Re: establishing the callers PID

Thomas Bushnell, BSG
Re: establishing the callers PID
11 May 2002
User-agent: Gnus/5.09 (Gnus v5.9.0) Emacs/21.2

Marcus Brinkmann <Marcus.Brinkmann@ruhr-uni-bochum.de> writes:

> Mmh, we could restrict the monitor to trusted filesystems (eg /).

Right, but that's already a Hurd-specific extension.  So it's fine to
expect it to use another Hurd-specific extension to get a reliable PID
or other identification.

> I am not really particularly attached to my example, it was just one of the
> first that came to my mind.  Are you suggesting with "I don't think that
> this is a serious security issue" that relying on a PID provided by the user
> is good enough in the general case?  Or were you only relating this to my
> example?

I think it's reasonable to rely on a pid supplied by the user.

