All of lore.kernel.org
 help / color / mirror / Atom feed
* smaller memory footprint for 'strict' policy - helping gentoo as well
@ 2005-05-31  1:28 Luke Kenneth Casson Leighton
  2005-05-31  2:37 ` Joshua Brindle
  2005-05-31 13:53 ` Valdis.Kletnieks
  0 siblings, 2 replies; 7+ messages in thread
From: Luke Kenneth Casson Leighton @ 2005-05-31  1:28 UTC (permalink / raw)
  To: SE-Linux

following on from me blithering on about gentoo, and tying
in valdis' questions about smaller "strict" memory footprints
[gods, i had no idea: i was going to recommend a strict selinux
policy for 128mb machines let alone 256!], what is the way forward?

valdis raised the question: does the new binary module system minimise
the amount of memory used?

does that _actually_ help out wrt complexity of the selinux policy
_source_ (probably not).

hm, to avoid confusion - the requirements:

* to minimise memory usage at runtime

* to keep the number of source code files and size of source code
  files to _absolute_ minimum (if done properly should cover 1st
  requirement as well).

* to still make it possible to have redhat-loved run-time "modules"
  including having their associated runtime booleans.

* to still understand what's going on :)

... would the concept of a macros/unused directory help out, here?
along with a list of the macros you removed (and the files
they're in), valdis - and why.  and chris, also?

... surely... there's some analysis done by the m4 macro
compiler that automatically removes "unwanted" / "unused"
macros?

could that be done as a separate pre-pass / analysis step,
making it unnecessary to consider a macros/unused directory?

any further thoughts, anyone?

l.

-- 
--
<a href="http://lkcl.net">http://lkcl.net</a>
--

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2005-05-31 21:19 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-05-31  1:28 smaller memory footprint for 'strict' policy - helping gentoo as well Luke Kenneth Casson Leighton
2005-05-31  2:37 ` Joshua Brindle
2005-05-31 11:09   ` Luke Kenneth Casson Leighton
2005-05-31 14:10     ` Valdis.Kletnieks
2005-05-31 21:22       ` Luke Kenneth Casson Leighton
2005-05-31 13:53 ` Valdis.Kletnieks
2005-05-31 20:30   ` Luke Kenneth Casson Leighton

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.