Received: by 2002:ad5:474a:0:0:0:0:0 with SMTP id i10csp5624858imu; Wed, 30 Jan 2019 00:24:12 -0800 (PST) X-Google-Smtp-Source: ALg8bN6Erz4xuS4Sd8laa74YeYljAtTjGILPNlzzrD53CQ3lDFlr6NsNc9J1au3frKwCUMe/oj/e X-Received: by 2002:a17:902:8346:: with SMTP id z6mr29362796pln.340.1548836652590; Wed, 30 Jan 2019 00:24:12 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1548836652; cv=none; d=google.com; s=arc-20160816; b=wx+KmOFyfv5huzd3Ik5VDsltDuy1ioTGivgiRBjHfWMQzA7VkCdtHI1pPS1+cqsg6l PGBgroStPLLo2Z7+Gseznm1a8sYGZ45UEF4u3lHtQtacA+sMdgPed7HME7BCrR0Ojvhn g2nAr3RttlZaUuCO41t3mNA+1g/ivpDNQa+6AHPp74Qq4DW+qYv+Qst6VW2adyoaJJsc qXdCDVYWJMT9auWh2EV/rPSe/VrcCSNpEED4FEJHdCCXfyXIpPytLuKFrcbFNUnKjjaP Ps2FXs8h/dBeTum6CgyA5lVOgIOMXrSEqOU/sf0n7oYia8oRhOxm7QQqJnAiOCDekvih ulzw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:message-id :mime-version:references:date:from:subject:cc:to:in-reply-to; bh=fUGrF9lETlOdDQmRzRxSxyApjQm/ZmASHkGMNMrKOXo=; b=hmSneqffw8npKznwQCqDYQTwoR53lqfFudegIqNI778riem69KEG9l34U5mF1pyQDp sEP5ANas55hsfuHfiPvk8CD6KoPvKmeKKvTSCvUqhlQbh699ar+zAA9Pys/2Rq//was9 Ok3tWAA9rAhJAUTEA5FLbz2KZep+/zB0FJLca3ESM73ba9+xgoWdCE+R3atQnfZrN0Qi XZPhzvICHdzyLE421LbZrYxIKe0FymY4lFlwOFTD8LXDlP0YPxsmuTa9ngQ+3zQi2777 /rKOfCWQzGSOLXmtzks8KEYIGbwC6MCVkxNkSFn9sGL+GJlZ9RZtrHmUF9rZhOBEp75b o1BQ== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=ibm.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id l8si833940pgr.345.2019.01.30.00.23.57; Wed, 30 Jan 2019 00:24:12 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=ibm.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1730191AbfA3IXL convert rfc822-to-8bit (ORCPT + 99 others); Wed, 30 Jan 2019 03:23:11 -0500 Received: from mx0a-001b2d01.pphosted.com ([148.163.156.1]:47356 "EHLO mx0a-001b2d01.pphosted.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726583AbfA3IXL (ORCPT ); Wed, 30 Jan 2019 03:23:11 -0500 Received: from pps.filterd (m0098399.ppops.net [127.0.0.1]) by mx0a-001b2d01.pphosted.com (8.16.0.27/8.16.0.27) with SMTP id x0U8KFfj142749 for ; Wed, 30 Jan 2019 03:23:10 -0500 Received: from smtp.notes.na.collabserv.com (smtp.notes.na.collabserv.com [192.155.248.81]) by mx0a-001b2d01.pphosted.com with ESMTP id 2qb8avg4rw-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Wed, 30 Jan 2019 03:23:10 -0500 Received: from localhost by smtp.notes.na.collabserv.com with smtp.notes.na.collabserv.com ESMTP for from ; Wed, 30 Jan 2019 08:23:08 -0000 Received: from us1a3-smtp02.a3.dal06.isc4sb.com (10.106.154.159) by smtp.notes.na.collabserv.com (10.106.227.88) with smtp.notes.na.collabserv.com ESMTP; Wed, 30 Jan 2019 08:23:00 -0000 Received: from us1a3-mail108.a3.dal06.isc4sb.com ([10.146.45.126]) by us1a3-smtp02.a3.dal06.isc4sb.com with ESMTP id 2019013008225964-212703 ; Wed, 30 Jan 2019 08:22:59 +0000 In-Reply-To: <8cdb77b6-c160-81d0-62be-5bbf84a98d69@opengridcomputing.com> To: Steve Wise Cc: Doug Ledford , Jason Gunthorpe , Leon Romanovsky , linux-kernel@vger.kernel.org, linux-mm@kvack.org, linux-rdma@vger.kernel.org, Mike Rapoport Subject: Re: [PATCH 0/5] RDMA: reg_remote_mr From: "Joel Nider" Date: Wed, 30 Jan 2019 10:22:59 +0200 References: <1548768386-28289-1-git-send-email-joeln@il.ibm.com> <8cdb77b6-c160-81d0-62be-5bbf84a98d69@opengridcomputing.com> MIME-Version: 1.0 X-KeepSent: 3A13C355:FCBF3024-C2258392:002D8AC7; type=4; name=$KeepSent X-Mailer: IBM Notes Release 9.0.1FP7 August 18, 2016 X-LLNOutbound: False X-Disclaimed: 19363 X-TNEFEvaluated: 1 x-cbid: 19013008-7093-0000-0000-000009FC1B6E X-IBM-SpamModules-Scores: BY=0; FL=0; FP=0; FZ=0; HX=0; KW=0; PH=0; SC=0.425523; ST=0; TS=0; UL=0; ISC=; MB=0.235916 X-IBM-SpamModules-Versions: BY=3.00010503; HX=3.00000242; KW=3.00000007; PH=3.00000004; SC=3.00000277; SDB=6.01153828; UDB=6.00601586; IPR=6.00934202; BA=6.00006216; NDR=6.00000001; ZLA=6.00000005; ZF=6.00000009; ZB=6.00000000; ZP=6.00000000; ZH=6.00000000; ZU=6.00000002; MB=3.00025352; XFM=3.00000015; UTC=2019-01-30 08:23:06 X-IBM-AV-DETECTION: SAVI=unsuspicious REMOTE=unsuspicious XFE=unused X-IBM-AV-VERSION: SAVI=2019-01-30 06:41:57 - 6.00009527 x-cbparentid: 19013008-7094-0000-0000-0000706E1CC0 Message-Id: Content-Type: text/plain; charset="US-ASCII" Content-Transfer-Encoding: 8BIT X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:,, definitions=2019-01-30_07:,, signatures=0 X-Proofpoint-Spam-Reason: safe Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Steve Wise wrote on 01/29/2019 06:44:48 PM: > > On 1/29/2019 7:26 AM, Joel Nider wrote: > > As discussed at LPC'18, there is a need to be able to register a memory > > region (MR) on behalf of another process. One example is the case of > > post-copy container migration, in which CRIU is responsible for setting > > up the migration, but the contents of the memory are from the migrating > > process. In this case, we want all RDMA READ requests to be served by > > the address space of the migration process directly (not by CRIU). This > > patchset implements a new uverbs command which allows an application to > > register a memory region in the address space of another process. > > Hey Joel, > > Dumb question: > > Doesn't this open a security hole by allowing any process to register > memory in any other process? Not a dumb question - there is a security problem. Jason just suggested I look at how ptrace solves the problem, so that's my best option at the moment. Still, I figured it was a good idea to let everyone take a look at what I have so far, and start to get feedback. > Steve. > >