<br><br><div class="gmail_quote">On Mon, Aug 3, 2009 at 1:52 PM, Jeff Layton <span dir="ltr"><<a href="mailto:jlayton@redhat.com">jlayton@redhat.com</a>></span> wrote:<br>> be able to trick the kernel into using a credcache to which the
user doesn't <br>> have access by setting the right uid= option on a mount?<br>
...<br>>
Seems saner and more secure to me.<br>
</div><br>Are you saying "saner" to rename "uid=" for the purposes of the upcall... not<br>just the change to pass the "uid of the process that initiated the upcall" (not<br>the "owner of the files" uid) (If so, I agree)<br>
<br clear="all"><br>-- <br>Thanks,<br><br>Steve<br>