Research Menu

.
Skip Search Box

SELinux Mailing List

RE: Security policy analysis

From: Stephen Smalley <sds_at_tislabs.com>
Date: Wed, 10 Oct 2001 15:32:25 -0400 (EDT)

On Wed, 10 Oct 2001, Frank Mayer wrote:

>We looked quickly at checkpolicy and came to the same conclusion, i.e., that
>it compiles policies for a different reason and has a policy DB not
>suited for our purpose. That's not a strong opinion.

So perhaps checkpolicy needs to be revised to generate an intermediate set of data structures that are more suitable for policy analysis tools prior to generating the final set of data structures for the kernel security server?

--
Stephen D. Smalley, NAI Labs
ssmalley@nai.com




--
You have received this message because you are subscribed to the selinux list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Wed 10 Oct 2001 - 15:40:59 EDT
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service