_ RU.LINUX (2:5077/15.22) ___________________________________________ RU.LINUX _
From : Boris Tobotras 2:5020/400 17 Jul 98 10:37:44
Subj : RSBAC 1.0.3 for Linux Kernel 2.0.34
________________________________________________________________________________
From: Boris Tobotras <tobotras@jet.msk.su>
From: ao@ao.morpork.shnet.org (A. Ott)
To: linux-kernel@vger.rutgers.edu
cc: psl@vadim.gem.net
Message-ID: <6xxCmGK$4iB@ao.morpork.shnet.org>
Subject: RSBAC 1.0.3 for Linux Kernel 2.0.34
X-Mailer: CrossPoint v3.11 R/A12916
MIME-Version: 1.0
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: QUOTED-PRINTABLE
X-Orcpt: rfc822;linux-kernel@vger.rutgers.edu
Precedence: bulk
X-Loop: majordomo@vger.rutgers.edu
To all people interested in enhancing Linux access control:
The new Rule Set Based Access Control version 1.0.3 is available at
http://agn-www.informatik.uni-hamburg.de/people/1ott/rsbac
RSBAC Changes in recent versions
--------------------------------
1.0.2A: - Port to 2.0.34
- A few #ifdef CONFIG_RSBAC_USE_RSBAC_OWNER were missing, causi=
ng
error messages "rsbac_set/get_attr returned error" -> added
1.0.3: - Target DEV added. Now devices can get their own attributes bas=
ed
on major/minor numbers. Attributes based on their file represe=
ntations
in /dev are no longer used for open, but still for all other c=
alls.
MAC decisions on open requests for devices must be explicitely=
enabled
by mac_check to keep system bootable.
Short rule: Only if contents is accessed, DEV attributes apply=
--- ifmail v.2.14dev2 * Origin: Jet Infosystems (2:5020/400@fidonet)