I am proposing a set of hooks to allow client security information to be reliably associated with a new socket connection. The security structure is attached to the sock, and can be used to store information about the client when a new connection is created. This information can then be propagated to user space via the socket structure. SELinux uses these hooks to provide the security ID of the connecting client to the server via the extended socket calls. The patch files include the necessary SELinux changes. Comments? -- Wayne Salamon wsalamonat_private
This archive was generated by hypermail 2b30 : Tue Jul 09 2002 - 08:04:46 PDT