login
Header Space

 
 

Re: [PATCH 08/26] Add a secctx_to_secid() LSM hook to go along with the existing

Score:
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: Paul Moore <paul.moore@...>, James Morris <jmorris@...>
Cc: David Howells <dhowells@...>, <sds@...>, <casey@...>, <Trond.Myklebust@...>, <npiggin@...>, <linux-kernel@...>, <selinux@...>, <linux-security-module@...>
Date: Wednesday, January 16, 2008 - 1:08 pm

--- Paul Moore <paul.moore@hp.com> wrote:


I concur with Paul. I had to delete the message I was composing because
it said exactly the same thing.

I do think that we need to put some thought into what a secid
really is and what a secctx ought to look like what with multiple
user cropping up for them. To date audit is the only out-of-LSM
user of the secctx, and assumes it's a printable text string, but
if cacheing is going to be using it as well we're approaching the
secctx being a "general" interface, and hence a part of the LSM
proper. Probably makes sense to include something in the LSM
documentation. With luck, someone who spells better than I will
beat me to it, but such an update is on my todo list.




Casey Schaufler
casey@schaufler-ca.com
--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
[PATCH 00/26] Permit filesystem local caching, David Howells, (Tue Jan 15, 7:46 pm)
Re: [PATCH 00/26] Permit filesystem local caching, Kyle Moffett, (Tue Jan 15, 10:24 pm)
Re: [PATCH 00/26] Permit filesystem local caching, David Howells, (Wed Jan 16, 12:55 pm)
Re: [PATCH 00/26] Permit filesystem local caching, James Morris, (Tue Jan 15, 9:52 pm)
Re: [PATCH 00/26] Permit filesystem local caching, James Morris, (Tue Jan 15, 8:58 pm)
Re: [PATCH 00/26] Permit filesystem local caching, David Howells, (Wed Jan 16, 12:48 pm)
[PATCH 25/26] NFS: Display local caching state, David Howells, (Tue Jan 15, 7:49 pm)
[PATCH 23/26] NFS: Use local caching, David Howells, (Tue Jan 15, 7:48 pm)
[PATCH 22/26] NFS: Fix memory leak, David Howells, (Tue Jan 15, 7:48 pm)
[PATCH 20/26] CacheFiles: Export things for CacheFiles, David Howells, (Tue Jan 15, 7:48 pm)
Re: [PATCH 08/26] Add a secctx_to_secid() LSM hook to go alo..., Casey Schaufler, (Wed Jan 16, 1:08 pm)
speck-geostationary