Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1542618
| From | David Howells <dhowells@redhat.com> |
|---|---|
| Newsgroups | linux.kernel |
| Subject | Re: Revised request_key(2) man page for review |
| Date | 2016-12-15 11:20 +0100 |
| Message-ID | <sOBiO-4xG-25@gated-at.bofh.it> (permalink) |
| References | <sOiJc-7xh-29@gated-at.bofh.it> <szOUF-3Dx-13@gated-at.bofh.it> <sOiJc-7xh-29@gated-at.bofh.it> |
| Organization | Red Hat UK Ltd. Registered Address: Red Hat UK Ltd, Amberley Place, 107-111 Peascod Street, Windsor, Berkshire, SI4 1TE, United Kingdom. Registered in England and Wales under Company Registration No. 3798903 |
Michael Kerrisk (man-pages) <mtk.manpages@gmail.com> wrote:
> > │Is 'keyring' allowed to be 0? Reading the source, it │
> > │appears so. In this case, by default, the key is │
> > │assigned to the session keyring. But, the │
> > │KEYCTL_SET_REQKEY_KEYRING also seems to have an │
> > │influence here. What are the details here? │
Yes, the destination keyring can be 0. If you don't specify a destination
keyring, then:
(1) If the key is found to already exist, the serial number is returned, but
no extra link is made.
(2) If an error occurs other than "this key doesn't exist", then you'll just
get the error.
(3) If we have to construct a new key, this will be attached to the default
keyring (as there's no destination keyring to attach to).
> > # echo 'create user mtk:* * /bin/keyctl instantiate %k %c %S' \
> > > /etc/request-keys.conf
There's a /etc/request-keys.d/ directory now.
David
Back to linux.kernel | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread
Re: Revised request_key(2) man page for review "Michael Kerrisk (man-pages)" <mtk.manpages@gmail.com> - 2016-12-14 15:30 +0100
Re: Revised request_key(2) man page for review David Howells <dhowells@redhat.com> - 2016-12-15 11:20 +0100
Re: Revised request_key(2) man page for review "Michael Kerrisk (man-pages)" <mtk.manpages@gmail.com> - 2016-12-17 11:40 +0100
Re: Revised request_key(2) man page for review David Howells <dhowells@redhat.com> - 2016-12-19 09:20 +0100
csiph-web