Re: Upstream first policy

From: Al Viro
Date: Mon Mar 08 2010 - 21:05:57 EST


On Mon, Mar 08, 2010 at 05:49:10PM -0800, Linus Torvalds wrote:

> That's a good point, btw, and shows one conceptual difference between
> content-based and pathname-based rules.
>
> For example, if you want to log any changes to "/etc/passwd" (which is
> something pretty reasonable to do at least conceptually), what about doing
> a bind mount on top of that file?

Doesn't have to be a binding over /etc/passwd, BTW. /etc as a mountpoint will
serve just as well.
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/