On Sat, Nov 10, 2007 at 01:24:46PM -0800, Crispin Cowan wrote:
he
ent.
Well perhaps a little disgusting but it isn't the reason. We discussed
this on the rewrite with the vfsmnt passed through the vfs. We could
have changed the implementation but in the end decided to to leave it
in place for the time being.
yep, the discussion really did come down to object capability and
unconfined processes.
and the the other major point surfaces
Not so, we can add that, and I have prototyped code to do so. The issue
really is about how unconfined processes should interact with confined
processes.
What is considered a clean way to change this has been an on and
off again discussion, its been about 9 months since we last discussed
it so I am not surprised Crispin has paged it out.
The issue really does come down to how to express the interaction of
confined and unconfined tasks in policy. The discussion always comes
back to object capabilities, unconfined's behavior, and how to
best express it.
No it isn't, the behavior was intended to be revisited when we
had IPC, and or a prototype for expressing which file objects can be
passed.