--- Jan Engelhardt <jengelh@computergmbh.de> wrote:As some of the early Smack discussions brought out, some LSMs including Smack will be perfectly happy with the traditional Linux privilege mechanisms (choice of root and/or capablities) while others including SELinux will go their own ways. So long as LSMs are self contained and strictly restrictive the mechanisms they use to modulate their behavior shouldn't be an issue. If SELinux chooses to turn its MLS controls off between midnight and 3am I can't see how that would be Smack's business, even if they were somehow stacked. Multiple LSMs has issues, like what should security_secid_to_secctx() return to the audit system, but privilege model shouldn't be one of them. Casey Schaufler casey@schaufler-ca.com -
| Greg KH | [GIT PATCH] driver core patches against 2.6.24 |
| Ingo Molnar | Re: [BUG] New Kernel Bugs |
| Tony Lindgren | [PATCH 42/90] ARM: OMAP: Tabify mux.c |
| Roland Dreier | Re: Integration of SCST in the mainstream Linux kernel |
git: | |
| Martin Langhoff | Re: pack operation is thrashing my server |
| Andreas Ericsson | Re: VCS comparison table |
| Ingo Molnar | [OT] Your branch is ahead of the tracked remote branch 'origin/master' by 50 commi... |
| Nicolas Vilz 'niv' | git + ssh + key authentication feature-request |
| Richard Stallman | Real men don't attack straw men |
| Darren Spruell | Re: About Xen: maybe a reiterative question but .. |
| Nick Holland | Re: 4.1 on ALIX.1C - recommendations? |
| Lord Sporkton | Re: low-MHz server |
| KOSAKI Motohiro | [bug?] tg3: Failed to load firmware "tigon/tg3_tso.bin" |
| Mark Lord | Re: 2.6.25-rc8: FTP transfer errors |
| Jarek Poplawski | [PATCH] pkt_sched: Destroy gen estimators under rtnl_lock(). |
| Brandeburg, Jesse | RE: e1000 full-duplex TCP performance well below wire speed |
