)]}'
{
  "commit": "1bded710a574f20d41bc9e7fb531301db282d623",
  "tree": "02153d39ee525edaee35953c663926cb57075757",
  "parents": [
    "1a5645bc901aea6f3f446888061b2b084bbf1ba6"
  ],
  "author": {
    "name": "Michael Tokarev",
    "email": "mjt@tls.msk.ru",
    "time": "Mon Feb 02 23:34:56 2009 -0800"
  },
  "committer": {
    "name": "David S. Miller",
    "email": "davem@davemloft.net",
    "time": "Mon Feb 02 23:34:56 2009 -0800"
  },
  "message": "tun: Check supplemental groups in TUN/TAP driver.\n\nMichael Tokarev wrote:\n[]\n\u003e 2, and this is the main one: How about supplementary groups?\n\u003e\n\u003e Here I have a valid usage case: a group of testers running various\n\u003e versions of windows using KVM (kernel virtual machine), 1 at a time,\n\u003e to test some software.  kvm is set up to use bridge with a tap device\n\u003e (there should be a way to connect to the machine).  Anyone on that group\n\u003e has to be able to start/stop the virtual machines.\n\u003e\n\u003e My first attempt - pretty obvious when I saw -g option of tunctl - is\n\u003e to add group ownership for the tun device and add a supplementary group\n\u003e to each user (their primary group should be different).  But that fails,\n\u003e since kernel only checks for egid, not any other group ids.\n\u003e\n\u003e What\u0027s the reasoning to not allow supplementary groups and to only check\n\u003e for egid?\n\nSigned-off-by: Michael Tokarev \u003cmjt@tls.msk.ru\u003e\nSigned-off-by: David S. Miller \u003cdavem@davemloft.net\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "457f2d7430cf13684f6ac4c5c971530d029d8b46",
      "old_mode": 33188,
      "old_path": "drivers/net/tun.c",
      "new_id": "15d67635bb10540ee1185818aaa2b83c86bbee5b",
      "new_mode": 33188,
      "new_path": "drivers/net/tun.c"
    }
  ]
}
