From: Alexey Gladkov <legion@kernel.org>
To: Joel Granados <joel.granados@kernel.org>
Cc: "Ondrej Mosnáček" <omosnacek@gmail.com>,
"Andrew Morton" <akpm@linux-foundation.org>,
"Kees Cook" <kees@kernel.org>,
"Ryan Roberts" <ryan.roberts@arm.com>,
"Serge Hallyn" <serge@hallyn.com>,
"Eric W . Biederman" <ebiederm@xmission.com>,
LKML <linux-kernel@vger.kernel.org>,
linux-fsdevel@vger.kernel.org
Subject: Re: [PATCH v2 0/6] sysctl: add typed field descriptors
Date: Thu, 24 Sep 2026 16:46:39 +0200 [thread overview]
Message-ID: <arU3z_CUfNL0Xezt@example.org> (raw)
In-Reply-To: <gbiwlkkqx5ezpn2drqj5apylk7ohbcz4kkrpba6tpqnkcph7z6@5ez5wwz3jhi5>
[-- Attachment #1: Type: text/plain, Size: 4702 bytes --]
On Thu, Sep 24, 2026 at 03:29:28PM +0200, Joel Granados wrote:
> On Mon, Sep 21, 2026 at 12:54:47PM +0200, Alexey Gladkov wrote:
> > Hi,
> >
> > Some sysctl users allocate a private copy of an otherwise static ctl_table
> > for every namespace or device, then rewrite data and limit pointers before
> > registration. Besides the per-instance allocation, these fixups are often
> > addressed by table index, so changing the table can silently associate an
> > entry with the wrong data or limits.
>
> In other words the motivation is to:
>
> 1. Remove the per-instance allocation thereby reducing the memory
> footprint
> 2. Remove the possibility of mistakenly associating one variable with a
> different sysctl name (because of un-synced changes)
>
> Only those two. Right?
Another reason is type checking during compile time. Currently, .data,
.extra1, and .extra2 are pointers to void. The sysctl_check_table()
attempts to validate extra fields, but this is done at runtime and
essentially involves checking .maxlen.
I thought that we could not only eliminate the need for memory allocation
but also make the parameter checks more strict.
> >
> > This series adds struct sysctl_field as an alternative descriptor for such
> > tables. A field records the value type and an offset into an object
> > selected at registration time. The type-specific offset helpers are small
> > wrappers around offsetof() and only add a compile-time check of the
> > referenced member type. The sysctl core derives the handler, size, data
> > and limits, and builds a temporary ctl_table when invoking existing
> > handler, permission and BPF interfaces.
>
> Building a temporary ctl_table entry just before calling the
> proc_handler is the way to go, IMO. But do you need to adjust all those
> members (handler, size, data and limits) always? Sometimes everything
> stays the same except for the one ".data" member.
The `struct ctl_table/sysctl_field` array may contain entries with
different types and other fields. I figured it would be easier to reassign
the values to keep things simple.
> PS: Any meat in sashiko's comments?
> https://sashiko.dev/#/patchset/cover.1789987960.git.legion%40kernel.org
Hm. For some reason, sashiko has stopped sending review emails. I used to
receive them, but now I haven't received anything. I'll check his review
and address his comments.
By the way, I heard from Oleg Nesterov that he isn't getting any messages
from sashiko either.
> >
> > A struct sysctl_context identifies the object shared by the whole
> > registration and is copied into the table header. Subsystems which need
> > more than a namespace can embed it as the first member of a larger context
> > and select the object to which field offsets apply.
> >
> > Existing ctl_table users are unchanged, and subsystems can migrate one
> > table at a time. Converted tables remain static and read-only instead of
> > being copied and patched for every instance.
> >
> > Compared with the previous RFC [1], this drops the per-field accessor
> > functions and the macros which generated them. The first two patches
> > prepare the sysctl core without changing its external behaviour. The third
> > patch adds the new descriptor, followed by conversions of the IPC, mqueue
> > and ucount tables as small users of the interface.
> >
> > This is only the first part of the conversion. Network sysctls and the
> > other subsystem-specific users will be submitted as separate follow-up
> > series so they can be reviewed by their respective maintainers without
> > making this initial series excessively large.
> >
> > [1] https://lore.kernel.org/all/cover.1787770053.git.legion@kernel.org/
> >
> > Alexey Gladkov (6):
> > proc: sysctl: address table entries by index
> > sysctl: add unsigned int limit constants
> > sysctl: add typed field descriptors
> > sysctl: ipc: use typed fields for IPC namespace sysctls
> > sysctl: mq: use typed fields for IPC namespace sysctls
> > sysctl: use typed fields for ucount limits
> >
> > fs/proc/inode.c | 2 +-
> > fs/proc/internal.h | 2 +-
> > fs/proc/proc_sysctl.c | 601 ++++++++++++++++++++++++++++++-----------
> > include/linux/sysctl.h | 150 +++++++++-
> > ipc/ipc_sysctl.c | 188 ++++++-------
> > ipc/mq_sysctl.c | 104 +++----
> > kernel/sysctl.c | 3 +
> > kernel/ucount.c | 64 ++---
> > 8 files changed, 750 insertions(+), 364 deletions(-)
> >
> >
> > base-commit: 587858367581b9c55c3690f4e63382ad622719d4
> > --
> > 2.55.0
> >
>
>
--
Rgrds, legion
[-- Attachment #2: signature.asc --]
[-- Type: application/pgp-signature, Size: 833 bytes --]
next prev parent reply other threads:[~2026-09-24 14:46 UTC|newest]
Thread overview: 14+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-09-21 10:54 Alexey Gladkov
2026-09-21 10:54 ` [PATCH v2 1/6] proc: sysctl: address table entries by index Alexey Gladkov
2026-09-21 10:54 ` [PATCH v2 2/6] sysctl: add unsigned int limit constants Alexey Gladkov
2026-09-24 13:29 ` Joel Granados
2026-09-24 15:08 ` Alexey Gladkov
2026-09-21 10:54 ` [PATCH v2 3/6] sysctl: add typed field descriptors Alexey Gladkov
2026-09-24 13:29 ` Joel Granados
2026-09-24 15:48 ` Alexey Gladkov
2026-09-21 10:54 ` [PATCH v2 4/6] sysctl: ipc: use typed fields for IPC namespace sysctls Alexey Gladkov
2026-09-21 10:54 ` [PATCH v2 5/6] sysctl: mq: " Alexey Gladkov
2026-09-21 10:54 ` [PATCH v2 6/6] sysctl: use typed fields for ucount limits Alexey Gladkov
2026-09-24 13:29 ` [PATCH v2 0/6] sysctl: add typed field descriptors Joel Granados
2026-09-24 14:46 ` Alexey Gladkov [this message]
2026-09-24 14:38 ` Joel Granados
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=arU3z_CUfNL0Xezt@example.org \
--to=legion@kernel.org \
--cc=akpm@linux-foundation.org \
--cc=ebiederm@xmission.com \
--cc=joel.granados@kernel.org \
--cc=kees@kernel.org \
--cc=linux-fsdevel@vger.kernel.org \
--cc=linux-kernel@vger.kernel.org \
--cc=omosnacek@gmail.com \
--cc=ryan.roberts@arm.com \
--cc=serge@hallyn.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®