Thread (28 messages) 28 messages, 5 authors, 2006-10-05

Re: [PATCH] Fix for IPsec leakage with SELinux enabled - V.02

From: James Morris <jmorris@namei.org>
Date: 2006-10-04 01:33:19

Possibly related (same subject, not in this thread)

On Tue, 3 Oct 2006, David Miller wrote:
I'm not saying either is wrong, I'm just pointing it out to make sure
this is intentional.

The socket policy behavior deserves some scrutiny.  I say this because
if a matching socket policy is avoided due to security layer error,
this could potentially make key manager problems very hard to
diagnose.
Yep, the code needs to be reworked in general (Venkat is doing this).



- James
-- 
James Morris
[off-list ref]
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help