Re: [BK PATCH] LSM changes for 2.5.59

Bill Davidsen (davidsen@tmr.com)
Mon, 10 Feb 2003 17:14:50 -0500 (EST)


This is a MIME-formatted message. If you see this text it means that your
E-mail software does not support MIME-formatted messages.

--=_courier-19356-1044915544-0001-2
Content-Type: TEXT/PLAIN; CHARSET=us-ascii; FORMAT=flowed
Content-ID: <Pine.LNX.3.96.1030210170713.29699E@gatekeeper.tmr.com>

On Sun, 9 Feb 2003, Crispin Cowan wrote:

> And I actually like that plan. But I still believe it to be too radical
> for 2.6. It has many nice properties, but is much more invasive to the
> kernel. I think it is a very interesting idea for 2.7, and should be
> floated past the maintainers who will be impacted to see if it has a
> hope in hell.

Too radical? After the modules rewrite how could anything short of a
rewrite in another language be too radical. At least a unified set of
security hooks would be a feature which would be immediately useful and
easy to understand. The benefits of the module changes are not as obvious.

With MS pushing their own security initiative, which seems to be building
computers which only run their os, this would have been a really good
feature from a mindshare perspective.

-- 
bill davidsen <davidsen@tmr.com>
  CTO, TMR Associates, Inc
Doing interesting things with little computers since 1979.

--=_courier-19356-1044915544-0001-2 Content-Type: application/pgp-signature Content-Transfer-Encoding: 7bit Content-ID: <Pine.LNX.3.96.1030210170713.29699F@gatekeeper.tmr.com> Content-Description:

-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQE+Rx8o5ZkfjX2CNDARAaf4AJ96UU5EQ1qTi0fu9OUt0LU77y8rYwCfRNE7 vzwilVzhD8It1Y9IkMieYgs= =D4oT -----END PGP SIGNATURE-----

--=_courier-19356-1044915544-0001-2--