Message ID | e79ecc51-4e4d-3ed2-7c0e-3dd194745668@tycho.nsa.gov (mailing list archive) |
---|---|
State | New, archived |
Headers | show
Return-Path: <xen-devel-bounces@lists.xen.org> Received: from mail.wl.linuxfoundation.org (pdx-wl-mail.web.codeaurora.org [172.30.200.125]) by pdx-korg-patchwork.web.codeaurora.org (Postfix) with ESMTP id B7A1D603FA for <patchwork-xen-devel@patchwork.kernel.org>; Wed, 23 Aug 2017 15:58:40 +0000 (UTC) Received: from mail.wl.linuxfoundation.org (localhost [127.0.0.1]) by mail.wl.linuxfoundation.org (Postfix) with ESMTP id A96A9286D5 for <patchwork-xen-devel@patchwork.kernel.org>; Wed, 23 Aug 2017 15:58:40 +0000 (UTC) Received: by mail.wl.linuxfoundation.org (Postfix, from userid 486) id 9E261286E4; Wed, 23 Aug 2017 15:58:40 +0000 (UTC) X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on pdx-wl-mail.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-4.2 required=2.0 tests=BAYES_00, RCVD_IN_DNSWL_MED autolearn=ham version=3.3.1 Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) (using TLSv1.2 with cipher AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by mail.wl.linuxfoundation.org (Postfix) with ESMTPS id 6BDAC286D5 for <patchwork-xen-devel@patchwork.kernel.org>; Wed, 23 Aug 2017 15:58:39 +0000 (UTC) Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.84_2) (envelope-from <xen-devel-bounces@lists.xen.org>) id 1dkY18-0008G5-2m; Wed, 23 Aug 2017 15:56:30 +0000 Received: from mail6.bemta6.messagelabs.com ([193.109.254.103]) by lists.xenproject.org with esmtp (Exim 4.84_2) (envelope-from <dgdegra@tycho.nsa.gov>) id 1dkY16-0008FS-C3 for xen-devel@lists.xen.org; Wed, 23 Aug 2017 15:56:28 +0000 Received: from [193.109.254.147] by server-1.bemta-6.messagelabs.com id F0/F0-03765-BA5AD995; Wed, 23 Aug 2017 15:56:27 +0000 X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFmpmleJIrShJLcpLzFFi42K5JiERrLtq6dx Igzd/9C2WfFzM4sDocXT3b6YAxijWzLyk/IoE1oyFh7tYCrZZVTQ9P8nawNiv38XIwSEh4C/x 7q98FyMXh5BAN6PEs1VLmLoYOYHivhLvjxxkBUlwCtwUlLj18jwLiCMh0Mos8XnVY1aIlg5Gi T/HetkhnG1A/ceOsYL0CwukSZz8uJ0dxBYRiJZYM+MdWAezwCVGiUv/9jBBdLxnlGhcewusg0 1AV2LBwZVg23kFHCSutr4B62YRUJW4tnYbWI2oQLjE/u/XmCFqBCVOznzCAmJzCgRKTL90gQ3 EZhYwk5i3+SEzhC0ucevJfCYIW15i+9s5zBMYRWYhaZ+FpGUWkpZZSFoWMLKsYtQoTi0qSy3S NTbSSyrKTM8oyU3MzNE1NDDTy00tLk5MT81JTCrWS87P3cQIjBAGINjBeHpd4CFGSQ4mJVFeT Z25kUJ8SfkplRmJxRnxRaU5qcWHGGU4OJQkeDWWAOUEi1LTUyvSMnOAsQqTluDgURLhjQJJ8x YXJOYWZ6ZDpE4x6nJsWL3+C5MQS15+XqqUOK8mSJEASFFGaR7cCFjauMQoKyXMywh0lBBPQWp RbmYJqvwrRnEORiVh3kKQKTyZeSVwm14BHcEEdMSkE3NAjihJREhJNTD2tUUffXx/VkomY66h 4o5t85p8vp2b2tnTEdHWfudkpINAUr1OkK7KvAULK2UNurUWioe/kgh//Cz1zhaWw9cXOMzcl nn/f9jqjw92XL9a/eHt4anTvhousvcJ5j0XEpv8wubqsV3+1xTNyn89crv0aEnmilO8f4umf+ /kvdj1TGDZ5Bulb+RmKbEUZyQaajEXFScCAJ6Um/gWAwAA X-Env-Sender: dgdegra@tycho.nsa.gov X-Msg-Ref: server-5.tower-27.messagelabs.com!1503503786!107633509!1 