Re: Capabilities

From: Andrew McNabb (amcnabb@argus-systems.com)
Date: Tue Feb 22 2000 - 22:13:33 EST


On Tue, 22 Feb 2000, Jesse Pollard wrote:

> On several B2 rated systems, the shell IS capable of requesting level
> changes, and unless the shell is operating in the proper environment
> (capabilities, level, compartment, and process tree) then even the request
> for security change can be a violation. (BTW, the system calls for changing
> security environment has to be built into the shell - they don't work
> otherwise - see below)

It doesn't have to be built into the shell; you can have a separate
program that asks for the PID of the process to change.

----------------------------------------------
                Andrew McNabb
             Argus Systems Group
          amcnabb@argus-systems.com
----------------------------------------------

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Wed Feb 23 2000 - 21:00:32 EST