Re: [PATCH net-2.6.25] Add packet filtering based on process'ssecurity context.

2007-12-09 Thread Samir Bellabes
Tetsuo Handa <[EMAIL PROTECTED]> writes: > Hello, Samir. > > Did you receive the following messages? > Since these messages were dropped at vger.kernel.org , > I'm worrying that you couldn't receive the following messages. Yes, I got it. I will take time to investigate your example. -- To unsubsc

Re: TCP event tracking via netlink...

2007-12-05 Thread Samir Bellabes
on >> >an implementation we can start playing with. >> >> >> FWIW, sounds similar to what these guys are doing with SIFTR for FreeBSD: >> http://caia.swin.edu.au/urp/newtcp/tools.html >> http://caia.swin.edu.au/reports/070824A/CAIA-TR-070824A.pdf > > A

Re: [PATCH net-2.6.25] Add packet filtering based on process'ssecurity context.

2007-11-30 Thread Samir Bellabes
Tetsuo Handa <[EMAIL PROTECTED]> writes: > Hello. > Thank you for detailed explanation. > Samir Bellabes wrote: > >> No, it's performed from the userspace. the goal is to don't touch the >> network stack at all. > OK. One thing I'm worrying. > Us

Re: [PATCH net-2.6.25] Add packet filtering based on process'ssecurity context.

2007-11-30 Thread Samir Bellabes
Tetsuo Handa <[EMAIL PROTECTED]> writes: > Hello. > > Samir Bellabes wrote: >> at security_socket_accept(), the user only accept the fact that the >> application is able to go to sock->ops->accept(). That's the purpose of >> this hook. > Yes. Th

Re: [PATCH net-2.6.25] Add packet filtering based on process'ssecurity context.

2007-11-30 Thread Samir Bellabes
s TCP/DCCP/UDP/. What I care is to give the procotol information to the user, to let him decide. > (3) How do you handle race window between security_socket_accept() > and sock->ops->accept()? > > Samir Bellabes wrote: >> My approach is to get the informations regardin

Re: [PATCH net-2.6.25] Add packet filtering based on process'ssecurity context.

2007-11-28 Thread Samir Bellabes
+obj-$(CONFIG_NET_EVENTS) += cn_net.o cn-y+= cn_queue.o connector.o diff --git a/drivers/connector/cn_net.c b/drivers/connector/cn_net.c new file mode 100644 index 000..4fde17f --- /dev/null +++ b/drivers/connector/cn_net.c @@ -0,0 +1,1118 @@ +/* + * drivers/connector/cn_net.c + * + *

Re: [PATCH] sundance: PHY address form 0, only for device ID 0x0200 (IP100A) (20070605)

2007-06-05 Thread Samir Bellabes
y <= 32 && phy_idx < MII_CNT; phy++) { I think this value can be put in driver_data. Attached patch is doing it, but I didn't test it. tree 602e0c2def631e82635b4f8aad762e69184af143 parent 5ecd3100e695228ac5e0ce0e325e252c0f11806f author Samir Bellabes <[EMAIL PROTECTE

[RFC] [PATCH] Network Events Connector

2007-03-14 Thread Samir Bellabes
ndriva.com/~sbellabes/cn_net/ Signed-off-by: Samir Bellabes <[EMAIL PROTECTED]> -- drivers/connector/Kconfig |8 drivers/connector/Makefile |1 drivers/connector

Re: [RFC] [PATCH] Network Events Connector

2007-03-14 Thread Samir Bellabes
Evgeniy Polyakov <[EMAIL PROTECTED]> writes: > On Fri, Feb 09, 2007 at 05:43:14AM +0100, Samir Bellabes ([EMAIL PROTECTED]) > wrote: >> Hi, >> >> Here is a new feature which can help firewalls to be more application >> aware, so more useful for people.

Re: [RFC] [PATCH] Network Events Connector

2007-03-14 Thread Samir Bellabes
Evgeniy Polyakov <[EMAIL PROTECTED]> writes: > On Fri, Feb 09, 2007 at 05:43:14AM +0100, Samir Bellabes ([EMAIL PROTECTED]) > wrote: >> Hi, >> >> Here is a new feature which can help firewalls to be more application >> aware, so more useful for people.

Re: [RFC] [PATCH] Network Events Connector

2007-03-14 Thread Samir Bellabes
Evgeniy Polyakov <[EMAIL PROTECTED]> writes: > On Fri, Feb 09, 2007 at 05:43:14AM +0100, Samir Bellabes ([EMAIL PROTECTED]) > wrote: >> Hi, >> >> Here is a new feature which can help firewalls to be more application >> aware, so more useful for people.

[RFC] [PATCH] Network Events Connector

2007-02-08 Thread Samir Bellabes
tool, in order to improve it. Thanks a lot, Samir Bellabes tree af484e2d54e2dc43312f171efe1426b236e97bd7 parent 1539b98b561754252dd520b98fa03a688a4f81b5 author Samir Bellabes <[EMAIL PROTECTED]> 1170995340 +0100 committer Samir Bellabes <[EMAIL PROTECTED]> 1170995340 +0100 [PATCH] Netw

Re: [PATCH] Network Events Connector

2006-10-04 Thread Samir Bellabes
Evgeniy Polyakov <[EMAIL PROTECTED]> writes: > On Mon, Oct 02, 2006 at 02:57:55PM +0200, Samir Bellabes ([EMAIL PROTECTED]) > wrote: >> Evgeniy Polyakov <[EMAIL PROTECTED]> writes: >> >> > On Mon, Oct 02, 2006 at 08:11:06AM +0200, Samir Bellabes ([EMAIL

Re: [PATCH] Network Events Connector

2006-10-04 Thread Samir Bellabes
David Miller <[EMAIL PROTECTED]> writes: > From: Samir Bellabes <[EMAIL PROTECTED]> > Date: Mon, 02 Oct 2006 08:11:06 +0200 > >> This patch adds a connector which reports networking's events to >> userspace. It's sending events when a sock has its sk_st

Re: [PATCH] Network Events Connector

2006-10-02 Thread Samir Bellabes
Evgeniy Polyakov <[EMAIL PROTECTED]> writes: > On Mon, Oct 02, 2006 at 08:11:06AM +0200, Samir Bellabes ([EMAIL PROTECTED]) > wrote: >> >> This patch adds a connector which reports networking's events to >> userspace. It's sending events when a sock has

[PATCH] Network Events Connector

2006-10-01 Thread Samir Bellabes
ample, and the firewall, in a such way that the firewall's router will forward incoming packet for this port to the user box. It will avoid adding specific rules to the user's firewall-script, and let the firewall be more interactive for users. Signed-off-by: Samir Bellabes <[EMAIL P

Re: [2.6.18 backport] RTL8168 ethernet support in r8169

2006-09-28 Thread Samir Bellabes
om/people/francois/misc/20060920-2.6.18-r8169-test.patch I have backported this pointed patch to 2.6.17. [1] So far, it have been tested successfully with this devices: RTL-8169 RTL-8169SC RTL-8168 [1] http://cvs.mandriva.com/cgi-bin/viewvc.cgi/packages/cooker/kernel-2.6/current/PATCHES/patches/DN85_