Received: by 10.223.164.221 with SMTP id h29csp3076335wrb; Mon, 9 Oct 2017 17:11:25 -0700 (PDT) X-Received: by 10.84.179.129 with SMTP id b1mr10266059plc.166.1507594285129; Mon, 09 Oct 2017 17:11:25 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1507594285; cv=none; d=google.com; s=arc-20160816; b=VlUwwmiKg1pc8WRhX/dbK4+jAYTViDx4qtkYdwF2SMUMXGcZtfAEIU33afOQkk3TKz 8bL/khJltif+MJI2a/lSMOH6Fht45oN0m6xRsNfJNIdLcRRKhVPhcViy1H6oUXsTqUwk ijNw8oSS9svDW2rIgBHET5PnhWc4vFC4YRxmuUoI277+jhraQXPCEDs3lrY2hoyOHBXR Q3Un1snpry4BvVPKty5/4NbrH8Ti+cMsbywkAwEZ4jglRwJqfPJsb2hdwj49Rk9Tj+CJ sGD6s9VqFeBCo01WmK1d1SiAVkc9kawX2Q1NK4qPqZeXXo/Fb/XMz4gG42M7FhpNVJnT lJRQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding :content-language:in-reply-to:mime-version:user-agent:date :message-id:from:references:cc:to:subject:arc-authentication-results; bh=N6FzY6b42ZGlNTobvQxFi4HfB0kTTB7fZbPTuxcjIXY=; b=jl1I5UdxeRPqm8wIb8Xcypy5HlUPU0AQMjf9It3VXd5QPMcelXq+eAh01aPWqXxQsr wYaNedFdoMwTdqcQ+ZKst2B2y/pi3gKbXaJVvd6FmYnFi30D298M8y3vuYHTw5/2ZGbI EkTn0jhPN3VYqowT0F+88mdFTedk6Higtode5NrU6YTzLkJY6yAULZByMqKNfAYCN3dw reCgta2LhIJpLQDj3WZJVFEb+WIlG5Nn2TbhxGlxN2hemfuTUBm/jFEyxgYYYLpEorAj ZDSMyYQd96O8GPpufpglvO0ilPd3aEpn+OjKvo5bAMjCOuVAX48AaFjgJF5Qi1wxDamo hw6g== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=redhat.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id b91si7487386plb.788.2017.10.09.17.11.11; Mon, 09 Oct 2017 17:11:25 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=redhat.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S932080AbdJJAKp (ORCPT + 99 others); Mon, 9 Oct 2017 20:10:45 -0400 Received: from mail-qt0-f174.google.com ([209.85.216.174]:54177 "EHLO mail-qt0-f174.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1755784AbdJJAKm (ORCPT ); Mon, 9 Oct 2017 20:10:42 -0400 Received: by mail-qt0-f174.google.com with SMTP id n61so18662728qte.10 for ; Mon, 09 Oct 2017 17:10:41 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:cc:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=N6FzY6b42ZGlNTobvQxFi4HfB0kTTB7fZbPTuxcjIXY=; b=VhUIDc1cYNsQ8eJ0/KIgg0p6QZmWcZ9KYxxslqx0QUcz9J3L72KB1t43mNynQp384L kO/+g70/53qKJWIBJvIk9AmFzPhvJGPVeYekaX0/uGOlwlNKIaw8mkmVtGoQ+eEoLYbL lgBHfzRoZXL1TdRsJTu/iwaZ9nb3pC8lgPu8bI7+bY+DZzpdC5Spjan/MVbWz5Z8QLPH ujJuvOMxd2yeP/GvPI3vADkCdunMUeQ+scpqaffYf49Ws7kUdBEpJoybG96dAM54uki7 vmwWi/2VPOaE6mPh+XMRz+R0X3D8kvagtQJxADsZYmjrHG94o2x9foVNlfFgu0bPvdAy MpOA== X-Gm-Message-State: AMCzsaVpaY2r+iadRFM5u8aur1I+R2NgF8JBj9xeRPt89ALIzRb3h0wt yPCQ2psSUPfbhf8nj8Z9BB2g4Q== X-Google-Smtp-Source: AOwi7QCNb1fNVMo2VmIBRpUoAEO49TH5pgpCiCqUmBos+2NPUWKUmK+Gfl/wC/AJPFmvkKJvK8cR9g== X-Received: by 10.55.47.70 with SMTP id v67mr11925824qkh.324.1507594241526; Mon, 09 Oct 2017 17:10:41 -0700 (PDT) Received: from ?IPv6:2601:602:9802:a8dc::e174? ([2601:602:9802:a8dc::e174]) by smtp.gmail.com with ESMTPSA id s22sm3192956qta.67.2017.10.09.17.10.38 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Mon, 09 Oct 2017 17:10:40 -0700 (PDT) Subject: Re: [PATCH v5 2/2] staging: ion: create one device entry per heap To: Mark Brown Cc: Benjamin Gaignard , Sandeep Patil , driverdevel , Greg Kroah-Hartman , =?UTF-8?Q?Arve_Hj=c3=b8nnev=c3=a5g?= , "dri-devel@lists.freedesktop.org" , Linux Kernel Mailing List , Riley Andrews , linux-api@vger.kernel.org, Sumit Semwal , Dan Carpenter References: <1506518409-16887-1-git-send-email-benjamin.gaignard@linaro.org> <1506518409-16887-3-git-send-email-benjamin.gaignard@linaro.org> <2e15edc2-a17f-3930-7d5b-4b5b7d2e0a4d@redhat.com> <20171003164849.rcdgez6lbpmq5llt@sirena.org.uk> <2417c969-357f-d5d9-153a-2180d09b0dc6@redhat.com> <20171003230830.GA132839@sspatil-desktop.mtv.corp.google.com> <20171004101720.ob5f467tro7agpcz@sirena.co.uk> <20171009220858.zwbguqkamzmswqcq@sirena.co.uk> From: Laura Abbott Message-ID: Date: Mon, 9 Oct 2017 17:10:37 -0700 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.3.0 MIME-Version: 1.0 In-Reply-To: <20171009220858.zwbguqkamzmswqcq@sirena.co.uk> Content-Type: text/plain; charset=windows-1252 Content-Language: en-US Content-Transfer-Encoding: 7bit Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On 10/09/2017 03:08 PM, Mark Brown wrote: > On Mon, Oct 09, 2017 at 02:25:47PM -0700, Laura Abbott wrote: > >> Anyway, to move this forward I think we need to see a proof of concept >> of using selinux to protect access to specific heaps. > > Aren't Unix permissions enough with separate files or am I > misunderstanding what you're looking to see a proof of concept for? > The goal is to be able to restrict heap access to certain services and selinux groups on Android so straight unix permissions aren't sufficient. Thanks, Laura From 1580819537940994158@xxx Mon Oct 09 22:09:52 +0000 2017 X-GM-THRID: 1579699119100728687 X-Gmail-Labels: Inbox,Category Forums