Re: Kernel Security Extensions USENIX BOF Summary

From: Crispin Cowan (crispinat_private)
Date: Thu Jul 05 2001 - 23:14:11 PDT

  • Next message: Crispin Cowan: "Re: LSM Patch Additions for CAPP (C2) Audit Trails"

    Greg KH wrote:
    
    > An inode can point to any number of valid paths to that file.  Think of
    > multiple mounts of a filesystem at different places in the tree.
    > (Hm, let's mount /dev/hdd8 at /etc, /tmp/etc, /var/etc, and
    > /home/foo/etc )
    > So reconstruction the original path from a inode is almost impossible.
    
    How about if modules that want reliable absolute paths just disable the
    horrible abomination known as multiple mount points?
    
    Crispin
    
    --
    Crispin Cowan, Ph.D.
    Chief Scientist, WireX Communications, Inc. http://wirex.com
    Security Hardened Linux Distribution:       http://immunix.org
    Available for purchase: http://wirex.com/Products/Immunix/purchase.html
    
    
    _______________________________________________
    linux-security-module mailing list
    linux-security-moduleat_private
    http://mail.wirex.com/mailman/listinfo/linux-security-module
    



    This archive was generated by hypermail 2b30 : Thu Jul 05 2001 - 23:15:19 PDT