This set of four patches provide enhancements to the Smack LSM in support of MSSFv2 for MeeGo 1.2
smack-uds-revision.patch changes UNIX domain sockets to use the attributes of the peer task when making access control decisions. This patch has been accepted in 2.6.38. smack-exec-attribute.patch adds an attribute used to determine the Smack label with which a program will be run. This patch has been accepted in 2.6.38. smack-transmute-labels.patch allows an admin to configure a system such that files created in directories identified with an attribute will get the label of the directory instead of the process which created them. All access rules remain in effect. This patch has been accepted in 2.6.38. smack-mmap-controls.patch adds additional restrictions to the process of memory mapping files in support of controlling access to shared libraries. This patch has been proposed for 2.6.38, it is staged for the security-testing tree in any case and is available from the Smack testing tree. _______________________________________________ MeeGo-kernel mailing list [email protected] http://lists.meego.com/listinfo/meego-kernel
