diff mbox series

[ksmbd] log that module is experimental at load time

Message ID CAH2r5mv84yZk=FEmSZwNRNXncPs22Fgf6zKLBozgWXbMSJkGMA@mail.gmail.com (mailing list archive)
State New, archived
Headers show
Series [ksmbd] log that module is experimental at load time | expand

Commit Message

Steve French Sept. 21, 2021, 12:43 a.m. UTC
While we are working through detailed security reviews
    of ksmbd server code we should remind users that it is an
    experimental module by adding a warning when the module
    loads.  Currently the module shows as experimental
    in Kconfig and is disabled by default, but we don't want
    to confuse users.

    Although ksmbd passes a wide variety of the
    important functional tests (since initial focus had
    been largely on functional testing such as smbtorture,
    xfstests etc.), and ksmbd has added key security
    features (e.g. GCM256 encryption, Kerberos support),
    there are ongoing detailed reviews of the code base
    for path processing and network buffer decoding, and
    this patch reminds users that the module should be
    considered "experimental."

    Reviewed-by: Namjae Jeon <linkinjeon@kernel.org>
    Reviewed-by: Ronnie Sahlberg <lsahlber@redhat.com>
    Signed-off-by: Steve French <stfrench@microsoft.com>

 err_crypto_destroy:
diff mbox series

Patch

diff --git a/fs/ksmbd/server.c b/fs/ksmbd/server.c
index e6a9f6aa47eb..2a2b2135bfde 100644
--- a/fs/ksmbd/server.c
+++ b/fs/ksmbd/server.c
@@ -584,6 +584,9 @@  static int __init ksmbd_server_init(void)
        ret = ksmbd_workqueue_init();
        if (ret)
                goto err_crypto_destroy;
+
+       pr_warn_once("The ksmbd server is experimental, use at your
own risk.\n");
+
        return 0;