Re: A Comment from User Space

From: jmjonesat_private
Date: Tue Apr 24 2001 - 05:34:08 PDT

  • Next message: Stephen Smalley: "Re: A Comment from User Space"

    What a fascinatingly animated discussion...
    
    jmjonesat_private wrote...
    
    > Only thing is, I'm not sure this would involve anything in the kernel
    > hooks area, only in a "quasi-standard" for the modules, which may be
    > getting out of our arena here?
    
    I, for one, am becoming more and more persuaded that this may actually
    be the case.  lsm_error and the access() problem COULD be solved out 
    of kernel by the module.
    
    If a module proves us right and provides this functionality, and the
    market loves it, then pre-existing modules will either have to update
    to provide their own solutions or turn into "lameware" in the
    consumer-eye... or resign themselves into a niche where this isn't 
    desired.
    
    Unless there's a solid argument for a kernel facility that MUST
    (emphasis on MUST) exist to support either of these wonderful ideas,
    I think it's out of the scope of this particular project.  I don't
    see a "MUST" here anywhere, just a "SHOULD".
    
    Does anybody have a rock solid "MUST" they can detail?  I, honestly,
    don't.
    
    --------
    
    On another issue, I think the argument "Linus won't accept this" to 
    prevent discussion or even an attempt is somewhat akin to shooting 
    yourself in the head because you're AFRAID the other guy might have 
    a gun.  Linus is a reasonable, intelligent person... and I'm sure he
    will consider any *fully thought out, intelligent, demonstrably needed*
    changes to the kernel presented to him.  Let's just not waste our time
    or his on stuff that isn't clearly all of those things. 
    
    J. Melvin Jones
    
    
    |>------------------------------------------------------
    ||  J. MELVIN JONES            jmjonesat_private 
    |>------------------------------------------------------
    ||  Microcomputer Systems Consultant  
    ||  Software Developer
    ||  Web Site Design, Hosting, and Administration
    ||  Network and Systems Administration
    |>------------------------------------------------------
    ||  http://www.jmjones.com/
    |>------------------------------------------------------
    
    
    
    
    _______________________________________________
    linux-security-module mailing list
    linux-security-moduleat_private
    http://mail.wirex.com/mailman/listinfo/linux-security-module
    



    This archive was generated by hypermail 2b30 : Tue Apr 24 2001 - 05:36:10 PDT