Xsecurity [was Re: OpenSSH Re: rawhide report: 20040608 changes]

Barry K. Nathan barryn at pobox.com
Wed Jun 9 19:56:10 UTC 2004


On Wed, Jun 09, 2004 at 09:48:37AM -0400, Havoc Pennington wrote:
> On Tue, 2004-06-08 at 11:21, Stephen Smoogen wrote:
> > Will the Xsecurity extensions be looked at in the future. 
> 
> Rather than the old XSECURITY extension we're looking at an
> SELinux-style approach that the NSA guys are working on, essentially
> changes all the hardcoded XSECURITY checks in the server into callouts
> to a configurable policy.
[snip]

Does this mean it's too early to be reporting things like bug 125590?
(Basically, ssh -X instead of -Y messes up xclock.)

-Barry K. Nathan <barryn at pobox.com>





More information about the fedora-devel-list mailing list