X-Originating-IP: [214.24.24.83] X-SpamReason: No, hits=0.0 required=7.0 tests= X-StarScan-Received: X-StarScan-Version: 9.4.45; banners=-,-,- X-VirusChecked: Checked Received: (qmail 40305 invoked from network); 23 Aug 2017 15:56:26 -0000 Received: from ucol19pa10.eemsg.mail.mil (HELO UCOL19PA10.eemsg.mail.mil) (214.24.24.83) by server-5.tower-27.messagelabs.com with SMTP; 23 Aug 2017 15:56:26 -0000 X-IronPort-AV: E=Sophos;i="5.41,417,1498521600"; d="scan'208";a="318483618" Received: from emsm-gh1-uea10.ncsc.mil ([214.29.60.2]) by UCOL19PA10.eemsg.mail.mil with ESMTP/TLS/AES256-SHA; 23 Aug 2017 15:56:21 +0000 X-IronPort-AV: E=Sophos;i="5.41,417,1498521600"; d="scan'208";a="1390185" IronPort-PHdr: =?us-ascii?q?9a23=3APx2RYRyzAXUDP0XXCy+O+j09IxM/srCxBDY+r6Qd?= =?us-ascii?q?0ugRKfad9pjvdHbS+e9qxAeQG96KurQc0aGH6ejJYi8p2d65qncMcZhBBVcuqP?= =?us-ascii?q?49uEgeOvODElDxN/XwbiY3T4xoXV5h+GynYwAOQJ6tL1LdrWev4jEMBx7xKRR6?= =?us-ascii?q?JvjvGo7Vks+7y/2+94fdbghMgDexe69+IAu5oQjVqMUdnJdvJLs2xhbVuHVDZv?= =?us-ascii?q?5YxXlvJVKdnhb84tm/8Zt++ClOuPwv6tBNX7zic6s3UbJXAjImM3so5MLwrhnM?= =?us-ascii?q?URGP5noHXWoIlBdDHhXI4wv7Xpf1tSv6q/Z91SyHNsD4Ubw4RTKv5LpwRRT2lC?= =?us-ascii?q?kIKSI28GDPisxxkq1bpg6hpwdiyILQeY2ZKeZycr/Ycd4cS2VBRMJRXDFfDI26?= =?us-ascii?q?YYUEEu4NMf9Fo4XholcDqwa1CwuxC+P10jJGm2H43aM63eoiHw/J0gMvENASv3?= =?us-ascii?q?rbt9j1KKUfXPqpwKXUwzjObfVb0ir95ojSdRAhpOmBU7xqfsrXyEkgCQfFhUie?= =?us-ascii?q?p4P7Ijib1/4NvHKB4OpuSOmijHMoqw5srTexyccskJPGi5kJylHE6Sp5wIE1Kc?= =?us-ascii?q?e+SE5ge9GoCpRQtyaEN4ZvRM4pXm9muCE/yrIcuJ67ejAHyZs5yB7Zc/yHaY+I?= =?us-ascii?q?4hD9W+mNPTd0nnVleKiwhxu07EOuyfX8W9Gp3FtFoSdJiNnBum0X2xDN5cWLVO?= =?us-ascii?q?Fx8lqn1D2SzQ7c8PtELloxlafDLp4hxaM/mYQLvETYGy/2hF32jKiLdkU44uSo?= =?us-ascii?q?6/roYrHhppKEK497kBv+MqUzmsykG+g4LggPUHSb+eS7zrHj+1H2QK5WgfEsl6?= =?us-ascii?q?nZsZTaKdwapq6/HQBVzp4u5wuwAjqpytgVnWQLIEhbdB+IkYTlIUzCLOj9Dfil?= =?us-ascii?q?glSslDlrx+rBPr3kGpjCM3fDn6r/crZy8U5T0hE+zcxf5p1ICrEBJ+j/WknqtN?= =?us-ascii?q?PCFBM5PAu0w/j/BNVnyoweQX6PArOeMK7KqlCI4vggLPWPZI8Ouzb8K/cl5/H1?= =?us-ascii?q?gH82nF8SZ6ip3Z8NZH+kGfRmJl2TYWDwjdcZDWcKog0+QfTxiF2ZTT5cfW29UL?= =?us-ascii?q?w45jE/CYKmC4bDS5uugLOfxie7GINZZmRcBlCLC3foeJ2OW+0QZyKKPs9hjjsE?= =?us-ascii?q?WKCuSoA/0xGirRL1xKR5LuXK/i0Vrpbj1Nlu5+3PjhE+7zN1ANqb022XSGF0hG?= =?us-ascii?q?wITScs3K9juUx91kuD0a9gjvxaCNxT4/JJXRk8NZLGwOx6Ecr9WgbFftqSUlmm?= =?us-ascii?q?WNCmDSstQdI2xt8Ee1x9FMm6jhDfwyqqBKcYl7OVC5wz6KLc0Gb+K9xgxHbb0q?= =?us-ascii?q?khi0MpQtNUOGK4m65z7RTcB4/Vk0WDlqarer4Q0zLK9GeG1WCOpl1XUBZsUaXZ?= =?us-ascii?q?WnASfknWos/n6UPfS7+uCKgoMgtaxM6ZN6tKccPmgU9aS/fkPdTUe3ixlHuoBR?= =?us-ascii?q?aU2rOMa5LndH8b3CrAEkgLjQ4S8WyaOgg5ASehu3zRDCZgGF/0f0zs8PV+qGm6?= =?us-ascii?q?Tk471Q2Fc0ph17/msiIS0M6cTPUczL9MnCY842F+GF+23MnVGtWPjwVkdaRYJ9?= =?us-ascii?q?g65QEDnVnFugJ0OJvoFLxrjFMadwVxvgu6zA5rA49NlcwrqnICzwdoL6+cllRb?