Re: Adding support for SE-Linux security
От | Kevin Grittner |
---|---|
Тема | Re: Adding support for SE-Linux security |
Дата | |
Msg-id | 4B1CCF6F020000250002D11E@gw.wicourts.gov обсуждение исходный текст |
Ответ на | Re: Adding support for SE-Linux security (Robert Haas <robertmhaas@gmail.com>) |
Ответы |
Re: Adding support for SE-Linux security
|
Список | pgsql-hackers |
Robert Haas <robertmhaas@gmail.com> wrote: > Bruce Momjian <bruce@momjian.us> wrote: >> Personally, I think AppArmor is a saner security system: >> >> http://www.novell.com/linux/security/apparmor/selinux_comparison.html > Agreed. > I'd like to see us be able to support it. One of the things that > I think would be worth looking into is whether there is a way to > make this pluggable, so that selinux and apparmor and trusted > solaris and so on could make use of the same framework Given the extreme patience and diligence exhibited by KaiGai, I hesitate to say this, but it seems to me that this would be critically important for the long term success of this feature. I have no idea how much work it would be to make the interface to the external security system pluggable, but if it's at all feasible, I think it should be done. -Kevin
В списке pgsql-hackers по дате отправления: