Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1299243 > unrolled thread

[RFC] is_global_init() called on global init sub-thread

Started bySergey Senozhatsky <sergey.senozhatsky.work@gmail.com>
First post2015-12-30 07:30 +0100
Last post2016-01-04 09:00 +0100
Articles 7 — 4 participants

Back to article view | Back to linux.kernel


Contents

  [RFC] is_global_init() called on global init sub-thread Sergey Senozhatsky <sergey.senozhatsky.work@gmail.com> - 2015-12-30 07:30 +0100
    Re: [RFC] is_global_init() called on global init sub-thread "Serge E. Hallyn" <serge.hallyn@ubuntu.com> - 2016-01-01 02:10 +0100
      Re: [RFC] is_global_init() called on global init sub-thread Sergey Senozhatsky <sergey.senozhatsky@gmail.com> - 2016-01-01 02:20 +0100
        Re: [RFC] is_global_init() called on global init sub-thread "Serge E. Hallyn" <serge.hallyn@ubuntu.com> - 2016-01-01 02:20 +0100
          Re: [RFC] is_global_init() called on global init sub-thread Sergey Senozhatsky <sergey.senozhatsky@gmail.com> - 2016-01-01 02:40 +0100
            Re: [RFC] is_global_init() called on global init sub-thread "Serge E. Hallyn" <serge.hallyn@ubuntu.com> - 2016-01-01 03:30 +0100
            Re: [RFC] is_global_init() called on global init sub-thread Richard Guy Briggs <rgb@redhat.com> - 2016-01-04 09:00 +0100

#1299243 — [RFC] is_global_init() called on global init sub-thread

FromSergey Senozhatsky <sergey.senozhatsky.work@gmail.com>
Date2015-12-30 07:30 +0100
Subject[RFC] is_global_init() called on global init sub-thread
Message-ID<qLiqJ-2WZ-1@gated-at.bofh.it>
Hello,

re-upping https://www.redhat.com/archives/linux-audit/2013-December/msg00086.html

Oleg Nesterov wrote:

:Because is_global_init() is only true for the main thread of /sbin/init.
:
:Just look at oom_unkillable_task(). It tries to not kill init. But, say,
:select_bad_process() can happily find a sub-thread of is_global_init()
:and still kill it.

this is still the case, isn't it? at least in some -stable kernels.
is there (or was there) any reason this change has never been committed?
(I'm particularly interested in is_global_init()).

 static inline int is_global_init(struct task_struct *tsk)
 {
-	return tsk->pid == 1;
+	return task_tgid_nr(tsk) == 1;
 }

	-ss
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[toc] | [next] | [standalone]


#1299811

From"Serge E. Hallyn" <serge.hallyn@ubuntu.com>
Date2016-01-01 02:10 +0100
Message-ID<qLWoa-3s5-3@gated-at.bofh.it>
In reply to#1299243
On Wed, Dec 30, 2015 at 03:25:42PM +0900, Sergey Senozhatsky wrote:
> Hello,
> 
> re-upping https://www.redhat.com/archives/linux-audit/2013-December/msg00086.html
> 
> Oleg Nesterov wrote:
> 
> :Because is_global_init() is only true for the main thread of /sbin/init.
> :
> :Just look at oom_unkillable_task(). It tries to not kill init. But, say,
> :select_bad_process() can happily find a sub-thread of is_global_init()
> :and still kill it.
> 
> this is still the case, isn't it? at least in some -stable kernels.
> is there (or was there) any reason this change has never been committed?
> (I'm particularly interested in is_global_init()).

...  seems like it makes sense.  Can you remind us which init you're having
to deal with?

>  static inline int is_global_init(struct task_struct *tsk)
>  {
> -	return tsk->pid == 1;
> +	return task_tgid_nr(tsk) == 1;
>  }
> 
> 	-ss
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[toc] | [prev] | [next] | [standalone]


