[Date Prev][Date Next] [Thread Prev][Thread Next]
[Thread Index]
[Date Index]
[Author Index]
Re: [RFC] security: add iptables "security" table for MAC rules
- From: James Morris <jmorris namei org>
- To: Paul Moore <paul moore hp com>
- Cc: linux-security-module vger kernel org, fedora-selinux-list redhat com, selinux tycho nsa gov
- Subject: Re: [RFC] security: add iptables "security" table for MAC rules
- Date: Wed, 30 Jan 2008 11:43:11 +1100 (EST)
On Tue, 29 Jan 2008, Paul Moore wrote:
> That seems reasonable. By the way, this isn't really related, but is it
> possible to change the NF_IP_PRI_SELINUX_* constants to NF_IP_PRI_SECURITY_*
> for the sake of consistency or are those values already visible to userspace?
They are visible to userspace, and included in glibc headers, but I don't
see any userland use of them via google codesearch or know of a possible
valid use.
> I suppose we could always rename them anyway and just add a #define for
> compatibility ...
Yep, if you want to.
- James
--
James Morris
<jmorris namei org>
[Date Prev][Date Next] [Thread Prev][Thread Next]
[Thread Index]
[Date Index]
[Author Index]