Research Menu

.
Skip Search Box

SELinux Mailing List

Re: Issue on getting security context of socket and message

From: Park Lee <parklee_sel_at_yahoo.com>
Date: Fri, 26 Nov 2004 10:50:18 -0800 (PST)


On Tue, 09 Nov 2004 at 10:39, Stephen Smalley wrote:
> In the kernel, you can obtain the security context of a socket via the
> security field of its associated inode. Look at socket_has_perm()
> and selinux_socket_sock_rcv_skb() in security/selinux/hooks.c for
> examples.

I'm now trying to do something on integrating IPsec with SELinux. Now I need to get the security context of a socket and the socket itself. Would you please tell me further that when an outbound packet is going to be send, How can we get the struct socket itself (i.e. the socket that is related to the outbound packet. it refers that when we want to send the packet, we should first set up the socket )?  

And, in kernel-space, How can we transfer a SID to a security context? Is there any function can we use to achieve it?  

Thank you.  

--
Best Regards,
Park Lee <parklee_sel@yahoo.com> 
 






__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Fri 26 Nov 2004 - 13:50:25 EST
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service