[PATCH net-next v6 1/5] bpf: Add file mode configuration into bpf maps

Daniel Borkmann daniel at iogearbox.net
Mon Oct 16 22:59:18 UTC 2017


On 10/16/2017 09:11 PM, Chenbo Feng wrote:
> From: Chenbo Feng <fengc at google.com>
>
> Introduce the map read/write flags to the eBPF syscalls that returns the
> map fd. The flags is used to set up the file mode when construct a new
> file descriptor for bpf maps. To not break the backward capability, the
> f_flags is set to O_RDWR if the flag passed by syscall is 0. Otherwise
> it should be O_RDONLY or O_WRONLY. When the userspace want to modify or
> read the map content, it will check the file mode to see if it is
> allowed to make the change.
>
> Signed-off-by: Chenbo Feng <fengc at google.com>
> Acked-by: Alexei Starovoitov <ast at kernel.org>

Acked-by: Daniel Borkmann <daniel at iogearbox.net>
--
To unsubscribe from this list: send the line "unsubscribe linux-security-module" in
the body of a message to majordomo at vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html



More information about the Linux-security-module-archive mailing list