On 11/30/2010 3:13 PM, Marko Vojinovic wrote:
P.S. I am just waiting for the day when SELinux is going to become locked in enforcing mode by the kernel developers, much as the traditional permissions system is a mandatory thing right now. :-D
I thought there was a security API in the kernel that was designed specifically _not_ to lock it to an implementation. Is there a standards group for SELinux? It's one thing to follow Posix, something else to be locked to a non-standard concept.