Attached is a new version of the SELinux patch. It uses the lsm_adopt_next_secondary() function exported by stacker to stack capability underneath itself if capability, stacker, and selinux are all compiled in. Note that, just because of the way I pushed/popped this time, the selinux patch comes before the stacker patch which I will send out next. (The stacker patch includes a more generic change which perhaps I should have separated out, which gets rid of mod_unreg_security.) thanks, -serge -- ======================================================= Serge Hallyn Security Software Engineer, IBM Linux Technology Center serue@private
This archive was generated by hypermail 2.1.3 : Fri Dec 03 2004 - 08:57:46 PST