[PATCH] net/handshake: Add new parameter 'HANDSHAKE_A_ACCEPT_KEYRING'

Chuck Lever chuck.lever at oracle.com
Wed May 7 11:08:51 PDT 2025


On 5/7/25 5:40 AM, hare at kernel.org wrote:
> From: Hannes Reinecke <hare at kernel.org>
> 
> Add a new netlink parameter 'HANDSHAKE_A_ACCEPT_KEYRING' to provide
> the serial number of the keyring to use.

This needs to go through netdev at vger.kernel.org.

Acked-by: Chuck Lever <chuck.lever at oracle.com>


> Signed-off-by: Hannes Reinecke <hare at kernel.org>
> ---
>  include/uapi/linux/handshake.h | 1 +
>  net/handshake/tlshd.c          | 6 ++++++
>  2 files changed, 7 insertions(+)
> 
> diff --git a/include/uapi/linux/handshake.h b/include/uapi/linux/handshake.h
> index 3d7ea58778c9..662e7de46c54 100644
> --- a/include/uapi/linux/handshake.h
> +++ b/include/uapi/linux/handshake.h
> @@ -45,6 +45,7 @@ enum {
>  	HANDSHAKE_A_ACCEPT_PEER_IDENTITY,
>  	HANDSHAKE_A_ACCEPT_CERTIFICATE,
>  	HANDSHAKE_A_ACCEPT_PEERNAME,
> +	HANDSHAKE_A_ACCEPT_KEYRING,
>  
>  	__HANDSHAKE_A_ACCEPT_MAX,
>  	HANDSHAKE_A_ACCEPT_MAX = (__HANDSHAKE_A_ACCEPT_MAX - 1)
> diff --git a/net/handshake/tlshd.c b/net/handshake/tlshd.c
> index d6f52839827e..081093dfd553 100644
> --- a/net/handshake/tlshd.c
> +++ b/net/handshake/tlshd.c
> @@ -230,6 +230,12 @@ static int tls_handshake_accept(struct handshake_req *req,
>  		if (ret < 0)
>  			goto out_cancel;
>  	}
> +	if (treq->th_keyring) {
> +		ret = nla_put_u32(msg, HANDSHAKE_A_ACCEPT_KEYRING,
> +				  treq->th_keyring);
> +		if (ret < 0)
> +			goto out_cancel;
> +	}
>  
>  	ret = nla_put_u32(msg, HANDSHAKE_A_ACCEPT_AUTH_MODE,
>  			  treq->th_auth_mode);


-- 
Chuck Lever



More information about the Linux-nvme mailing list