On Tue, 23 Jul 2002, Chris Wright wrote: > * James Morris (jmorrisat_private) wrote: > > > Have a look at the use of can_unload as a way to control module deletion > > (and there's an example in the ipv6 code). > > This seems like a reasonable approach. It allows an easy way for module > authors to give an unload/can't unload override switch. > Implied here is that the LSM framework won't do this, it will be up to the module authors to ensure their modules can't be unloaded. I tend to agree with this approach. - James -- James Morris <jmorrisat_private> _______________________________________________ linux-security-module mailing list linux-security-moduleat_private http://mail.wirex.com/mailman/listinfo/linux-security-module
This archive was generated by hypermail 2b30 : Tue Jul 23 2002 - 23:24:37 PDT