> What's wrong with making capability_plug THE dummy module? It could be > replaced upon module registration, and it would *install* the kernel into > the same state as if the LSM patch was not applied. Then the problem > would be in one code, and verification that "with dummy installed it's > exactly the same as the WITHOUT LSM module" would be possible. Yeah, I like that idea. And to make the embedded folk happy, make it a compile option as to whether the default is capabilities or return-0 dummies. It certainly _is_ more work for those that are writing modules, but if we get stackability working nicely and elegantly then it shouldn't be too bad, and it'll be far more robust. -Titus _______________________________________________ linux-security-module mailing list linux-security-moduleat_private http://mail.wirex.com/mailman/listinfo/linux-security-module
This archive was generated by hypermail 2b30 : Thu May 31 2001 - 11:34:24 PDT