From mboxrd@z Thu Jan 1 00:00:00 1970 From: Casey Schaufler Subject: Re: RFC: Mandatory Access Control for sockets aka "personal firewalls" Date: Wed, 21 Jan 2009 16:59:21 -0800 Message-ID: <4977C4E9.1090303@schaufler-ca.com> References: <504710.17436.qm@web31507.mail.mud.yahoo.com> Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: rmeijer@xs4all.nl, Samir Bellabes , linux-security-module , Stephan Peijnik , netdev@vger.kernel.org, netfilter-devel@vger.kernel.org To: imipak@yahoo.com Return-path: In-Reply-To: <504710.17436.qm@web31507.mail.mud.yahoo.com> Sender: linux-security-module-owner@vger.kernel.org List-Id: netfilter-devel.vger.kernel.org Jonathan Day wrote: > p.s. Which poster is going to be evil and start calling this Project MAC first? > Careful, it can get much worse. What about mandatory access controls based on the NIC address, not the IP address? That would be MAC based MAC. Ack.