Return-Path: Received: from fieldses.org ([173.255.197.46]:60504 "EHLO fieldses.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S932908AbdCJQhA (ORCPT ); Fri, 10 Mar 2017 11:37:00 -0500 Date: Fri, 10 Mar 2017 11:36:59 -0500 From: "J. Bruce Fields" To: Andy Adamson Cc: Trond Myklebust , Anna Schumaker , NFS list Subject: Re: [PATCH Version 5 00/17] RPCSEC_GSS3 full mode label kernel patch set Message-ID: <20170310163659.GB29791@fieldses.org> References: <20170224221953.5502-1-andros@netapp.com> <20170309214717.GB12553@fieldses.org> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii In-Reply-To: Sender: linux-nfs-owner@vger.kernel.org List-ID: On Fri, Mar 10, 2017 at 09:48:23AM -0500, Andy Adamson wrote: > On Thu, Mar 9, 2017 at 4:47 PM, J. Bruce Fields wrote: > > On Fri, Feb 24, 2017 at 05:19:36PM -0500, andros@netapp.com wrote: > >> From: Andy Adamson > >> > >> This patchset implements RFC 7861 RPCSEC_GSS Version 3 RPCSEC_GSS_CREATE > >> operation with rgs3_label payloads to provide full mode Mandatory Access > >> Control (MAC) when run with NFSv4.2 Labeled NFS using SeLinux. > > > > Is GSSv3 also still planned to be used for COPY? I lost track of that > > discussion. > > > Yes. I'm starting on that now. Great, thanks. Also: do you know if there are any other implementations coming? And is wireshark support on the way? --b.