> This sounds like the right way to do it. The question is just whether we
> want to put that complicated policy into the kernel or into some userspace
> helper.
A userspace helper sounds interesting, as we also need a way to allow
unprivileged users to invoke kernel crypto, which may require modules to
be loaded.
- James
-- James Morris <jmorris@intercode.com.au>- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/