Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1542618

Re: Revised request_key(2) man page for review

From David Howells <dhowells@redhat.com>
Newsgroups linux.kernel
Subject Re: Revised request_key(2) man page for review
Date 2016-12-15 11:20 +0100
Message-ID <sOBiO-4xG-25@gated-at.bofh.it> (permalink)
References <sOiJc-7xh-29@gated-at.bofh.it> <szOUF-3Dx-13@gated-at.bofh.it> <sOiJc-7xh-29@gated-at.bofh.it>
Organization Red Hat UK Ltd. Registered Address: Red Hat UK Ltd, Amberley Place, 107-111 Peascod Street, Windsor, Berkshire, SI4 1TE, United Kingdom. Registered in England and Wales under Company Registration No. 3798903

Show all headers | View raw


Michael Kerrisk (man-pages) <mtk.manpages@gmail.com> wrote:

> >        │Is 'keyring' allowed to be 0? Reading the source, it │
> >        │appears so.  In this case, by default,  the  key  is │
> >        │assigned   to   the   session   keyring.   But,  the │
> >        │KEYCTL_SET_REQKEY_KEYRING  also  seems  to  have  an │
> >        │influence here.  What are the details here?          │

Yes, the destination keyring can be 0.  If you don't specify a destination
keyring, then:

 (1) If the key is found to already exist, the serial number is returned, but
     no extra link is made.

 (2) If an error occurs other than "this key doesn't exist", then you'll just
     get the error.

 (3) If we have to construct a new key, this will be attached to the default
     keyring (as there's no destination keyring to attach to).

> >            # echo 'create user mtk:* *   /bin/keyctl instantiate %k %c %S' \
> >                      > /etc/request-keys.conf

There's a /etc/request-keys.d/ directory now.

David

Back to linux.kernel | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

Re: Revised request_key(2) man page for review "Michael Kerrisk (man-pages)" <mtk.manpages@gmail.com> - 2016-12-14 15:30 +0100
  Re: Revised request_key(2) man page for review David Howells <dhowells@redhat.com> - 2016-12-15 11:20 +0100
    Re: Revised request_key(2) man page for review "Michael Kerrisk (man-pages)" <mtk.manpages@gmail.com> - 2016-12-17 11:40 +0100
      Re: Revised request_key(2) man page for review David Howells <dhowells@redhat.com> - 2016-12-19 09:20 +0100

csiph-web