Received: by 2002:a05:6a10:f347:0:0:0:0 with SMTP id d7csp1191024pxu; Mon, 23 Nov 2020 14:09:16 -0800 (PST) X-Google-Smtp-Source: ABdhPJz+74vq1uMHBny3e6kbx67abOg19/LV26Xup6bbvbu9dvK4wXt9KoezGlbCS5OoUZqec0Ss X-Received: by 2002:a50:fd8c:: with SMTP id o12mr1298691edt.22.1606169356478; Mon, 23 Nov 2020 14:09:16 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1606169356; cv=none; d=google.com; s=arc-20160816; b=IHP/CEIipiFvVdYuBolCbAC75/lFc0nhH8UOLawKUuL1d3oW8EshOkUqVKuQ4BLD+o MiFPoPr+VQHTHCP2Rue1/YwM92M5gJRymH4iqemqSZKMw0vV+0b1UhZEspmNsdik4gRk zRnOgya7iUeXJK2uRKJ75oowTDDu8jLLM1fYafynNdwoxRuVlxtrR7GWFnynWgIiyzG2 FLqvxGfYqBUpDYYWCk/7COZBNYPSQHCnu00Mzbhe/SiO5Lhx/3YZyavBhnyq3tD4320c u91cRmU6xtCUy0RNFbJiuvCDGJDyl2gfgKI33hPRlJ8kIdcgC2iIjXL6+KCxnzw3kcQM Z4uQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:cc:to:subject:message-id:date:from:in-reply-to :references:mime-version:dkim-signature; bh=ArDHvUzfUiZzh94W960BgkUJZn/5DnacTXHC4Nbv9kI=; b=BzQr8Pft6GsEkKMaG/yQHe7RiT4uPk17F6PYYIrZO3TpOOouS8Xt2ipwOJpfI4MuD0 +2rMi0P/GWs5HTmBqiOBegyNIucLorpSqlV7jcuBqV9vFN1zLuf1UW06r+SUO+xQlCG6 P9j1gp148fCF5QTiLMc9Fn0uR03YcxR73Rg3pA7f2whrNpq2XuiQuoN38Vh78/PB51cR Asu7z1gWd3H9UhoomAYBdQNlPyI92/sqYeu5JwazKHhs0wozHDSX/Qz9wm2VhdIMH0Sg 2H2yRq0aQjuAWkl5WhGFfYDZbsgjWFw0rG7OxFwoLFbfu0VDPrubu9D/IfVMAh2uwYHi D3JA== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@paul-moore-com.20150623.gappssmtp.com header.s=20150623 header.b=Ihm9gWe+; spf=pass (google.com: domain of linux-ext4-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-ext4-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id t1si5263098edc.272.2020.11.23.14.08.46; Mon, 23 Nov 2020 14:09:16 -0800 (PST) Received-SPF: pass (google.com: domain of linux-ext4-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@paul-moore-com.20150623.gappssmtp.com header.s=20150623 header.b=Ihm9gWe+; spf=pass (google.com: domain of linux-ext4-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-ext4-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1732364AbgKWWHA (ORCPT + 99 others); Mon, 23 Nov 2020 17:07:00 -0500 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:60626 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1732349AbgKWWHA (ORCPT ); Mon, 23 Nov 2020 17:07:00 -0500 Received: from mail-ed1-x543.google.com (mail-ed1-x543.google.com [IPv6:2a00:1450:4864:20::543]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 93177C061A52 for ; Mon, 23 Nov 2020 14:06:59 -0800 (PST) Received: by mail-ed1-x543.google.com with SMTP id k4so18757789edl.0 for ; Mon, 23 Nov 2020 14:06:59 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=paul-moore-com.