Received: by 2002:a05:6a10:22f:0:0:0:0 with SMTP id 15csp815874pxk; Sat, 12 Sep 2020 00:58:49 -0700 (PDT) X-Google-Smtp-Source: ABdhPJzSZg/N8POLd2KPDDAwGL77JDIL3fEVR7YWikoPNY/XKR3FBCjmWsDoi9tgjPGCDt/2iLoR X-Received: by 2002:aa7:dc16:: with SMTP id b22mr6850149edu.252.1599897529273; Sat, 12 Sep 2020 00:58:49 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1599897529; cv=none; d=google.com; s=arc-20160816; b=ziEitIRLZnniEtYmngiuZKlGot3u6so5UOwJX4wkAPjMyexy2OG5C1mfnlvgzqtX+Y nsvlj1HTCVwiinbjrHpsZTwhKEe7nhreW/+RC9ZfYI2J57pAALbA5fSABQZwBv2pV665 z9SMowOPw3AUcaTUcj1bsnx+1K5mOXjfHFvz4ZFB26YOYX565HHC0tJpDmwszU5/7J87 WfRqw4hTouJVcSu+5gIkaJV+am9xPIdg2y7fcY5fJZ+ttNAGMXy/1lErskgre79JsCgC RRz8dwRSDGQSkF0Mb7GJvbM3IgvSsR3eLnT5+/8R6hh9VE/VHMgtm6FVWaSJ6EX/8kEj XEwQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:in-reply-to:content-disposition :mime-version:references:message-id:subject:cc:to:from:date :dkim-signature; bh=SwmgBKMctXV6TtEg0fYkPqOSmPyVvQUoCAnAPe5+4Yw=; b=JmU7CFEGLeHy8ZJoY75/fU2eHh96JaVDmjcogtSss+IEqYPA+s7ii5IadJf0LL5+HJ nYaNPj+/O+F7+UTnpYBGX09tzAineX4/vuZvrxF9D7kLq25D1MdtAmcU+zKjKfFG6ZUR JuN4rftkxMXJPZFp5U/5hGYW5RZRpH13NzBwZsqr5dVRdVjjTeFGgDPz4hPrZnT0SSa5 9cBQ03pd/35nEld9V+fYjt95aGiflPFu+KrgxO4oLKY2Wc4ILfwqrCoyiBF3c8V3TCKf kbYhjZg8BcytwZwoji0YQMR8hIaBmKfI3j4q4WnI9jVjQ928oaB1YTYsPagBi/EnQFcg D3QQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@chromium.org header.s=google header.b=bhWveefs; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=chromium.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id c4si3120690edw.41.2020.09.12.00.58.26; Sat, 12 Sep 2020 00:58:49 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@chromium.org header.s=google header.b=bhWveefs; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=chromium.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1725871AbgILHzQ (ORCPT + 99 others); Sat, 12 Sep 2020 03:55:16 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:45460 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1725834AbgILHzH (ORCPT ); Sat, 12 Sep 2020 03:55:07 -0400 Received: from mail-pl1-x643.google.com (mail-pl1-x643.google.com [IPv6:2607:f8b0:4864:20::643]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id C15D9C0613ED for ; Sat, 12 Sep 2020 00:55:06 -0700 (PDT) Received: by mail-pl1-x643.google.com with SMTP id bh1so1997100plb.12 for ; Sat, 12 Sep 2020 00:55:06 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chromium.org; s=google; h=date:from:to:cc:subject:message-id:references:mime-version :content-disposition:in-reply-to; bh=SwmgBKMctXV6TtEg0fYkPqOSmPyVvQUoCAnAPe5+4Yw=; b=bhWveefsCp+YI5xlakkMnFNndET2vW3kVhSGwfV/mCfiv4CDzaMV/OCiIzY0SHzzv6 b1dtKF6usuNxBxxNupsYEbODeK5eyIybIL46HK2kKImUz0TfGPmz6XFk/CQ+rl1AYdGg 2oYPI7IzyUunJ7NBRgfFqO9TKqfzQ+XD+O5ow= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:subject:message-id:references :mime-version:content-disposition:in-reply-to; bh=SwmgBKMctXV6TtEg0fYkPqOSmPyVvQUoCAnAPe5+4Yw=; b=d7Du/RGvqqvsDAcVVC9lu6FKfqOt5OsuFLRTTydtPgl6ASz6yhbIibK6jAY2O5+NlK 