[PATCH] tracefs: Restrict tracefs when the kernel is locked down

Steven Rostedt rostedt at goodmis.org
Wed Jul 31 01:48:03 UTC 2019


On Tue, 30 Jul 2019 11:47:34 -0700
Matthew Garrett <matthewgarrett at google.com> wrote:

> Tracefs may release more information about the kernel than desirable, so
> restrict it when the kernel is locked down in confidentiality mode by
> preventing open().
> 
> Signed-off-by: Matthew Garrett <mjg59 at google.com>
> Cc: Steven Rostedt <rostedt at goodmis.org>

Reviewed-by: Steven Rostedt (VMware) <rostedt at goodmis.org>

-- Steve



More information about the Linux-security-module-archive mailing list