efivarfs: Add uid/gid mount options

Allow UEFI variables to be modified by non-root processes in order to
run sandboxed code. This doesn't change the behavior of mounting
efivarfs unless uid/gid are specified; by default both are set to root.

Signed-off-by: Jiao Zhou <jiaozhou@google.com>
Acked-by: Matthew Garrett <mgarrett@aurora.tech>
Signed-off-by: Ard Biesheuvel <ardb@kernel.org>
This commit is contained in:
Jiao Zhou 2023-10-20 00:46:39 +02:00 • committed by Ard Biesheuvel
commit 5329aa5101
3 changed files with 81 additions and 0 deletions