Re: Is CAP_SYS_ADMIN checked by every program !?

From: Bernd Eckenfels (ecki-news2004-12_at_lina.inka.de)
Date: 12/30/04

  • Next message: David Dillow: "[RFC 2.6.10 0/22] Add hardware assist for IPSEC crypto"
    To: linux-kernel@vger.kernel.org
    Date:	Thu, 30 Dec 2004 09:24:58 +0100
    
    

    In article <200412301640.FCB13564.FtFPMSMGJtSOLVOYN@i-love.sakura.ne.jp> you wrote:
    > But anyway, I have to give up checking for CAP_SYS_ADMIN .

    You can add dump_stack(void) from kernel.h to you patch, since there are not
    many sources for SYS_ADMIN capabilities checks in the kernel. You will
    quickly find the syscall in question.

    Greetings
    Bernd
    y
    -
    To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
    the body of a message to majordomo@vger.kernel.org
    More majordomo info at http://vger.kernel.org/majordomo-info.html
    Please read the FAQ at http://www.tux.org/lkml/


  • Next message: David Dillow: "[RFC 2.6.10 0/22] Add hardware assist for IPSEC crypto"

    Relevant Pages

    • Re: [PATCH 2/3] exporting capability name/code pairs (final#2)
      ... Who can pick up this patch to the upstreamed tree? ... I'm not an expert of kernel makefiles. ... | A newer kernel sometimes adds new capabilities, ... | +echo '#ifndef CAP_NAMES_H' ...
      (Linux-Kernel)
    • Re: at program breaks with kernel 2.6.24
      ... Thank you for the patch to try. ... did build the new kernel but it still does not work for me. ... Can't signal atd ... Subject: file capabilities: get rid of cap_task_kill ...
      (Linux-Kernel)
    • Re: Granting some root permissions to certain users
      ... We use a kernel patch called trustees to do just what you're talking ... Unfortunately the patch hasn't really been kept up-to-date. ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)
    • Re: RT-V0.7.47-17 build fails
      ... On Monday 06 June 2005 03:41, Ingo Molnar wrote: ... >> I thought maybe I'd exersize this kernel, but a patch I thought ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)
    • RE: [PATCH] 2.6 workaround for Athlon/Opteron prefetch errata
      ... to avoid so we can get this in to the 2.6 kernel ASAP. ... I am pretty certain the patch won't impact the ... > might want to kill the condition depending on the stepping, ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)