[Date Prev][Date Next] [Thread Prev][Thread Next]
[Thread Index]
[Date Index]
[Author Index]
Re: [RFC] security: add iptables "security" table for MAC rules
- From: James Morris <jmorris namei org>
- To: Paul Moore <paul moore hp com>
- Cc: linux-security-module vger kernel org, fedora-selinux-list redhat com, selinux tycho nsa gov
- Subject: Re: [RFC] security: add iptables "security" table for MAC rules
- Date: Wed, 30 Jan 2008 07:51:55 +1100 (EST)
On Tue, 29 Jan 2008, Paul Moore wrote:
> I'm not sure if returning false and failing here is the best thing to do in
> terms of backwards compatibility. I think we need some grace period where we
> print a warning message and still allow the operation; after some period of
> time we can then remove the ability completely and force users to use the
> new "security" table.
Currently, the patch allows the use of the mangle table, so it is
backwards compatible.
--
James Morris
<jmorris namei org>
[Date Prev][Date Next] [Thread Prev][Thread Next]
[Thread Index]
[Date Index]
[Author Index]