Re: New to LSM list. A few questions.

2007-05-09 Thread Crispin Cowan
Cliffe wrote: Just a thought: Do security modules such as selinux and apparmor currently stack correctly? SELinux and AppArmor do not stack together. I have seen some other modules implement stacking, but usually where the functionality of the modules is complementary. If not, do you think

Re: New to LSM list. A few questions.

2007-05-09 Thread Cliffe
Thanks Crispin and Stephen for your earlier advice. Crispin Cowan wrote: AppArmor logs stuff using either the classic syslog method or the new LAF method. Stephen Smalley wrote: You can use the audit subsystem The version of AppArmor source I have (with suse 10.1) seams to use the audit

Re: New to LSM list. A few questions.

2007-04-26 Thread Crispin Cowan
Cliffe wrote: So I thought I would introduce myself. Is this mailing list an appropriate place to ask a few questions (and later discuss the resulting LSM)? Sure. I have read two papers about LSM [1, 2] which give a good foundation of LSM, and the Linux Journal root plug example article, and

Re: New to LSM list. A few questions.

2007-04-26 Thread Stephen Smalley
On Thu, 2007-04-26 at 16:46 +0800, Cliffe wrote: G’day, I am a PhD candidate. My research project will involve implementing an experimental access control model as a LSM. I have some programming background (I teach intro to C and Java); however, I am new to kernel programming. So I