Re: Possible system call interface for LSM

From: jmjonesat_private
Date: Tue Aug 14 2001 - 09:53:00 PDT

  • Next message: Casey Schaufler: "Re: Possible system call interface for LSM"

    On Tue, 14 Aug 2001, Crispin Cowan wrote:
    
    > >     In the red corner we have people who think it should be done via /proc
    > >         Greg, Jesse,
    > 
    > As already commented, Greg's view is actually "not syscalls", and he suggests
    > /proc and list_modules as alternatives.  Add me to this column.
    > 
    > 
    > >     In the green corner we have those that think its un-needed
    > >         J. Melvin
    > 
    > I'd be surprised if JMJ doesn't think an identification method is needed.
    
    Please move me near the red corner.  I *do* believe it is necessary, I
    just don't think it's necessary to implement it explicitly in the LSM 
    interface... but think it is better left to the module/application
    designer to develop a product specific means.  If a common mechanism IS 
    developed, I don't think it should be in the syscall.
    
    > 
    > Crispin
    > 
    > --
    > Crispin Cowan, Ph.D.
    > Chief Scientist, WireX Communications, Inc. http://wirex.com
    > Security Hardened Linux Distribution:       http://immunix.org
    > Available for purchase: http://wirex.com/Products/Immunix/purchase.html
    > 
    
    J. Melvin Jones
    
    |>------------------------------------------------------
    ||  J. MELVIN JONES            jmjonesat_private 
    |>------------------------------------------------------
    ||  Microcomputer Systems Consultant  
    ||  Software Developer
    ||  Web Site Design, Hosting, and Administration
    ||  Network and Systems Administration
    |>------------------------------------------------------
    ||  http://www.jmjones.com/
    |>------------------------------------------------------
    
    
    
    
    _______________________________________________
    linux-security-module mailing list
    linux-security-moduleat_private
    http://mail.wirex.com/mailman/listinfo/linux-security-module
    



    This archive was generated by hypermail 2b30 : Tue Aug 14 2001 - 09:54:38 PDT