#1299812

FromSergey Senozhatsky <sergey.senozhatsky@gmail.com>
Date2016-01-01 02:20 +0100
Message-ID<qLWxQ-3vi-3@gated-at.bofh.it>
In reply to#1299811
On (12/31/15 19:08), Serge E. Hallyn wrote:
> > re-upping https://www.redhat.com/archives/linux-audit/2013-December/msg00086.html
> > 
> > Oleg Nesterov wrote:
> > 
> > :Because is_global_init() is only true for the main thread of /sbin/init.
> > :
> > :Just look at oom_unkillable_task(). It tries to not kill init. But, say,
> > :select_bad_process() can happily find a sub-thread of is_global_init()
> > :and still kill it.
> > 
> > this is still the case, isn't it? at least in some -stable kernels.
> > is there (or was there) any reason this change has never been committed?
> > (I'm particularly interested in is_global_init()).
> 
> ...  seems like it makes sense.  Can you remind us which init you're having
> to deal with?
> 

systemd

	-ss

> >  static inline int is_global_init(struct task_struct *tsk)
> >  {
> > -	return tsk->pid == 1;
> > +	return task_tgid_nr(tsk) == 1;
> >  }
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[toc] | [prev] | [next] | [standalone]


#1299814

From"Serge E. Hallyn" <serge.hallyn@ubuntu.com>
Date2016-01-01 02:20 +0100
Message-ID<qLWxQ-3vi-7@gated-at.bofh.it>
In reply to#1299812
On Fri, Jan 01, 2016 at 10:10:35AM +0900, Sergey Senozhatsky wrote:
> On (12/31/15 19:08), Serge E. Hallyn wrote:
> > > re-upping https://www.redhat.com/archives/linux-audit/2013-December/msg00086.html
> > > 
> > > Oleg Nesterov wrote:
> > > 
> > > :Because is_global_init() is only true for the main thread of /sbin/init.
> > > :
> > > :Just look at oom_unkillable_task(). It tries to not kill init. But, say,
> > > :select_bad_process() can happily find a sub-thread of is_global_init()
> > > :and still kill it.
> > > 
> > > this is still the case, isn't it? at least in some -stable kernels.
> > > is there (or was there) any reason this change has never been committed?
> > > (I'm particularly interested in is_global_init()).
> > 
> > ...  seems like it makes sense.  Can you remind us which init you're having
> > to deal with?
> > 
> 
> systemd
> 
> 	-ss

Well it makes sense to me.  The question is whether we are protecting the
thing running as init, or the 'physical' thread with pid 1.  I think it's
the former, so let's push on this.  Please resend the patch with a proper
signed-off-by, and feel free to add

Acked-by: Serge Hallyn <serge.hallyn@canonical.com>

--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[toc] | [prev] | [next] | [standalone]


#1299816

FromSergey Senozhatsky <sergey.senozhatsky@gmail.com>
Date2016-01-01 02:40 +0100
Message-ID<qLWRb-3BQ-1@gated-at.bofh.it>
In reply to#1299814
On (12/31/15 19:18), Serge E. Hallyn wrote:
> On Fri, Jan 01, 2016 at 10:10:35AM +0900, Sergey Senozhatsky wrote:
> > On (12/31/15 19:08), Serge E. Hallyn wrote:
> > > > re-upping https://www.redhat.com/archives/linux-audit/2013-December/msg00086.html
> > > > 
> > > > Oleg Nesterov wrote:
> > > > 
> > > > :Because is_global_init() is only true for the main thread of /sbin/init.
> > > > :
> > > > :Just look at oom_unkillable_task(). It tries to not kill init. But, say,
> > > > :select_bad_process() can happily find a sub-thread of is_global_init()
> > > > :and still kill it.
> > > > 
> > > > this is still the case, isn't it? at least in some -stable kernels.
> > > > is there (or was there) any reason this change has never been committed?
> > > > (I'm particularly interested in is_global_init()).
> > > 
> > > ...  seems like it makes sense.  Can you remind us which init you're having
> > > to deal with?
> > > 
> > 
> > systemd
> > 
> > 	-ss
> 
> Well it makes sense to me.  The question is whether we are protecting the
> thing running as init, or the 'physical' thread with pid 1.  I think it's
> the former, so let's push on this.  Please resend the patch with a proper
> signed-off-by, and feel free to add

thanks. a bit puzzled, would reported-by Oleg and suggested-by Richard
be appropriate? (no objections if Oleg or Richard will submit it).

