The kdbuswreck
The kdbuswreck
Posted Apr 25, 2015 0:17 UTC (Sat) by kentonv (subscriber, #92073)In reply to: The kdbuswreck by fandingo
Parent article: The kdbuswreck
As I understand it, passing FDs over dbus is a common thing to do, and that's great. That can easily extend to capsicum-style capabilities.
What I'm arguing against is expanding the use of crapabilities, as kdbus does. If the status quo doesn't already depend on crapability passing in this way then let's not add it now; let's create designs based on FD passing instead.
(I also object to dbus being awfully singleton-y with global namespaces and such, but that ship obviously sailed long ago, so maybe it's not useful to argue now. But: http://www.object-oriented-security.org/lets-argue/single...)
