[RFC][PATCH] collect security labels on user processes generating audit messages

Stephen Smalley sds at tycho.nsa.gov
Wed Feb 15 16:17:18 UTC 2006


On Wed, 2006-02-15 at 09:49 -0600, Timothy R. Chavez wrote:
> This makes sense to me.  I'll go ahead and make the change.  I wouldn't
> even technically need the function or function call in my patch since
> selinux_available() simply returns ss_initialized.

Well, I think we want to keep that variable private to the SELinux
"module".  In the future, we'll likely add proper namespace prefixes to
all non-static SELinux symbols to avoid polluting the kernel namespace.
 
-- 
Stephen Smalley
National Security Agency




More information about the Linux-audit mailing list