Re: [ANNOUNCE][PATCH] New fs to control access to system resources

From: Greg KH (greg@kroah.com)
Date: Wed Jan 16 2002 - 18:06:21 EST


On Wed, Jan 16, 2002 at 07:51:06PM +0100, Andreas Ferber wrote:
> On Tue, Jan 15, 2002 at 05:01:11PM +0100, Olaf Dietsche wrote:
> >
> > this is a new file system to control access to system resources.
> > Currently it controls access to inet_bind() with ports < 1024 only.
>
> Just some minor notes from reading the source and docs:
>
> - It somewhat collides with the Linux Security Module project
> (http://lsm.immunix.org/).

I don't see this conflicting with what the lsm patch does (with the
minor exception of removing the capable() call.) How do you see a
conflict here?

This patch looks nice, I like it.

Yet another reason why we should have a bunch of the ramfs functions
exported for the rest of the kernel to use :)

thanks,

greg k-h
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Wed Jan 23 2002 - 21:00:18 EST