Roland> Not sure I understand this. What's the exploit?
Michael> Connecting from userspace to an SDP socket. People expect
Michael> sockets to be kernel-level.
Without SDP upstream I don't see the security issue. Even with SDP
upstream it's dubious: everything coming in from the network should be
untrusted. I don't see how you can prevent userspace from sending CM
messages on an arbitrary UD QP.
- R.
_______________________________________________
openib-general mailing list
[email protected]
http://openib.org/mailman/listinfo/openib-general
To unsubscribe, please visit http://openib.org/mailman/listinfo/openib-general