keys: distinguish per-uid keys in different namespaces
per-uid keys were looked by uid only. Use the user namespace to distinguish the same uid in different namespaces. This does not address key_permission. So a task can for instance try to join a keyring owned by the same uid in another namespace. That will be handled by a separate patch. Signed-off-by:Serge E. Hallyn <serue@us.ibm.com> Acked-by:
David Howells <dhowells@redhat.com> Signed-off-by:
James Morris <jmorris@namei.org>
Showing
- kernel/user.c 1 addition, 1 deletionkernel/user.c
- security/keys/internal.h 3 additions, 1 deletionsecurity/keys/internal.h
- security/keys/key.c 9 additions, 2 deletionssecurity/keys/key.c
- security/keys/keyctl.c 1 addition, 1 deletionsecurity/keys/keyctl.c
- security/keys/process_keys.c 2 additions, 0 deletionssecurity/keys/process_keys.c
- security/keys/request_key.c 1 addition, 1 deletionsecurity/keys/request_key.c
Loading
Please register or sign in to comment