2008-01-17 23:02:38

by David Howells

[permalink] [raw]
Subject: Re: [NFS] [PATCH 06b/26] Security: Make NFSD work with detached security

J. Bruce Fields <[email protected]> wrote:

> Just curious--why? Are get_kernel_security(), etc., particularly
> expensive?

It involves a kmalloc(). That means an extra possibility for an error. Plus
it may allow you to cache the result of checking whether, say, SELinux
security labels are allowed to be set when passed over NFS (if such is
possible).

David

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
NFS maillist - [email protected]
https://lists.sourceforge.net/lists/listinfo/nfs
_______________________________________________
Please note that [email protected] is being discontinued.
Please subscribe to [email protected] instead.
http://vger.kernel.org/vger-lists.html#linux-nfs