[RFC PATCH v9 0/3] Add introspect_access(2) (was O_MAYEXEC)

Matthew Wilcox willy at infradead.org
Thu Sep 10 18:40:33 UTC 2020


On Thu, Sep 10, 2020 at 08:38:21PM +0200, Mickaël Salaün wrote:
> There is also the use case of noexec mounts and file permissions. From
> user space point of view, it doesn't matter which kernel component is in
> charge of defining the policy. The syscall should then not be tied with
> a verification/integrity/signature/appraisal vocabulary, but simply an
> access control one.

permission()?



More information about the Linux-security-module-archive mailing list