[PATCH RFC] perf_event: Add support for LSM and SELinux checks

James Morris jmorris at namei.org
Thu Oct 10 19:41:01 UTC 2019


On Thu, 10 Oct 2019, Casey Schaufler wrote:

> > Because it is not necessary.
> 
> The logic escapes me, but OK.

We should only extend the stacking infrastructure to what is concretely 
required. We don't yet have a use-case for stacking perf_event so we 
should keep the code as simple as possible. As soon as multiple LSMs 
determine they need to share the blob, we can convert the code to blob 
sharing.


-- 
James Morris
<jmorris at namei.org>



More information about the Linux-security-module-archive mailing list