[PATCH v14 3/3] selftest/interpreter: Add tests for trusted_for(2) policies

Kees Cook keescook at chromium.org
Fri Oct 8 22:44:51 UTC 2021


On Fri, Oct 08, 2021 at 12:48:40PM +0200, Mickaël Salaün wrote:
> From: Mickaël Salaün <mic at linux.microsoft.com>
> 
> Test that checks performed by trusted_for(2) on file descriptors are
> consistent with noexec mount points and file execute permissions,
> according to the policy configured with the fs.trust_policy sysctl.
> 
> Cc: Al Viro <viro at zeniv.linux.org.uk>
> Cc: Arnd Bergmann <arnd at arndb.de>
> Cc: Andrew Morton <akpm at linux-foundation.org>
> Cc: Kees Cook <keescook at chromium.org>
> Cc: Shuah Khan <shuah at kernel.org>
> Signed-off-by: Mickaël Salaün <mic at linux.microsoft.com>

Thanks for the adjustments!

Reviewed-by: Kees Cook <keescook at chromium.org>

-- 
Kees Cook



More information about the Linux-security-module-archive mailing list