[PATCH v21 07/12] landlock: Support filesystem access-control

James Morris jmorris at namei.org
Wed Oct 14 18:07:12 UTC 2020


On Thu, 8 Oct 2020, Mickaël Salaün wrote:

> +config ARCH_EPHEMERAL_STATES
> +	def_bool n
> +	help
> +	  An arch should select this symbol if it does not keep an internal kernel
> +	  state for kernel objects such as inodes, but instead relies on something
> +	  else (e.g. the host kernel for an UML kernel).
> +

This is used to disable Landlock for UML, correct? I wonder if it could be 
more specific: "ephemeral states" is a very broad term.

How about something like ARCH_OWN_INODES ?


-- 
James Morris
<jmorris at namei.org>


More information about the Linux-security-module-archive mailing list