Page MenuHomeFreeBSD

Capsicumize file(1)
Needs ReviewPublic

Authored by shubh on Aug 30 2020, 4:48 PM.
Referenced Files
Unknown Object (File)
Tue, Apr 15, 2:17 AM
Unknown Object (File)
Mar 7 2025, 2:56 PM
Unknown Object (File)
Mar 7 2025, 12:20 AM
Unknown Object (File)
Mar 4 2025, 3:23 AM
Unknown Object (File)
Feb 6 2025, 6:23 AM
Unknown Object (File)
Nov 7 2024, 5:32 PM
Unknown Object (File)
Nov 1 2024, 3:32 AM
Unknown Object (File)
Oct 1 2024, 7:51 PM

Details

Summary

Used the cap_fileargs to open the files in capability mode.

file <multiple argument of files>

works in capability mode

This patch has a limitation:

  • file -f a.txt where a.txt has a list of files, doesn't work in capability mode
Test Plan

ktrace file a.txt
kdump | grep cap

Diff Detail

Lint
Lint Skipped
Unit
Tests Skipped

Event Timeline

shubh requested review of this revision.Aug 30 2020, 4:48 PM
delphij added a subscriber: delphij.

Please be sure to talk with upstream (Christos) before making changes.

contrib/file/src/file.c
181

style.

429

I'm not sure if I'm fun of this.
Why we have two diffrent place to enter capability mode?
We can't enter one time like seccomp above?