Re: ima: use of radix tree cache indexing == massive waste ofmemory?

From: Peter Zijlstra
Date: Mon Oct 18 2010 - 07:58:15 EST


On Sun, 2010-10-17 at 10:16 -0400, Eric Paris wrote:
> If instead you attack the problem from the other side and start with all
> of the files we'd need some kind of freezer to so we could get the
> atomicity required. We'd have to review every single file on the system
> before we could be certain that the inode was correct. Maybe I'm wrong
> and someone else can help me see how to solve it this way....

Well, you could use the actual freezer to freeze luserspace and then
simply iterate all open files, I mean, those few sods who actually want
this enabled can either pass a boot option to enable from boot or suffer
the overhead on enable, right?


--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/