> What was the reason for making this design choice? While I could
 > certainly provide boot scripts to change the permissions to
 > /dev/infiniband/umad*, I'd rather understand why the decision was made
 > to restrict access.

because /dev/infiniband/umadX allows full unfiltered access to
send/receive any MADs.  Including changing routing tables, bringing
ports down, etc.  Not stuff that unprivileged users should be able to do.

It would make sense to have a higher-level interface that only allows
safe queries without side effects, but that's quite a bit more work than
just changing permissions on device nodes.

 - R.
_______________________________________________
general mailing list
general@lists.openfabrics.org
http://lists.openfabrics.org/cgi-bin/mailman/listinfo/general

To unsubscribe, please visit http://openib.org/mailman/listinfo/openib-general

Reply via email to