mirror of
https://github.com/torvalds/linux.git
synced 2026-05-27 08:33:17 +02:00
nvme-tcp: send only permitted commands for secure concat
In addition to sending permitted commands such as connect/auth
over the initial unencrypted admin connection as part of secure
channel concatenation, the host also sends commands such as
Property Get and Identify on the same. This is a spec violation
leading to secure concat failures. Fix this by ensuring these
additional commands are avoided on this connection.
Fixes: 104d0e2f62 ("nvme-fabrics: reset admin connection for secure concatenation")
Signed-off-by: Martin George <marting@netapp.com>
Reviewed-by: Hannes Reinecke <hare@suse.de>
Signed-off-by: Keith Busch <kbusch@kernel.org>
This commit is contained in:
parent
891cdbb162
commit
df4666a490
|
|
@ -2250,6 +2250,9 @@ static int nvme_tcp_configure_admin_queue(struct nvme_ctrl *ctrl, bool new)
|
|||
if (error)
|
||||
goto out_cleanup_tagset;
|
||||
|
||||
if (ctrl->opts->concat && !ctrl->tls_pskid)
|
||||
return 0;
|
||||
|
||||
error = nvme_enable_ctrl(ctrl);
|
||||
if (error)
|
||||
goto out_stop_queue;
|
||||
|
|
|
|||
Loading…
Reference in New Issue
Block a user