On Wed, Sep 19, 2018 at 5:21 PM, Casey Schaufler <casey@xxxxxxxxxxxxxxxx> wrote: > LSM: Infrastructure management of the ipc security blob > > Move management of the kern_ipc_perm->security and > msg_msg->security blobs out of the individual security > modules and into the security infrastructure. Instead > of allocating the blobs from within the modules the modules > tell the infrastructure how much space is required, and > the space is allocated there. Maybe split this up too? (SELinux and Smack need tweaks?) -Kees -- Kees Cook Pixel Security