2008-01-17 23:02:42

by David Howells

[permalink] [raw]
Subject: Re: [NFS] [PATCH 06b/26] Security: Make NFSD work with detached security

David Howells <[email protected]> wrote:

> J. Bruce Fields <[email protected]> wrote:
>
> > Just curious--why? Are get_kernel_security(), etc., particularly
> > expensive?
>
> It involves a kmalloc(). That means an extra possibility for an error. Plus
> it may allow you to cache the result of checking whether, say, SELinux
> security labels are allowed to be set when passed over NFS (if such is
> possible).

Apart from that, though, no, it's not particularly expensive.

David

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
NFS maillist - [email protected]
https://lists.sourceforge.net/lists/listinfo/nfs
_______________________________________________
Please note that [email protected] is being discontinued.
Please subscribe to [email protected] instead.
http://vger.kernel.org/vger-lists.html#linux-nfs