Casey Schaufler <[EMAIL PROTECTED]> wrote:

> Whoops, sorry. You leave the process label alone and explicitly
> set the file label using the xattr interfaces.

That's the wrong way to do things.  There'd then be a window in which
cachefilesd (the userspace daemon) could attempt to view the file when the
file has the wrong label attached.

David
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to [EMAIL PROTECTED]
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

Reply via email to