[redhat-lspp] Re: MLS enforcing PTYs, sshd, and newrole

Paul Moore paul.moore at hp.com
Mon Oct 23 16:45:25 UTC 2006


Casey Schaufler wrote:
> 
> --- James Antill <jantill at redhat.com> wrote:
> 
>>On Thu, 2006-10-19 at 09:30 -0400, Stephen Smalley
>>wrote:
>> 
>>>That doesn't address sshd though.  Or gdm.  sshd
>>shouldn't be too difficult.
>>
>> Combined with adding similar code to sshd.
> 
> 
> Just a heads up, you want to do this, but
> you may not be able to get an evaluation team
> to allow it in an evaluated configuration.

Okay, I'm curious so I'll bite - why not, what problems would you expect?

-- 
paul moore
linux security @ hp




More information about the redhat-lspp mailing list