Cc: Joshua Brindle <method@...>, Andrew Morton <akpm@...>, <casey@...>, <torvalds@...>, <linux-security-module@...>, <linux-kernel@...>, James Morris <jmorris@...>, Paul Moore <paul.moore@...>
You would need authoritative LSM hooks for this. The current LSM
additional restrictions model does not provide for this.
Casey Schaufler
casey@schaufler-ca.com
-