Is there a reason we do not turn on the file system hardlink/symlink protection in Rawhide?

Richard W.M. Jones rjones at redhat.com
Wed Mar 13 19:01:12 UTC 2013


On Wed, Mar 13, 2013 at 02:55:58PM -0400, seth vidal wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> On Wed, 13 Mar 2013 14:52:37 -0400
> Daniel J Walsh <dwalsh at redhat.com> wrote:
> 
> > -----BEGIN PGP SIGNED MESSAGE-----
> > Hash: SHA1
> > 
> > sysctl -a | grep protected
> > fs.protected_hardlinks = 0
> > fs.protected_symlinks = 0
> 
> 
> I apologize for the ignorance - but what do these _do_.
> 
> (please don't say they protect your hardlinks and symlinks) - I mean
> what does 'protected' mean in this context.

See:

http://lwn.net/Articles/503660/

Rich.

-- 
Richard Jones, Virtualization Group, Red Hat http://people.redhat.com/~rjones
virt-p2v converts physical machines to virtual machines.  Boot with a
live CD or over the network (PXE) and turn machines into KVM guests.
http://libguestfs.org/virt-v2v


More information about the devel mailing list