This system appears to be flawed. For example... there seems to be -no- real MAC.. Untrusted user A can access untrusted user B files and trusted user A can access trusted user B files if they are able to overcome the discretionary access controls (file perms... become root... like this never happens :) ).. There seems to be absoutely -no- user-level partitioning.. All like security levels depend on DAC to provide access control and individual users can relinquish access to other users.....this is -not- MAC.. Bob --------------------------------- Yahoo! Personals Single? There's someone we'd like you to meet. Lot's of someone's, actually. Yahoo! Personals
This archive was generated by hypermail 2.1.3 : Mon Nov 28 2005 - 11:54:12 PST