Re: [RESEND][RFC][PATCH 2/7] implementation of LSM hooks

From: Gerrit Huizenga
Date: Mon Apr 17 2006 - 21:45:26 EST



On Mon, 17 Apr 2006 23:55:25 BST, Christoph Hellwig wrote:
> On Mon, Apr 17, 2006 at 03:15:29PM -0700, Gerrit Huizenga wrote:
> > configure correctly that most of them disable it. In theory, LSM +
> > something like AppArmour provides a much simpler security model for
>
> apparmor falls into the findamentally broken category above, so it's
> totally uninteresting except as marketing candy for the big red company.

Is there a pointer to why it is fundamentally broken? I haven't seen
such comments before but it may be that I've been hanging out on the
wrong lists or spending too much time inhaling air at 30,000 feet.

gerrit
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/