Re: [ANNOUNCE][PATCH] New fs to control access to system resources

Greg KH (greg@kroah.com)
Wed, 16 Jan 2002 15:06:21 -0800


On Wed, Jan 16, 2002 at 07:51:06PM +0100, Andreas Ferber wrote:
> On Tue, Jan 15, 2002 at 05:01:11PM +0100, Olaf Dietsche wrote:
> >
> > this is a new file system to control access to system resources.
> > Currently it controls access to inet_bind() with ports < 1024 only.
>
> Just some minor notes from reading the source and docs:
>
> - It somewhat collides with the Linux Security Module project
> (http://lsm.immunix.org/).

I don't see this conflicting with what the lsm patch does (with the
minor exception of removing the capable() call.) How do you see a
conflict here?

This patch looks nice, I like it.

Yet another reason why we should have a bunch of the ramfs functions
exported for the rest of the kernel to use :)

thanks,

greg k-h
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/