From owner-freebsd-arch@FreeBSD.ORG Wed May 16 23:10:35 2012 Return-Path: Delivered-To: freebsd-arch@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 82D65106564A; Wed, 16 May 2012 23:10:35 +0000 (UTC) (envelope-from artemb@gmail.com) Received: from mail-lpp01m010-f54.google.com (mail-lpp01m010-f54.google.com [209.85.215.54]) by mx1.freebsd.org (Postfix) with ESMTP id BA56D8FC0A; Wed, 16 May 2012 23:10:34 +0000 (UTC) Received: by laai10 with SMTP id i10so1262230laa.13 for ; Wed, 16 May 2012 16:10:27 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:sender:in-reply-to:references:date :x-google-sender-auth:message-id:subject:from:to:cc:content-type :content-transfer-encoding; bh=1PRutjv3oW7AhL/mY6Trhg63Li+meeo4AdrpX7OeukM=; b=WLNj03WAOsh5KR7nmU2xUqocPftagDzHTgYuB9sP2ZxTxQCoyz0BFWXOoWGyhzbCA3 6ujdv4ffWgzXK19bIRdFY2feR6RShEW+rgs0/F75Gp//lH7Z/pg+WDym6oS63S/UJKYU iTh539mcA8RHbqKx+KSPkCdsrNuZi7P+JdOZebFx4dVSwEUIir2NL1mqj5kVLJ2H6m2F SU5fdmXLDblX0EaF98Rig4el3xy971TQNnXIemD+mh98APGSigT/ptXOtTi4DRM5RDTl SPM/vOGRFGRE5DaicRkHWEd1jZViCEWX78MePGB3ztBQxViuT7nLXNFySWIBNjQg8s4m 8/fQ== MIME-Version: 1.0 Received: by 10.112.88.98 with SMTP id bf2mr2190400lbb.30.1337209827652; Wed, 16 May 2012 16:10:27 -0700 (PDT) Sender: artemb@gmail.com Received: by 10.112.130.4 with HTTP; Wed, 16 May 2012 16:10:27 -0700 (PDT) In-Reply-To: References: <4FAC3EAB.6050303@delphij.net> <861umkurt8.fsf@ds4.des.no> Date: Wed, 16 May 2012 16:10:27 -0700 X-Google-Sender-Auth: oF7d9KZworrDEWEMkDvK6dcx8Ys Message-ID: From: Artem Belevich To: Eitan Adler Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Cc: =?ISO-8859-1?Q?Dag=2DErling_Sm=F8rgrav?= , Adrian Chadd , d@delphij.net, freebsd-arch@freebsd.org Subject: Re: Allow small amount of memory be mlock()'ed by unprivileged process? X-BeenThere: freebsd-arch@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussion related to FreeBSD architecture List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 16 May 2012 23:10:35 -0000 On Wed, May 16, 2012 at 3:36 PM, Eitan Adler wrote: > On 16 May 2012 18:32, Adrian Chadd wrote: >> .. what's to stop a fork() bomb from grabbing all pages? > > + possibly limiting the number of pages per user, =E0 la > maxprocperuid. Shouldn't RLIMIT_NPROC already limit the damage? --Artem