--- Stephen Smalley <[EMAIL PROTECTED]> wrote:
> If you are adding additional security at the > application data layer, > then you can do that in userspace, and use SELinux > Type Enforcement to > make it unbypassable and tamperproof. You don't > need to change the > kernel. Stephen, you can't possibly know that kernel changes aren't required from the information provided. The information provided appears to be intentionally imprecise. (not a good idea in the community, BTW) You may prove correct in the end (you often are) but you're jumping the SELinux Uber Alas gun. Casey Schaufler [EMAIL PROTECTED] - To unsubscribe from this list: send the line "unsubscribe linux-security-module" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html
