Received: by 2002:a25:ab43:0:0:0:0:0 with SMTP id u61csp5577427ybi; Tue, 28 May 2019 15:40:47 -0700 (PDT) X-Google-Smtp-Source: APXvYqyEJNoPlVxzEPZKTdzuOeuo68PC3h17gVSAlaiJdArlcDPV0idpSvWEbLW/BQB43Jxsa59s X-Received: by 2002:a17:902:8648:: with SMTP id y8mr3494967plt.30.1559083247050; Tue, 28 May 2019 15:40:47 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1559083247; cv=none; d=google.com; s=arc-20160816; b=CFAKsGhnSexhaegSoYau9oBhXhRDUZlsxKOLgx0LfFjbfIs/du1udAcLBUWpT/DuVL rxOgkwXiHWA6ef24MW9baFDpSf6pI/2of6c15Ta+nEWKOoP5l22XL81bWDkn9ujylo5V lypLSjItgYUu+hCdm5RVXD64Zh86Xh7l6dVylVkoEQcKN501Aq+/jAUNXP26uJxs1EPU Ams+yiCOupDRx0IYIkcYJ20gZDZfEebJHDmusNWxSkbS094NzOx5mpbLdr3fbYUjYU/x xNlur8Fskn9pluc+E2F2GV9LiSpy/tDDCEUAmz9Wr0IgozOxd/iIca1pT3Pa1KN3+Dk3 TQPw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:mime-version:user-agent:references :message-id:in-reply-to:subject:cc:to:from:date; bh=DZQrWk+gflSu7j81N0PAWJdXf2RFnbxXFOXyEvwec+Y=; b=Df8ZTXYDBk8jlpAdrc14Cooxdzl8/C7bP2ZipuSbehv45NvizOJF6prlNy17rCfWcI ZX6k4SS43VYShfL7jUFv7hZ5ttipjoLiBUdmT4FI2bwffGvjCr8sbKlUz88UC9RV+bwu bQQcNYfr+e/lm1D4JoYI3JLrw41pNgL3WvkIYGjFG62Kr1RuOUlvL7TCrPHtHy64gz6J 70WqlVr6/HeOiYpWVmIl9WKV0bkHKh5FRwZfxhZIdy6dnnG7kwgRUS9Q1JxqL2Sfpe90 UhrnpHIdvPDWUMKdjhoIxZuAd9adODmZk9X8f4iqOXa1xyWqUsEThm0wriOeGJ4k5js7 cPQw== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id k23si22133200pgm.556.2019.05.28.15.40.30; Tue, 28 May 2019 15:40:47 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727769AbfE1VCD (ORCPT + 99 others); Tue, 28 May 2019 17:02:03 -0400 Received: from namei.org ([65.99.196.166]:34926 "EHLO namei.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726683AbfE1VCC (ORCPT ); Tue, 28 May 2019 17:02:02 -0400 Received: from localhost (localhost [127.0.0.1]) by namei.org (8.14.4/8.14.4) with ESMTP id x4SL1l6H006382; Tue, 28 May 2019 21:01:47 GMT Date: Wed, 29 May 2019 07:01:47 +1000 (AEST) From: James Morris To: David Howells cc: keyrings@vger.kernel.org, linux-security-module@vger.kernel.org, linux-kernel@vger.kernel.org Subject: Re: [PATCH 7/7] keys: Grant Link permission to possessers of request_key auth keys In-Reply-To: <155856413201.10428.13385006340817641517.stgit@warthog.procyon.org.uk> Message-ID: References: <155856408314.10428.17035328117829912815.stgit@warthog.procyon.org.uk> <155856413201.10428.13385006340817641517.stgit@warthog.procyon.org.uk> User-Agent: Alpine 2.21 (LRH 202 2017-01-01) MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Wed, 22 May 2019, David Howells wrote: > Grant Link permission to the possessers of request_key authentication keys, > thereby allowing a daemon that is servicing upcalls to arrange things such > that only the necessary auth key is passed to the actual service program > and not all the daemon's pending auth keys. > > Signed-off-by: David Howells Reviewed-by: James Morris -- James Morris