Attached are two patches to make procattr shareable by >1 LSM. The first patch applies on top of the current set of stacker patches from sf.net/projects/lsm-stacker, and modifies stacker.c. The second patch is to the sf.net libselinux sources. Since I took Mimi's idea of switching from selinux: user:role:type to user:role:type (selinux) for both get and setprocattr, no patch is needed for ps so long as it's ok to output the data from only the first LSM to output data. These patches have been tested with stacker and an unpatched libselinux with stacker and a patched libselinux without stacker and a patched libselinux and all worked as expected. Any comments are much appreciated. thanks, -serge
This archive was generated by hypermail 2.1.3 : Tue May 31 2005 - 10:53:18 PDT