]> www.infradead.org Git - users/hch/misc.git/commit
ipe: return -ESTALE instead of -EINVAL on update when new policy has a lower version
authorLuca Boccassi <bluca@debian.org>
Wed, 25 Sep 2024 21:01:33 +0000 (23:01 +0200)
committerFan Wu <wufan@kernel.org>
Thu, 17 Oct 2024 18:37:13 +0000 (11:37 -0700)
commit579941899db4f972507df3bf783518e606bb095a
tree45046a8e51b280f0f36d22e70d52ccbcf2797510
parent8e929cb546ee42c9a61d24fae60605e9e3192354
ipe: return -ESTALE instead of -EINVAL on update when new policy has a lower version

When loading policies in userspace we want a recognizable error when an
update attempts to use an old policy, as that is an error that needs
to be treated differently from an invalid policy. Use -ESTALE as it is
clear enough for an update mechanism.

Signed-off-by: Luca Boccassi <bluca@debian.org>
Reviewed-by: Serge Hallyn <serge@hallyn.com>
Signed-off-by: Fan Wu <wufan@kernel.org>
security/ipe/policy.c