On Mon, Mar 19, 2007 at 01:41:41PM -0800, Gary Winiger wrote:
> > 2.1. The read_authorization property

> 
>       Another thing I didn't note is that this a new audit event
>       and record is likely to be required as this is making an
>       access control decision.  See
> http://opensolaris.org/os/community/arc/policies/audit-policy/

Yes.  However, since none of the existing such decisions in configd
are generating audit events, I'd prefer that audit records be
introduced for reads at the same time they're introduced for
modifications.

I've heard that the SMF team has some plans for this, but I don't know
the state of those plans.  If this is likely to be addressed in the
next week or two, I'd appreciate a pointer to the changes so that I
can incorporate them for my work as well.  Can anyone familiar with
that work comment?

-- 
Keith M Wesolowski              "Sir, we're surrounded!" 
FishWorks                       "Excellent; we can attack in any direction!" 

Reply via email to