On Fri, Oct 05, 2018 at 02:10:58PM -0700, Joel Fernandes wrote: > On Fri, Oct 05, 2018 at 12:53:39PM -0700, Andrew Morton wrote: > > On Fri, 5 Oct 2018 12:27:27 -0700 "Joel Fernandes (Google)" <joel@xxxxxxxxxxxxxxxxx> wrote: > > > > > To support the usecase, this patch adds a new F_SEAL_FS_WRITE seal which > > > prevents any future mmap and write syscalls from succeeding while > > > keeping the existing mmap active. The following program shows the seal > > > working in action: > > > > Please be prepared to create a manpage patch for this one. > > Sure, I will do that. thanks, And a test case to the in-kernel memfd tests would be appreciated. thanks, greg k-h