Roland>  Not sure I understand this.  What's the exploit?

    Michael> Connecting from userspace to an SDP socket. People expect
    Michael> sockets to be kernel-level.

Without SDP upstream I don't see the security issue.  Even with SDP
upstream it's dubious: everything coming in from the network should be
untrusted.  I don't see how you can prevent userspace from sending CM
messages on an arbitrary UD QP.

 - R.
_______________________________________________
openib-general mailing list
[email protected]
http://openib.org/mailman/listinfo/openib-general

To unsubscribe, please visit http://openib.org/mailman/listinfo/openib-general

Reply via email to