[redhat-lspp] Re: [PATCH] pam_namespace module patch

Klaus Weidner klaus at atsec.com
Sat Feb 18 04:35:41 UTC 2006


On Fri, Feb 17, 2006 at 10:09:05PM -0600, Klaus Weidner wrote:
> Actually, I think the polyptr->dir could be removed from the hash
> calculation too, and the poly_name built from the context and/or username
> only.

Or maybe make it fully customizable and the hash optional (since it's not
really a security feature)? For example, it would be kind of useful to be
able to read your "s0" home directory when logged in at a higher level,
and that way it would be easy to find.

Something like this:

	/tmp	/tmp.inst-$USER-$CONTEXT_MD5
	$HOME	$HOME.$CONTEXT

-Klaus




More information about the redhat-lspp mailing list