From patchwork Fri Apr 5 16:52:22 2019 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Petr Vorel X-Patchwork-Id: 1078555 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=lists.linux.it (client-ip=2001:1418:10:5::2; helo=picard.linux.it; envelope-from=ltp-bounces+incoming=patchwork.ozlabs.org@lists.linux.it; receiver=) Authentication-Results: ozlabs.org; dmarc=none (p=none dis=none) header.from=suse.cz Received: from picard.linux.it (picard.linux.it [IPv6:2001:1418:10:5::2]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 44bQqB0j6yz9sPR for ; Sat, 6 Apr 2019 03:52:53 +1100 (AEDT) Received: from picard.linux.it (localhost [IPv6:::1]) by picard.linux.it (Postfix) with ESMTP id 425823EAFFE for ; Fri, 5 Apr 2019 18:52:45 +0200 (CEST) X-Original-To: ltp@lists.linux.it Delivered-To: ltp@picard.linux.it Received: from in-3.smtp.seeweb.it (in-3.smtp.seeweb.it [217.194.8.3]) by picard.linux.it (Postfix) with ESMTP id 53C173EAEA7 for ; Fri, 5 Apr 2019 18:52:37 +0200 (CEST) Received: from mx1.suse.de (mx2.suse.de [195.135.220.15]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by in-3.smtp.seeweb.it (Postfix) with ESMTPS id 604171A00E05 for ; Fri, 5 Apr 2019 18:52:35 +0200 (CEST) Received: from relay2.suse.de (unknown [195.135.220.254]) by mx1.suse.de (Postfix) with ESMTP id 64FFBB03C; Fri, 5 Apr 2019 16:52:35 +0000 (UTC) From: Petr Vorel To: ltp@lists.linux.it Date: Fri, 5 Apr 2019 18:52:22 +0200 Message-Id: <20190405165225.27216-1-pvorel@suse.cz> X-Mailer: git-send-email 2.21.0 MIME-Version: 1.0 X-Virus-Scanned: clamav-milter 0.99.2 at in-3.smtp.seeweb.it X-Virus-Status: Clean X-Spam-Status: No, score=-0.0 required=7.0 tests=SPF_PASS autolearn=disabled version=3.4.0 X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on in-3.smtp.seeweb.it Cc: Ignaz Forster , Marcus Meissner , Fabian Vogt , linux-integrity@vger.kernel.org, Mimi Zohar Subject: [LTP] [PATCH v2 0/3] LTP reproducer on broken IMA on overlayfs X-BeenThere: ltp@lists.linux.it X-Mailman-Version: 2.1.18 Precedence: list List-Id: Linux Test Project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: ltp-bounces+incoming=patchwork.ozlabs.org@lists.linux.it Sender: "ltp" Hi, this is a second version of patch demonstrating a bug on overlayfs when combining IMA with EVM. There is ongoing work made by Ignaz Forster and Fabian Vogt [1] [2], IMA only behavior was already fixed [3]. Main patch is the last one (previous are just a cleanup and not changed). Kind regards, Petr [1] https://www.spinics.net/lists/linux-integrity/msg05926.html [2] https://www.spinics.net/lists/linux-integrity/msg03593.html [3] https://patchwork.kernel.org/patch/10776231/ Petr Vorel (3): ima: Call test's cleanup inside ima_setup.sh cleanup shell: Add $TST_DEVICE as default parameter to tst_umount ima: Add overlay test doc/test-writing-guidelines.txt | 4 +- runtest/ima | 1 + testcases/commands/df/df01.sh | 7 +- testcases/commands/mkfs/mkfs01.sh | 2 +- .../integrity/ima/tests/evm_overlay.sh | 86 +++++++++++++++++++ .../security/integrity/ima/tests/ima_setup.sh | 12 ++- .../integrity/ima/tests/ima_violations.sh | 2 - testcases/lib/tst_test.sh | 2 +- 8 files changed, 100 insertions(+), 16 deletions(-) create mode 100755 testcases/kernel/security/integrity/ima/tests/evm_overlay.sh