[RFC][PATCH] device mapper: Add builtin function dm_get_status()

Christoph Hellwig hch at infradead.org
Thu Dec 2 08:44:15 UTC 2021


On Thu, Dec 02, 2021 at 07:59:38AM +0000, Roberto Sassu wrote:
> ok, I will send it together with a patch for a not yet accepted
> software, Integrity Policy Enforcement (IPE), that will be
> the primary user of the introduced functionality.
> 
> Regarding the patch itself, could you please provide a more
> detailed explanation?

We don't build things into the kernel just as hooks.  So in doubt you
need to restructured the code.  And that a security module pokes into
a random block driver is a big hint that whatever you're trying to do is
completely broken.



More information about the Linux-security-module-archive mailing list