Chris Wright wrote: > > * Casey Schaufler (caseyat_private) wrote: > > > > The shear cleverness of the capability+restrictive scheme > > is I believe its undoing. You can use it to totally circumvent > > the security architecure of the system. While it is fun to > > play with this sort of thing, I would never suggest using it > > for production code. > > hehe, sounds like a familiar objection (/me points to Subject: ;-) I see a significant difference between changing the security architecture on purpose and providing a scheme for circumventing it. I should just shut up. -- Casey Schaufler Manager, Trust Technology, SGI caseyat_private voice: 650.933.1634 casey_pat_private Pager: 888.220.0607 _______________________________________________ linux-security-module mailing list linux-security-moduleat_private http://mail.wirex.com/mailman/listinfo/linux-security-module
This archive was generated by hypermail 2b30 : Fri Nov 09 2001 - 16:51:28 PST