Re: LSM conversion to static interface

!MAILaRCHIVE_VOTE_RePLACE
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: Thomas Fricaccia <thomas_fricacci@...>
Cc: <linux-kernel@...>, Alan Cox <alan@...>, Linus Torvalds <torvalds@...>, LSM ML <linux-security-module@...>, Crispin Cowan <crispin@...>
Date: Monday, October 22, 2007 - 1:13 pm

On Mon, Oct 22, 2007 at 10:00:46AM -0700, Thomas Fricaccia wrote:

But that is completly true _today_ and is the way that the "enterprise"
distros work.  Do you have any evidence of it not being the case?


I agree, that is why customers do not load other random security modules
in their kernel today, and why they will not do so tomorrow.  So,
because of that, this whole point about compliance with regulatory law
seems kind of moot :)

Again, LSM isn't going away at all, this is just one config option for
allowing LSM to work as a module that is changing.  If a customer
demands that this feature come back, I'm sure that the big distros will
be the first to push for it.  But currently, given that there are no
known external LSMs being used by customers demanding support, I don't
see what the big issue here really is.

thanks,

greg k-h
-
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Re: LSM conversion to static interface, Thomas Fricaccia, (Mon Oct 22, 1:00 pm)
Re: LSM conversion to static interface, Giacomo Catenazzi, (Tue Oct 23, 1:53 am)
Re: LSM conversion to static interface, Crispin Cowan, (Tue Oct 23, 3:12 am)
Re: LSM conversion to static interface, Greg KH, (Tue Oct 23, 11:41 pm)
Re: LSM conversion to static interface, Giacomo A. Catenazzi, (Tue Oct 23, 4:17 am)
Re: LSM conversion to static interface, Greg KH, (Mon Oct 22, 1:13 pm)
Re: LSM conversion to static interface, Simon Arlott, (Tue Oct 23, 7:38 am)
Re: LSM conversion to static interface, Crispin Cowan, (Tue Oct 23, 1:14 am)
Re: LSM conversion to static interface, Alan Cox, (Mon Oct 22, 1:12 pm)