On Thu, 2007-01-18 at 22:08 +1100, Crispin Cowan wrote: > Casey Schaufler wrote: > > --- Tom Fortmann <[EMAIL PROTECTED]> wrote: > > > >> Are their any current or future plans to support > >> stacking additional > >> security modules on the LSM interface? > >> > > It has certainly been considered from > > time to time. David Wheeler's early work > > came pretty close. > > > There is a module waiting in the wings called Stacker > <http://sourceforge.net/projects/lsm-stacker> that is designed to > automatically stack multiple modules. Considerable design, > implementation, and measurement has gone into Stacker. The main thing > stalling the upstreaming of Stacker is for some modules other than > SELinux to be accepted upstream. With the number of modules vying for > that, it seems just a matter of time.
Except that at the last kernel summit, the topic came up during the LSM panel, and everyone on the panel, including the AppArmor person, agreed that stacking wasn't necessary or desirable. -- Stephen Smalley National Security Agency - To unsubscribe from this list: send the line "unsubscribe linux-security-module" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html
