[Devel] [PATCH] SUNRPC: connect to UNIX sockets synchronously

Eric Paris eparis at parisplace.org
Tue Dec 4 06:20:41 PST 2012


On Tue, Dec 4, 2012 at 6:10 AM, Stanislav Kinsbursky
<skinsbursky at parallels.com> wrote:

> But there should be noted, that such implementation introduces limitation
> (Trond's quote):
> "That approach can fall afoul of the selinux restrictions on the process
> context. Processes that are allowed to write data, may not be allowed to
> create sockets or call connect(). That is the main reason for doing it
> in the rpciod context, which is a clean kernel process context."

So you tested this and Trond was wrong?  This work just fine even on
an SELinux box?  Or it does break tons and tons of people's computers?

-Eric



More information about the Devel mailing list