All of lore.kernel.org
 help / color / mirror / Atom feed
* Re: SELinux metadata protection
@ 2006-01-02 19:06 schaufler-ca.com - Casey Schaufler
  2006-01-03 15:46 ` Stephen Smalley
  0 siblings, 1 reply; 13+ messages in thread
From: schaufler-ca.com - Casey Schaufler @ 2006-01-02 19:06 UTC (permalink / raw)
  To: linux-security-module; +Cc: selinux

[-- Warning: decoded text below may be mangled, UTF-8 assumed --]
[-- Attachment #1: Type: text/plain, Size: 1080 bytes --]

------------------------
Casey Schaufler
casey@schaufler-ca.com
650.906.1780




--- KaiGai Kohei <kaigai@kaigai.gr.jp> wrote:

> Date: Sun, 01 Jan 2006 03:11:47 +0900
> From: KaiGai Kohei <kaigai@kaigai.gr.jp>
> To: linux-security-module@wirex.com, "SELinux(NSA)"
> <selinux@tycho.nsa.gov>
> Subject: SELinux metadata protection
>
> Hello
>
>
> Nowaday, I´m considering about a philosophical
> theme.
>
> In my understanding, file-metadata includes
> _filename_ similar to filesize
> update-timestamp, and so on.

Casey takes a deep breath...

The filename is not an attribute of the file.
The pathname components are data contained
in directory entries. The association of path name
to inode number is one way. There is no association
of path name from file. Really. This is the thing
that make audit hard.

Yes, I know "It's obvious". It's just not true.





--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 13+ messages in thread
[parent not found: <43B6C9E3.8020406@kaigai.gr.jp>]

end of thread, other threads:[~2006-01-06  1:52 UTC | newest]

Thread overview: 13+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2006-01-02 19:06 SELinux metadata protection schaufler-ca.com - Casey Schaufler
2006-01-03 15:46 ` Stephen Smalley
2006-01-04 16:01   ` KaiGai Kohei
2006-01-05 14:56   ` Serge E. Hallyn
2006-01-05 15:10     ` Stephen Smalley
2006-01-06  1:52       ` Joe Nall
     [not found] <43B6C9E3.8020406@kaigai.gr.jp>
2006-01-01 15:38 ` Serge E. Hallyn
2006-01-01 17:31   ` KaiGai Kohei
2006-01-01 17:48     ` Serge E. Hallyn
2006-01-02  6:02       ` KaiGai Kohei
2006-01-01 19:27 ` Serge E. Hallyn
2006-01-02  5:56   ` KaiGai Kohei
     [not found]   ` <43BC6E97.4000209@novell.com>
2006-01-05 14:37     ` Serge E. Hallyn

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.