Research Menu

.
Skip Search Box

SELinux Mailing List

Re: context_sensitivity_{get|set}

From: Linda Knippers <linda.knippers_at_hp.com>
Date: Fri, 13 Oct 2006 16:36:18 -0400


Stephen Smalley wrote:

> On Fri, 2006-10-13 at 12:21 -0400, Matt Anderson wrote:
> 

>>I agree names are a bit confusing, I was at a loss for what to call them
>>myself and decided to defer to the output from secon:
>>
>># secon
>>user: root
>>role: staff_r
>>type: staff_t
>>sensitivity: SystemLow
>>clearance: SystemHigh
>>mls-range: SystemLow-SystemHigh
>>
>>For my usage I need the entire low level. There may be other users want
>>just the sensitivity, but I'd be concerned that information would be
>>unintentionally downgraded by leaving off categories.
> 
> 
> I think unfortunately secon and the audit interface were polluted by a
> limited notion of the MLS model.  Proper terms are low level and high
> level, not sensitivity and clearance.

Is it too late to clean up these tools? With audit, is it just changing the names of the parameters in some of the user space tools?

  • ljk
--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Fri 13 Oct 2006 - 16:36:49 EDT
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service