[PATCH 3/4] watch_queue: Implement mount topology and attribute change notifications

David Howells dhowells at redhat.com
Fri Jul 24 19:59:45 UTC 2020


Linus Torvalds <torvalds at linux-foundation.org> wrote:

> So now you can basically allocate as much kernel memory as you want as
> a regular user, as long as you have a mounted directory you can walk
> (ie everybody).
> 
> Is there any limiting of watches anywhere? I don't see it.

That's a good point.  Any suggestions on how to do it?  An additional RLIMIT?

Or should I do it like I did with keyrings and separately manage a quota for
each user?

David



More information about the Linux-security-module-archive mailing list