Re: Current/Future Plans to Support Stacking LSM Modules

2007-01-18 Thread Casey Schaufler
--- Karl MacMillan [EMAIL PROTECTED] wrote: There are others who would argue that SELinux has abandoned the Linux privilege model and thus disrupted the unity of the existing security model. No clue what this means. Pre-SE Linux has a rational and well established security model

Re: Current/Future Plans to Support Stacking LSM Modules

2007-01-18 Thread Casey Schaufler
--- Serge E. Hallyn [EMAIL PROTECTED] wrote: Funny thing is that I would agree with you 100% if LSM implemented authoritative hooks. Since LSM implements a scheme that is supposed to provide strictly for additional restrictions it should be simple to stack modules safely. An