[ubuntu-hardened] AppArmor for Ubuntu
Crispin Cowan
crispin at novell.com
Fri Mar 3 21:58:51 GMT 2006
Crispin Cowan wrote:
> cwarner wrote:
>
>>> Except for the fundamental difference between path name based access
>>> controls and label based access controls. The label based scheme in
>>> SELinux makes it much more difficult to build an automated policy generator.
>>>
>> There is a response to this in the form of questions posed By Thomas
>> Bleher.
>>
> I'm going to post an extended response to labels vs. paths when I'm not
> running for an airplane :)
>
Never mind; read Seth Arnold's post
http://forge.novell.com/pipermail/apparmor-dev/2006-March/000024.html
for a good explanation.
Crispin
--
Crispin Cowan, Ph.D. http://crispincowan.com/~crispin/
Director of Software Engineering, Novell http://novell.com
Olympic Games: The Bi-Annual Festival of Corruption
More information about the ubuntu-hardened
mailing list