= =?us-ascii?q?eGXL84r3P+j7I2/z8RTnR6Oe9UvX2djerqsA5Pk3sVzLoBCiFk1k9W5uldZSzS?= =?us-ascii?q?3Ptd3xEAMOXMepAQ4M/B9gquSfO3Bl6g=3D=3D?= X-IPAS-Result: =?us-ascii?q?A2BzAQDspJ1Z/wHyM5BdGQEBAQEBAQEBAQEBBwEBAQEBFQE?= =?us-ascii?q?BAQECAQEBAQgBAQEBgwQrZIEVni+BcIg5iQeGbwchDYUZAoRGVwEBAQEBAQEBA?= =?us-ascii?q?gFqKIIzJAGCQQEBAQMBIgQRQRALDQEKAgImAgIhBy8GAQwGAgEBiAuCCgMVEK9?= =?us-ascii?q?hgWw6IgKHFw2EGQEBAQEBAQEBAQEBAQEBAQEBARsFgQ2CHYICg1qCSDSCV4Uvg?= =?us-ascii?q?mEFoBw8h1aGbYEKAYR2i2WGf0iLeIluV4EKKAwfKg+GFYFqJDYBiwABAQE?= Received: from unknown (HELO tarius.tycho.ncsc.mil) ([144.51.242.1]) by EMSM-GH1-UEA10.NCSC.MIL with ESMTP; 23 Aug 2017 15:56:18 +0000 Received: from moss-nexus.infosec.tycho.ncsc.mil (moss-nexus [192.168.25.48]) by tarius.tycho.ncsc.mil (8.14.4/8.14.4) with ESMTP id v7NFuCMa009583; Wed, 23 Aug 2017 11:56:13 -0400 To: Zhongze Liu <blackskygg@gmail.com>, Stefano Stabellini <sstabellini@kernel.org> References: <20170822180840.20981-1-blackskygg@gmail.com> <20170822180840.20981-5-blackskygg@gmail.com> <alpine.DEB.2.10.1708221247070.12143@sstabellini-ThinkPad-X260> <CAHrd_jqUb_Dg69gef-kZZSo-2eYfNJNNP5WZk6tMj+L+Bn8iQQ@mail.gmail.com> From: Daniel De Graaf <dgdegra@tycho.nsa.gov> Message-ID: <e79ecc51-4e4d-3ed2-7c0e-3dd194745668@tycho.nsa.gov> Date: Wed, 23 Aug 2017 11:56:12 -0400 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.2.1 MIME-Version: 1.0 In-Reply-To: <CAHrd_jqUb_Dg69gef-kZZSo-2eYfNJNNP5WZk6tMj+L+Bn8iQQ@mail.gmail.com> Content-Language: en-US Cc: George Dunlap <george.dunlap@eu.citrix.com>, Andrew Cooper <andrew.cooper3@citrix.com>, Julien Grall <julien.grall@arm.com>, Jan Beulich <jbeulich@suse.com>, xen-devel@lists.xen.org Subject: Re: [Xen-devel] [PATCH 4/6] xsm: flask: change the interface and default policy for xsm_map_gmfn_foregin X-BeenThere: xen-devel@lists.xen.org X-Mailman-Version: 2.1.18 Precedence: list List-Id: Xen developer discussion <xen-devel.lists.xen.org> List-Unsubscribe: <https://lists.xen.org/cgi-bin/mailman/options/xen-devel>, <mailto:xen-devel-request@lists.xen.org?subject=unsubscribe> List-Post: <mailto:xen-devel@lists.xen.org> List-Help: <mailto:xen-devel-request@lists.xen.org?subject=help> List-Subscribe: <https://lists.xen.org/cgi-bin/mailman/listinfo/xen-devel>, <mailto:xen-devel-request@lists.xen.org?subject=subscribe> Content-Transfer-Encoding: base64 Content-Type: text/plain; charset="utf-8"; Format="flowed" Errors-To: xen-devel-bounces@lists.xen.org Sender: "Xen-devel" <xen-devel-bounces@lists.xen.org> X-Virus-Scanned: ClamAV using ClamSMTP |
--- a/tools/flask/policy/modules/xen.if +++ b/tools/flask/policy/modules/xen.if @@ -127,6 +127,8 @@ define(`domain_comms', ` domain_event_comms($1, $2) allow $1 $2:grant { map_read map_write copy unmap }; allow $2 $1:grant { map_read map_write copy unmap }; + allow $1 $2:mmu share_mem; + allow $2 $1:mmu share_mem; ')