On Tue, 25 Sep 2001, richard offer wrote: > I don't want to keep shadow state to emulate what the kernel is doing, I > just want to record the directory/file that has been passed to sys_chdir() > for audit. > > Without adding a bunch of new hooks (which is what we initally proposed) > we're limited to (effectively) multiplexing a lot through permission() (and > a bunch of other "super hooks", ie setattr() ) Isn't audit deferred until a later phase of LSM? -- Stephen D. Smalley, NAI Labs ssmalleyat_private _______________________________________________ linux-security-module mailing list linux-security-moduleat_private http://mail.wirex.com/mailman/listinfo/linux-security-module
This archive was generated by hypermail 2b30 : Wed Sep 26 2001 - 05:11:47 PDT