Re: [PATCH] BSD Secure Levels: claim block dev in file struct rather than inode struct, 2.6.11-rc2-mm1 (3/8)

From: Valdis . Kletnieks
Date: Mon Feb 07 2005 - 17:49:49 EST


On Mon, 07 Feb 2005 14:26:03 PST, Chris Wright said:
> * Michael Halcrow (mhalcrow@xxxxxxxxxx) wrote:
> > This is the third in a series of eight patches to the BSD Secure
> > Levels LSM. It moves the claim on the block device from the inode
> > struct to the file struct in order to address a potential
> > circumvention of the control via hard links to block devices. Thanks
> > to Serge Hallyn for pointing this out.
>
> Hard links still point to same inode, what's the issue that this
> addresses?

Ignore that last - I thought it was the "filesystem linking permissions"
thread rather than the BSD Secure linking permissions thread. ;)

Attachment: pgp00000.pgp
Description: PGP signature