Re: Time to remove LSM (was Re: [RESEND][RFC][PATCH 2/7] implementation of LSM hooks)

From: Serge E. Hallyn
Date: Mon Apr 24 2006 - 09:09:52 EST


Quoting Arjan van de Ven (arjan@xxxxxxxxxxxxx):
> for all such things in the first place. In fact, we already know that to
> do auditing, LSM is the wrong thing to do (and that's why audit doesn't
> use LSM). It's one of those fundamental linux truths: Trying to be

As I recall it was simply decided that LSM must be "access control
only", and that was why it wasn't used for audit.

Didn't Linda Walsh claim a much faster audit implementation using LSM
than the current lightweight audit framework?

-serge
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/