> Acked-by: Serge Hallyn <serge.hallyn@canonical.com>

	-ss
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[toc] | [prev] | [next] | [standalone]


#1299820

From"Serge E. Hallyn" <serge.hallyn@ubuntu.com>
Date2016-01-01 03:30 +0100
Message-ID<qLXDz-48t-1@gated-at.bofh.it>
In reply to#1299816
On Fri, Jan 01, 2016 at 10:33:53AM +0900, Sergey Senozhatsky wrote:
> On (12/31/15 19:18), Serge E. Hallyn wrote:
> > On Fri, Jan 01, 2016 at 10:10:35AM +0900, Sergey Senozhatsky wrote:
> > > On (12/31/15 19:08), Serge E. Hallyn wrote:
> > > > > re-upping https://www.redhat.com/archives/linux-audit/2013-December/msg00086.html
> > > > > 
> > > > > Oleg Nesterov wrote:
> > > > > 
> > > > > :Because is_global_init() is only true for the main thread of /sbin/init.
> > > > > :
> > > > > :Just look at oom_unkillable_task(). It tries to not kill init. But, say,
> > > > > :select_bad_process() can happily find a sub-thread of is_global_init()
> > > > > :and still kill it.
> > > > > 
> > > > > this is still the case, isn't it? at least in some -stable kernels.
> > > > > is there (or was there) any reason this change has never been committed?
> > > > > (I'm particularly interested in is_global_init()).
> > > > 
> > > > ...  seems like it makes sense.  Can you remind us which init you're having
> > > > to deal with?
> > > > 
> > > 
> > > systemd
> > > 
> > > 	-ss
> > 
> > Well it makes sense to me.  The question is whether we are protecting the
> > thing running as init, or the 'physical' thread with pid 1.  I think it's
> > the former, so let's push on this.  Please resend the patch with a proper
> > signed-off-by, and feel free to add
> 
> thanks. a bit puzzled, would reported-by Oleg and suggested-by Richard
> be appropriate?

Sounds good.

>  (no objections if Oleg or Richard will submit it).

> > Acked-by: Serge Hallyn <serge.hallyn@canonical.com>
> 
> 	-ss
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[toc] | [prev] | [next] | [standalone]


#1300533

FromRichard Guy Briggs <rgb@redhat.com>
Date2016-01-04 09:00 +0100
Message-ID<qN8dA-yT-9@gated-at.bofh.it>
In reply to#1299816
On 16/01/01, Sergey Senozhatsky wrote:
> On (12/31/15 19:18), Serge E. Hallyn wrote:
> > On Fri, Jan 01, 2016 at 10:10:35AM +0900, Sergey Senozhatsky wrote:
> > > On (12/31/15 19:08), Serge E. Hallyn wrote:
> > > > > re-upping https://www.redhat.com/archives/linux-audit/2013-December/msg00086.html
> > > > > 
> > > > > Oleg Nesterov wrote:
> > > > > 
> > > > > :Because is_global_init() is only true for the main thread of /sbin/init.
> > > > > :
> > > > > :Just look at oom_unkillable_task(). It tries to not kill init. But, say,
> > > > > :select_bad_process() can happily find a sub-thread of is_global_init()
> > > > > :and still kill it.
> > > > > 
> > > > > this is still the case, isn't it? at least in some -stable kernels.
> > > > > is there (or was there) any reason this change has never been committed?
> > > > > (I'm particularly interested in is_global_init()).
> > > > 
> > > > ...  seems like it makes sense.  Can you remind us which init you're having
> > > > to deal with?
> > > > 
> > > 
> > > systemd
> > > 
> > > 	-ss
> > 
> > Well it makes sense to me.  The question is whether we are protecting the
> > thing running as init, or the 'physical' thread with pid 1.  I think it's
> > the former, so let's push on this.  Please resend the patch with a proper
> > signed-off-by, and feel free to add
> 
> thanks. a bit puzzled, would reported-by Oleg and suggested-by Richard
> be appropriate? (no objections if Oleg or Richard will submit it).

This works for me.  I have more patches related to it, but I'll
re-submit them later.

> > Acked-by: Serge Hallyn <serge.hallyn@canonical.com>
> 
> 	-ss

- RGB

--
Richard Guy Briggs <rbriggs@redhat.com>
Senior Software Engineer, Kernel Security, AMER ENG Base Operating Systems, Red Hat
Remote, Ottawa, Canada
Voice: +1.647.777.2635, Internal: (81) 32635, Alt: +1.613.693.0684x3545
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[toc] | [prev] | [standalone]


Back to top | Article view | linux.kernel


csiph-web