLplqH17oFgSXork/pSlaDMUDzbIv/EGAebYW0E1BQGlr8FDTJy511h sxItNSCeKF5ponrWLMCoQ45qNz0P3Uchp/eBjL6IeH3diLHnWDRQcdZmHZRB5uFX8L9/ X/twPSoW2xu1OS8notliPL/rsWZ5NLpqIO0f6Feo8vI5PTUnEpoeyShtWiPJvxf5l2hU zWjAx7N2rxu7EpQ/Blac+wZAnOGcEv/g4EpHUmDcs/XXG2gOoW0dVPEgIvSrRyQncJuK 6Etg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@paul-moore-com.20150623.gappssmtp.com header.s=20150623 header.b=HOvGfGME; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id v10-v6si10080293ply.74.2018.04.08.06.07.40; Sun, 08 Apr 2018 06:08:18 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@paul-moore-com.20150623.gappssmtp.com header.s=20150623 header.b=HOvGfGME; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1752184AbeDHMuv (ORCPT + 99 others); Sun, 8 Apr 2018 08:50:51 -0400 Received: from mail-qk0-f177.google.com ([209.85.220.177]:34818 "EHLO mail-qk0-f177.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1751402AbeDHMut (ORCPT ); Sun, 8 Apr 2018 08:50:49 -0400 Received: by mail-qk0-f177.google.com with SMTP id c188so6361937qkg.2 for ; Sun, 08 Apr 2018 05:50:49 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=paul-moore-com.20150623.gappssmtp.com; s=20150623; h=from:to:cc:date:message-id:in-reply-to:references:user-agent :subject:mime-version:content-transfer-encoding; bh=AR9xcFaxJlj1MFVlMLzJte5zIahufnyiJoYE6DJgNkw=; b=HOvGfGME3t611k3C4/krBPsgZyrGTodVZBCB3f8aMfqa4ZHq2BOOxLzeHlukRAQ6nX MKKDINPq/Gv+BmeS1ZyUeFS0RYOJhwohS4dGXo2l5pg3KpogKO6sk+YuhL193ieAhSkZ w6jdmRrXSFlASdcrA6UpyXLmZXSpo6ywCR9+NpvWjdPWnEiOxO/ohiJc2Vg3V1mx8pyW dTH6eMjxmzEgl/Xt+ChB4EvB4QLYCsJDUVrNIFgClsFGtmE4q6kfz2ROT/0MVACqdgLJ 3W5DaDEibfH3QLYN0UoYi/+QTEudqo13YlnidZTIKWKNSAzgkR5dWATz5FIizdNPvuoG mMHg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:cc:date:message-id:in-reply-to :references:user-agent:subject:mime-version :content-transfer-encoding; bh=AR9xcFaxJlj1MFVlMLzJte5zIahufnyiJoYE6DJgNkw=; b=F4R0mMtiaAhMjSVCtg8Fis7yQLHbkmcrmcX2xfwcH+zMxhiODHL95txbWBTbe6pg/y HuKsySzYv+1GYW66DwgxGx7mAy2VAPQ/F42ewVvSfhxmRfIXHkjPh50mQzW4PhFQRXz0 bYQKARP+IGYE3xVRsnxUO0eQgi74XwO9EQleBruUKteEA/7KuyHEI+QWyUIoyXtrhTjc tOO0iGoKaaO7zCzuuXUaeDeTLacaW0QlF+Jm4cBBt/wavd8SFQkLlDb5FMlsEmKNlNUn 2Y1YAxR9L//dca2mFN4htEwQ/Eqc6zQxX5R5bM/dGOaT/i+tDoAqTnSMyGMTguXaa4JF vVgQ== X-Gm-Message-State: ALQs6tAPcWRfROFhXhYFYcfAUwwJnW4WHRG1FiUXLI7CCbjg6JWKvocp XRLTQo9N3SuVlDkfa9FoYRqt X-Received: by 10.233.221.2 with SMTP id r2mr44013862qkf.259.1523191848883; Sun, 08 Apr 2018 05:50:48 -0700 (PDT) Received: from [192.168.7.102] (pool-108-20-156-165.bstnma.fios.verizon.net. [108.20.156.165]) by smtp.gmail.com with ESMTPSA id u11sm2363644qkk.87.2018.04.08.05.50.47 (version=TLS1_2 cipher=ECDHE-RSA-CHACHA20-POLY1305 bits=256/256); Sun, 08 Apr 2018 05:50:47 -0700 (PDT) From: Paul Moore To: Linus Torvalds , Richard Haines CC: Xin Long , , LSM List , Linux Kernel Mailing List Date: Sun, 08 Apr 2018 08:50:46 -0400 Message-ID: <162a54f1470.2781.85c95baa4474aabc7814e68940a78392@paul-moore.com> In-Reply-To: References: <1523120055.31267.13.camel@btinternet.com> User-Agent: AquaMail/1.14.2-840 (build: 101400201) Subject: Re: [GIT PULL] SELinux patches for v4.17 MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On April 7, 2018 1:03:57 PM Linus Torvalds = wrote: On Sat, Apr 7, 2018 at 9:54 AM, Richard Haines wrote: So please check my resolution, but also somebody should tell me "Linus, you're a cretin, sctp_connect() doesn't want that security_sctp_bind_connect() at all because it was already done by XYZ" sctp_connect() or __sctp_connect() do not need to call security_sctp_bind_connect(). This is because the connect(2) call will handle the checks required via security_socket_connect(): Ok, thanks, that's exactly what I wanted to get. Anyway, somebody should still verify that it all looks good in my tree, but I don't actually expect the merge to have had any issues even if the refactoring made it a bit more complex than most merges are. Thanks for the quick response Richard. Xin Long looked it over and gave it the thumbs up, I'll take a look too, bu= t to be honest I trust his SCTP understanding much more than mine. I also = do weekly tests of each rcX release at a minimum so if something odd pops u= p I'll make sure you get a fix. Thanks again everyone. -- paul moore www.paul-moore.com