Re: [PATCH] LSM: Add /sys/kernel/security/lsm

From: Kees Cook
Date: Wed Jan 18 2017 - 16:08:00 EST


On Wed, Jan 18, 2017 at 11:22 AM, Paul Moore <paul@xxxxxxxxxxxxxx> wrote:
> On Wed, Jan 18, 2017 at 7:43 AM, James Morris <jmorris@xxxxxxxxx> wrote:
>> On Tue, 17 Jan 2017, Casey Schaufler wrote:
>>
>>> Subject: [PATCH] LSM: Add /sys/kernel/security/lsm
>>>
>>> I am still tired of having to find indirect ways to determine
>>> what security modules are active on a system. I have added
>>> /sys/kernel/security/lsm, which contains a comma separated
>>> list of the active secuirty modules. No more groping around
>>> in /proc/filesystems or other clever hacks.
>>>
>>> Unchanged from previous versions except for being updated
>>> to the latest security next branch.
>>>
>>
>> Any objections to merging this?
>>
>
> I'm fairly certain I ack'd a prior version of this at one point ...
>
> Acked-by: Paul Moore <paul@xxxxxxxxxxxxxx>

Yeah, me too.

Acked-by: Kees Cook <keescook@xxxxxxxxxxxx>

-Kees

--
Kees Cook
Nexus Security