summaryrefslogtreecommitdiffstats
path: root/runtime
diff options
context:
space:
mode:
authorFrank Ch. Eigler <fche@elastic.org>2010-01-15 03:04:18 -0500
committerFrank Ch. Eigler <fche@elastic.org>2010-01-15 03:44:52 -0500
commit4b9b5e8597daa65325756b18fcb87b71c60b26aa (patch)
tree7fc798a34f50ea3e3868f55415e4601e3c07be6f /runtime
parente4d80588594a7495a3efedbd3a4281df13ff253b (diff)
downloadsystemtap-steved-4b9b5e8597daa65325756b18fcb87b71c60b26aa.tar.gz
systemtap-steved-4b9b5e8597daa65325756b18fcb87b71c60b26aa.tar.xz
systemtap-steved-4b9b5e8597daa65325756b18fcb87b71c60b26aa.zip
runtime: better staprun diagnostics for failed signature tests
* modverify.c (verify_module): Print some messages for verbose > 1.
Diffstat (limited to 'runtime')
-rw-r--r--runtime/staprun/modverify.c10
1 files changed, 8 insertions, 2 deletions
diff --git a/runtime/staprun/modverify.c b/runtime/staprun/modverify.c
index a17bb2ec..5d442393 100644
--- a/runtime/staprun/modverify.c
+++ b/runtime/staprun/modverify.c
@@ -272,12 +272,18 @@ int verify_module (const char *signatureName, const char* module_name,
/* Verify the permissions of the certificate database and its files. */
if (! check_cert_db_permissions (dbdir))
- return MODULE_UNTRUSTED;
+ {
+ if (verbose>1) fprintf (stderr, "Certificate db %s permissions too loose\n", dbdir);
+ return MODULE_UNTRUSTED;
+ }
/* Get the size of the signature file. */
prStatus = PR_GetFileInfo (signatureName, &info);
if (prStatus != PR_SUCCESS || info.type != PR_FILE_FILE || info.size < 0)
- return MODULE_UNTRUSTED; /* Not signed */
+ {
+ if (verbose>1) fprintf (stderr, "Signature file %s not found\n", signatureName);
+ return MODULE_UNTRUSTED; /* Not signed */
+ }
/* Open the signature file. */
local_file_fd = PR_Open (signatureName, PR_RDONLY, 0);