Re: Authoritative Hooks

From: Casey Schaufler (caseyat_private)
Date: Fri Nov 09 2001 - 16:36:36 PST

  • Next message: Crispin Cowan: "Re: Authoritative Hooks"

    Chris Wright wrote:
    > 
    > * Casey Schaufler (caseyat_private) wrote:
    > >
    > > The shear cleverness of the capability+restrictive scheme
    > > is I believe its undoing. You can use it to totally circumvent
    > > the security architecure of the system. While it is fun to
    > > play with this sort of thing, I would never suggest using it
    > > for production code.
    > 
    > hehe, sounds like a familiar objection (/me points to Subject: ;-)
    
    I see a significant difference between changing the security
    architecture on purpose and providing a scheme for circumventing it.
    
    I should just shut up.
    
    -- 
    
    Casey Schaufler				Manager, Trust Technology, SGI
    caseyat_private				voice: 650.933.1634
    casey_pat_private			Pager: 888.220.0607
    
    _______________________________________________
    linux-security-module mailing list
    linux-security-moduleat_private
    http://mail.wirex.com/mailman/listinfo/linux-security-module
    



    This archive was generated by hypermail 2b30 : Fri Nov 09 2001 - 16:51:28 PST