commit | e7099d8a5a34d2876908a9fab4952dabdcfc5909 | [log] [tgz] |
---|---|---|
author | Eric Paris <eparis@redhat.com> | Thu Oct 28 17:21:57 2010 -0400 |
committer | Eric Paris <eparis@redhat.com> | Thu Oct 28 17:22:14 2010 -0400 |
tree | 34f62d8ae23c4c115a0b615cd13e9ae7ddd28b42 | |
parent | 5dd03f55fd2f21916ce248bb2e68bbfb39d94fe5 [diff] |
fanotify: limit the number of marks in a single fanotify group There is currently no limit on the number of marks a given fanotify group can have. Since fanotify is gated on CAP_SYS_ADMIN this was not seen as a serious DoS threat. This patch implements a default of 8192, the same as inotify to work towards removing the CAP_SYS_ADMIN gating and eliminating the default DoS'able status. Signed-off-by: Eric Paris <eparis@redhat.com>