Re: Names vs. Inodes

From: Seth Arnold (sarnoldat_private)
Date: Mon Jul 23 2001 - 10:58:39 PDT

  • Next message: jmjonesat_private: "Re: Names vs. Inodes"

    On Mon, Jul 23, 2001 at 01:36:15PM -0400, jmjonesat_private wrote:
    [sarnold's description of SubDomain.]
    
    > Yes, I understand this now.  However, since it requires the confined
    > process to be executed as root and then confined (i think) it circumvents
    > many of those restrictions in favor of its own model.  This is very
    > useful, but I have some issues with it.
    
    Nope. :) SubDomain makes no requirement about the process running as
    root, or as any other user. The constraints on processes are applied
    without regard to the user running the process.
    
    Cheers. :)
    
    _______________________________________________
    linux-security-module mailing list
    linux-security-moduleat_private
    http://mail.wirex.com/mailman/listinfo/linux-security-module
    



    This archive was generated by hypermail 2b30 : Mon Jul 23 2001 - 10:55:28 PDT