Seth Arnold wrote: >This won't work for any cases where there exists some kernel logic, a >restrictive hook, but no capable() call. Yeah. I don't know of any such cases. I thought the result of the discussion with SGI was that they were going to look in detail to see if there is any reason Smalley's approach wouldn't work. Is that right? _______________________________________________ linux-security-module mailing list linux-security-moduleat_private http://mail.wirex.com/mailman/listinfo/linux-security-module
This archive was generated by hypermail 2b30 : Wed Sep 05 2001 - 16:59:36 PDT