Re: intercepting system calls

From: Casey Schaufler (caseyat_private)
Date: Mon Apr 16 2001 - 10:18:34 PDT

  • Next message: Titus D. Winters: "Re: Feature request"

    Scott Leerssen wrote:
    
    > I can see someone developing a layer that allows "trusted"
    > systems to network together.  In such a case, you might want to slap
    > some extra stuff on a packet coming up through the sockets layer so that
    > someone upstream can make an intelligent decision based on what system
    > and, possibly, what user sent the message.  I suppose I'm just more
    > interested in the opaque data type so folks can use whatever flavor of
    > tagging mechanism they see fit.
    
    The Trusted Systems Interoperabilty Group (TSIG)
    has interfaces and protocols for this, and they're
    used by existing MLS systems today. It's one of
    the things we hope to contribute.
    
    -- 
    
    Casey Schaufler				Manager, Trust Technology, SGI
    caseyat_private				voice: 650.933.1634
    casey_pat_private			Pager: 888.220.0607
    
    _______________________________________________
    linux-security-module mailing list
    linux-security-moduleat_private
    http://mail.wirex.com/mailman/listinfo/linux-security-module
    



    This archive was generated by hypermail 2b30 : Mon Apr 16 2001 - 10:19:54 PDT