Re: [RFC][PATCH 0/11] security: AppArmor - Overview

From: Stephen Smalley
Date: Tue Apr 25 2006 - 14:44:15 EST


On Tue, 2006-04-25 at 14:34 -0400, Valdis.Kletnieks@xxxxxx wrote:
> On Tue, 25 Apr 2006 12:45:33 EDT, Stephen Smalley said:
>
> > pam_namespace in Fedora Core. Not to mention that the restrictions you
> > mention only solve the problem within the jail, which is fine if we are
> > only talking about jail mechanisms. Not so good for any kind of real
> > MAC.
>
> Umm.. Stephen? Where in Fedora Core is it? I'm running a Fedora Core Rawhide
> right now, and it's not on my system, and 'yum provides pam_namespace.so'
> doesn't find it either. There *is* stuff over in the -lspp branch, but it
> (AFAIK) hasn't escaped into anything resembling general availability. Was this
> what you were referencing?

Today's rawhide. 0.99.3.0-3. ChangeLog is:
* Tue Apr 25 2006 Tomas Mraz <tmraz@xxxxxxxxxx> 0.99.3.0-3
- added pam_namespace module written by Janak Desai (per-user /tmp
support)
- new pam-redhat modules version

--
Stephen Smalley
National Security Agency

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/