[RFC PATCH v2 0/2] ima: Fix detection of read/write violations on stacked filesystems

From: Stefan Berger
Date: Mon Apr 22 2024 - 11:07:32 EST


This series fixes the detection of read/write violations on stacked
filesystems. To be able to access the relevant dentries necessary to
detect files opened for writing on a stacked filesystem a new d_real_type
D_REAL_FILEDATA is introduced that allows callers to access all relevant
files involved in a stacked filesystem while traversing the layers.

Stefan

v2:
- Simplified 2nd patch
- Improvements on patch description on 1st patch

Stefan Berger (2):
ovl: Define D_REAL_FILEDATA for d_real to return dentry with data
ima: Fix detection of read/write violations on stacked filesystems

fs/overlayfs/super.c | 6 ++++++
include/linux/dcache.h | 1 +
security/integrity/ima/ima_main.c | 21 ++++++++++++++++-----
3 files changed, 23 insertions(+), 5 deletions(-)

--
2.43.0