Files
cryptsetup/lib/verity
Ondrej Kozina ec9b97a731 Fix shared activation for dm-verity devices.
CRYPT_ACTIVATE_SHARED flag was silently ignored
while activating dm-verity devices by libcryptsetup.
This was a bug.

DM verity shared activation is generaly safe (single mapped data device
in multiple DM verity tables) since all verity devices are
read only.

The CRYPT_ACTIVATE_SHARED flag also fixes a race condition
when multiple processes compete for the same DM device name
(all dm-verity) while using same backing data device.

The exclusive open check in-before verity activation could
fail DM table load for a process that otherwise successfully acquired
DM device name (succeed in creating the DM device). This could (in some
cases) result in all processes competening for the DM verity device
to fail and none would activate the DM verity device.
2024-07-24 09:39:21 +00:00
..
2024-06-03 16:38:15 +00:00
2024-06-03 16:38:15 +00:00
2024-06-03 16:38:15 +00:00
2024-06-03 16:38:15 +00:00
2024-06-03 16:38:15 +00:00
2024-06-03 16:38:15 +00:00