85mr2Llkq0PnRQAepiwfaXrkYITYcsIZuSJ9RhCKZb7XoTyyWldXN7eF8952Xd9wjdON ThGauP9GLkEGnxZEEo6UzVIYwTlVNMqdbG3Xq9cUQQbktUD3ViVezZB+GfUrkms0/cn3 6/03OXPWmAD4+F/NRdYK+V2cRJP2aDsdoCJ9dcd68PO5RTJKxg2aTisOb5/YqpqUK+qK ywxShufnfukOylSeA51mqy1fQIR+Fb8NVnSbOhfUtHgtPqCr8shLXCL29w9uArAuy2Z5 RkBw== X-Gm-Message-State: AOAM532fu0b6hqp0+yeY7tEs7uvp3lWwlld/o5G5g5/wdleKFTq76K4Z AaKhCZCZXGT8jMkuC4UloNK9Sg== X-Received: by 2002:a17:90b:3cb:: with SMTP id go11mr5054511pjb.152.1599897305693; Sat, 12 Sep 2020 00:55:05 -0700 (PDT) Received: from www.outflux.net (smtp.outflux.net. [198.145.64.163]) by smtp.gmail.com with ESMTPSA id a16sm3464188pgh.48.2020.09.12.00.55.04 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Sat, 12 Sep 2020 00:55:04 -0700 (PDT) Date: Sat, 12 Sep 2020 00:55:03 -0700 From: Kees Cook To: John Wood Cc: Jann Horn , Matthew Wilcox , Jonathan Corbet , Alexander Viro , Ingo Molnar , Peter Zijlstra , Juri Lelli , Vincent Guittot , Dietmar Eggemann , Steven Rostedt , Ben Segall , Mel Gorman , Luis Chamberlain , Iurii Zaikin , James Morris , "Serge E. Hallyn" , linux-doc@vger.kernel.org, linux-kernel@vger.kernel.org, linux-fsdevel@vger.kernel.org, linux-security-module@vger.kernel.org Subject: Re: [RESEND][RFC PATCH 0/6] Fork brute force attack mitigation (fbfam) Message-ID: <202009120053.9FB7F2A7@keescook> References: <20200910202107.3799376-1-keescook@chromium.org> <202009101656.FB68C6A@keescook> <20200911144806.GA4128@ubuntu> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20200911144806.GA4128@ubuntu> Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Fri, Sep 11, 2020 at 04:48:06PM +0200, John Wood wrote: > In other words, a late reply to this serie comments is not a lack of > interest. Moreover, I think it would be better that I try to understand and > to implement your ideas before anything else. Understood! :) > My original patch serie is composed of 9 patches, so the 3 lasts are lost. > Kees: Have you removed them for some reason? Can you send them for review? > > security/fbfam: Add two new prctls to enable and disable the fbfam feature > https://github.com/johwood/linux/commit/8a36399847213e7eb7b45b853568a53666bd0083 > > Documentation/security: Add documentation for the fbfam feature > https://github.com/johwood/linux/commit/fb46804541f5c0915f3f48acefbe6dc998815609 > > MAINTAINERS: Add a new entry for the fbfam feature > https://github.com/johwood/linux/commit/4303bc8935334136c6ef47b5e50b87cd2c472c1f Oh, hm, I'm not sure where they went. I think they were missing from my inbox when I saved your series from email. An oversight on my part; apologies! > Is there a problem if I ask for some guidance (replying to this thread) > during the process to do my second patch series? Please feel free! I'm happy to help. :) > My goal is to learn as much as possible doing something useful for the > linux kernel. Sounds good; thanks! -- Kees Cook