Re: RFC: Network privilege separation.

From: Herbert Xu <herbert@gondor.apana.org.au>
Date: 2009-01-08 12:10:53
Also in: lkml

Alan Cox [off-list ref] wrote:
That to me says controlling network access is only useful as part of a
more fine grained and general purpose interface. We already have that
interface in the form of things like SELinux. We already have systems
actively using it to control stuff like which ports are accessed by some
services.
Exactly.  If people want this they should go the SELinux/LSM route.

Cheers,
-- 
Visit Openswan at http://www.openswan.org/
Email: Herbert Xu ~{PmV>HI~} [off-list ref]
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help