Re: [PATCH] LSM: Allow syzbot to ignore security= parameter.

From: Kees Cook
Date: Fri Feb 08 2019 - 16:33:29 EST


On Thu, Feb 7, 2019 at 8:24 AM Casey Schaufler <casey@xxxxxxxxxxxxxxxx> wrote:
> I added Kees to the CC list. Kees, what to you think about
> ignoring security= if lsm= is specified? I'm ambivalent.

This was one of many earlier suggestions, and the consensus seemed to
be "don't mix security= and lsm=". Why would anyone use both?

--
Kees Cook