Adding bpf to CONFIG_LSM in linux kernel

Bug #2054810 reported by roblabla
18
This bug affects 5 people
Affects Status Importance Assigned to Milestone
linux (Ubuntu)
Triaged
Medium
Joseph Salisbury
Jammy
Triaged
Medium
Joseph Salisbury
Mantic
Triaged
Medium
Joseph Salisbury
Noble
Triaged
Medium
Joseph Salisbury
Revision history for this message
roblabla (roblabla) wrote :

(This is reposting 1964941 which appears to have expired)

roblabla (roblabla)
description: updated
Revision history for this message
Eric Sheridan (esheri3) wrote :

Can Ubuntu please consider addressing this as a part of the upcoming 24 LTS release? The ability to leverage LSM based BPF programs on Ubuntu out-of-the-box (ie. without having to update grub and rebooting) opens the door to a growing ecosystem of security tooling. There are major computing environments for which the community cannot control things like Grub settings - such as the Ubuntu images used by Microsoft (via GitHub Actions, Azure Pipelines), GitLab (via Jobs), AWS (via vanilla EC2 instances), etc.

Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in linux (Ubuntu):
status: New → Confirmed
Changed in linux (Ubuntu):
importance: Undecided → Medium
assignee: nobody → Joseph Salisbury (jsalisbury)
Changed in linux (Ubuntu Mantic):
status: New → Triaged
Changed in linux (Ubuntu Jammy):
status: New → Triaged
Changed in linux (Ubuntu Noble):
status: Confirmed → Triaged
Changed in linux (Ubuntu Mantic):
importance: Undecided → Medium
Changed in linux (Ubuntu Jammy):
importance: Undecided → Medium
Changed in linux (Ubuntu Mantic):
assignee: nobody → Joseph Salisbury (jsalisbury)
Changed in linux (Ubuntu Jammy):
assignee: nobody → Joseph Salisbury (jsalisbury)
Revision history for this message
Eric Sheridan (esheri3) wrote :

Joseph - thanks for looking into this. Please let me know if I can be of assistance. I'd be happy to test out the corresponding changes on my end. Just let me know - thank you!!

Revision history for this message
Joseph Salisbury (jsalisbury) wrote :

Thanks, Eric! I'm going to build some test kernels and will post them shortly.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.