Lorenzo Marcantonio | 30 Mar 2012 18:57

acl_mask backup gives a row for *each* file

Strange behaviour for acl_mask in backup mode:

acl_mask -br FD /

(used in the backup script) emits a row for *each* file and directory in the system!

This is clearly unacceptable (also, I didn't set any mask and the list where reset a few days ago)

Is this a known issue? I'm using kernel 3.1.5-rbac with the rsbac-admin-1.4.6 userspace.

--

-- 
Lorenzo Marcantonio
Logos Srl
Jens Kasten | 31 Mar 2012 18:38
Picon

Re: acl_mask backup gives a row for *each* file

I  think is should be correct.
Each file and directory must be recorded, but the most are default
values looks like even nothing is set up.

Am Freitag, den 30.03.2012, 18:57 +0200 schrieb Lorenzo Marcantonio:
> Strange behaviour for acl_mask in backup mode:
> 
> acl_mask -br FD /
> 
> (used in the backup script) emits a row for *each* file and directory in the system!
> 
> This is clearly unacceptable (also, I didn't set any mask and the list where reset a few days ago)
> 
> Is this a known issue? I'm using kernel 3.1.5-rbac with the rsbac-admin-1.4.6 userspace.
> 
Lorenzo Marcantonio | 31 Mar 2012 18:40

Re: acl_mask backup gives a row for *each* file

On Sat, Mar 31, 2012 at 06:38:11PM +0200, Jens Kasten wrote:
> I  think is should be correct.
> Each file and directory must be recorded, but the most are default
> values looks like even nothing is set up.

Most of the ACL inherits from the parent; it should generate only the ones which differs (i.e. the ones which
actually have a record attached, not these that are simply inheriting)

--

-- 
Lorenzo Marcantonio
Logos Srl
Jens Kasten | 31 Mar 2012 18:50
Picon

Re: acl_mask backup gives a row for *each* file

Then maybe the rsbac-admin tools for backup have to modify to obtain
such a result.

Am Samstag, den 31.03.2012, 18:40 +0200 schrieb Lorenzo Marcantonio:
> On Sat, Mar 31, 2012 at 06:38:11PM +0200, Jens Kasten wrote:
> > I  think is should be correct.
> > Each file and directory must be recorded, but the most are default
> > values looks like even nothing is set up.
> 
> Most of the ACL inherits from the parent; it should generate only the ones which differs (i.e. the ones
which actually have a record attached, not these that are simply inheriting)
> 
Amon Ott | 2 Apr 2012 08:54

Re: acl_mask backup gives a row for *each* file

On Friday 30 March 2012 wrote Lorenzo Marcantonio:
> Strange behaviour for acl_mask in backup mode:
>
> acl_mask -br FD /
>
> (used in the backup script) emits a row for *each* file and directory in
> the system!
>
> This is clearly unacceptable (also, I didn't set any mask and the list
> where reset a few days ago)
>
> Is this a known issue? I'm using kernel 3.1.5-rbac with the
> rsbac-admin-1.4.6 userspace.

This is a bug. Please try attached path to the tools or use current 
rsbac-admin git branch rsbac-admin-1.4.

Amon.
--

-- 
http://www.rsbac.org - GnuPG: 2048g/5DEAAA30 2002-10-22
Attachment (remove-moveto.diff): text/x-diff, 2122 bytes
_______________________________________________
rsbac mailing list
rsbac <at> rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac
Lorenzo Marcantonio | 2 Apr 2012 11:09

Re: acl_mask backup gives a row for *each* file

On Mon, Apr 02, 2012 at 08:54:31AM +0200, Amon Ott wrote:
> This is a bug. Please try attached path to the tools or use current 
> rsbac-admin git branch rsbac-admin-1.4.

OK fixed with the patch, now it works as before.

Thanks

--

-- 
Lorenzo Marcantonio
Logos Srl

Gmane