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=ArDHvUzfUiZzh94W960BgkUJZn/5DnacTXHC4Nbv9kI=; b=Ihm9gWe+6m2iCUrCqSrzj2hxvAUOkkHpCGtwhE41f3Rdh8c80xsJegtLMifcQSq7l4 MQxmEg8qFYnoifRMupAHJLQd5lYZm+n6GzQdGqoyCuHFxDt3fXMsW4siDYXty7uFQyR+ ZiLBHsJEHGtWXoprHv+EbMvUbaSfI62VdYDnQ6kSau+U/tc34IQsesxRL2sYZY1EAFs1 LsTOG7yiGz9YGo+XzQObpUnu50coOcAWET1QWObW0HN2FliSyDT2/hew7cMEOL8j6Rt4 CkHD0bLpWTrv0L4vHLaw7qmLF7A/4zumynmI5rzULQJ1fukCf4JWCo9n/ipboGbcKUNv ClRg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=ArDHvUzfUiZzh94W960BgkUJZn/5DnacTXHC4Nbv9kI=; b=VTxkj/I1w/8DBvnfYOYi7P/r+EhoHXcJJaxoNc+2k+WRZoyDvhQE+V/ptjCpeCrZ8a iRYpqnpz1SBOepeaTFbn/YyE5s/qkv74irtr0Sfv6FH+YqbdfjJpRt2wVX3gOEII4phM qILT6A9PBJuVbG5Djpl3y130LfRTIkuoYsitrPf6Fk9fopOXaJmLGECq7dkGgP+HJ67X hLNEAs6tI/m5U2UQRF+rYE6cAAPw46dXehrEmOKJ2J9csdZMR+0vnH7ky0NhqLPzP5yZ ymoYXNvG7FLZo/oSoAe8m+syHMZZhURHxZtD8c/v6iqBir9eRIWnclo0I3XYEQlAKWHi XIZQ== X-Gm-Message-State: AOAM531QjFlAUndxVVR1Lw4ognfGnOMDrX9pLrizq5YIXYVsy9L6USuk lZD8okIG4y8qbRTL23RGFYLkxljHgbja0QGzwjBn X-Received: by 2002:a50:a6d0:: with SMTP id f16mr1171069edc.135.1606169217904; Mon, 23 Nov 2020 14:06:57 -0800 (PST) MIME-Version: 1.0 References: <20201115103718.298186-1-christian.brauner@ubuntu.com> <20201115103718.298186-32-christian.brauner@ubuntu.com> <20201123074157.fqus6fgtcytydp2c@wittgenstein> In-Reply-To: <20201123074157.fqus6fgtcytydp2c@wittgenstein> From: Paul Moore Date: Mon, 23 Nov 2020 17:06:46 -0500 Message-ID: Subject: Re: [PATCH v2 31/39] audit: handle idmapped mounts To: Christian Brauner Cc: Alexander Viro , Christoph Hellwig , linux-fsdevel@vger.kernel.org, John Johansen , James Morris , Mimi Zohar , Dmitry Kasatkin , Stephen Smalley , Casey Schaufler , Arnd Bergmann , Andreas Dilger , OGAWA Hirofumi , Geoffrey Thomas , Mrunal Patel , Josh Triplett , Andy Lutomirski , Theodore Tso , Alban Crequy , Tycho Andersen , David Howells , James Bottomley , Jann Horn , Seth Forshee , =?UTF-8?Q?St=C3=A9phane_Graber?= , Aleksa Sarai , Lennart Poettering , "Eric W. Biederman" , smbarber@chromium.org, Phil Estes , Serge Hallyn , Kees Cook , Todd Kjos , Jonathan Corbet , containers@lists.linux-foundation.org, linux-security-module@vger.kernel.org, linux-api@vger.kernel.org, linux-ext4@vger.kernel.org, linux-audit@redhat.com, linux-integrity@vger.kernel.org, selinux@vger.kernel.org Content-Type: text/plain; charset="UTF-8" Precedence: bulk List-ID: X-Mailing-List: linux-ext4@vger.kernel.org On Mon, Nov 23, 2020 at 2:42 AM Christian Brauner wrote: > On Sun, Nov 22, 2020 at 05:17:39PM -0500, Paul Moore wrote: > > On Sun, Nov 15, 2020 at 5:43 AM Christian Brauner > > wrote: > > > > > > Audit will sometimes log the inode's i_uid and i_gid. Enable audit to log the > > > mapped inode when it is accessed from an idmapped mount. > > > > I mentioned this in an earlier patch in this patchset, but it is worth > > I did not receive that message. I'm guessing just a slow mail relay somewhere as you responded to both of my emails on this patchset, I think we're all set for now :) Thanks. -- paul moore www.paul-moore.com