Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1455787
| From | Daniel Micay <danielmicay@gmail.com> |
|---|---|
| Newsgroups | linux.kernel |
| Subject | Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open |
| Date | 2016-08-03 15:00 +0200 |
| Message-ID | <s23Wa-2D9-11@gated-at.bofh.it> (permalink) |
| References | (2 earlier) <s1OX7-1dt-5@gated-at.bofh.it> <s1OX7-1dt-7@gated-at.bofh.it> <s1OX7-1dt-3@gated-at.bofh.it> <s1ZIR-8a-5@gated-at.bofh.it> <s23t8-2tz-13@gated-at.bofh.it> |
| Organization | linux.* mail to news gateway |
[Multipart message — attachments visible in raw view] - view raw
Having this in Yama would also make it probable that there would be a security-centric default. It would end up wiping out unprivileged perf events access on distributions using Yama for ptrace_scope unless they make the explicit decision to disable it. Having the perf subsystem extend the existing perf_event_paranoid sysctl leaves the control over the upstream default in the hands of the perf subsystem, not LSMs.
Back to linux.kernel | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread
[PATCH 1/2] security, perf: allow further restriction of perf_event_open Jeff Vander Stoep <jeffv@google.com> - 2016-07-27 16:50 +0200
Re: [kernel-hardening] [PATCH 1/2] security, perf: allow further restriction of perf_event_open Kees Cook <keescook@chromium.org> - 2016-07-27 22:50 +0200
Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-02 12:50 +0200
Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Arnaldo Carvalho de Melo <acme@kernel.org> - 2016-08-02 15:20 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-02 16:20 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-02 15:30 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Kees Cook <keescook@chromium.org> - 2016-08-02 23:00 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Ingo Molnar <mingo@kernel.org> - 2016-08-03 10:30 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-03 14:30 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-03 15:00 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-03 15:40 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-03 16:50 +0200
RE: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open "Schaufler, Casey" <casey.schaufler@intel.com> - 2016-08-03 17:50 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Kees Cook <keescook@chromium.org> - 2016-08-03 21:30 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-04 00:40 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open ebiederm@xmission.com (Eric W. Biederman) - 2016-08-04 05:40 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-04 11:20 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open ebiederm@xmission.com (Eric W. Biederman) - 2016-08-04 17:30 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-04 17:40 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-03 22:00 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Mark Rutland <mark.rutland@arm.com> - 2016-08-04 12:40 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-04 15:50 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-04 16:20 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-04 17:50 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-04 18:00 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Mark Rutland <mark.rutland@arm.com> - 2016-08-04 18:20 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-04 18:40 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Mark Rutland <mark.rutland@arm.com> - 2016-08-04 19:20 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Daniel Micay <danielmicay@gmail.com> - 2016-08-04 19:40 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open ebiederm@xmission.com (Eric W. Biederman) - 2016-08-04 01:50 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Peter Zijlstra <peterz@infradead.org> - 2016-08-02 23:00 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Jeffrey Vander Stoep <jeffv@google.com> - 2016-08-02 23:20 +0200
Re: [kernel-hardening] Re: [PATCH 1/2] security, perf: allow further restriction of perf_event_open Kees Cook <keescook@chromium.org> - 2016-08-02 23:40 +0200
csiph-web