Re: [RFC] [PATCH] [2/6] LSM Stacking: Add stacker LSM

From: Chris Wright
Date: Thu Nov 04 2004 - 17:47:57 EST


* Serge Hallyn (serue@xxxxxxxxxx) wrote:
> This patch adds the stacker module, still required in order to
> stack several LSMs. In order to use this with SELinux, it must be
> compiled into the kernel. Otherwise, it can be loaded as a module.

all the stacker_rwsem business has got to go. can't you make the same
array assumptions as the blobs, and assign modules to slots? also the
sysfs stuff should go into a (not quite yet) existing subsystem. i'm
not positive the authoritative capable() hook logic is right.

thanks,
-chris
--
Linux Security Modules http://lsm.immunix.org http://lsm.bkbits.net
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/