Am 13.10.2010 22:24, schrieb Eric Paris: > Right now secmark has lots of direct selinux calls. Use all LSM calls and > remove all SELinux specific knowledge. The only SELinux specific knowledge > we leave is the mode. The only point is to make sure that other LSMs at > least test this generic code before they assume it works. (They may also > have to make changes if they do not represent labels as strings) > > Signed-off-by: Eric Paris <eparis@xxxxxxxxxx> > Acked-by: Paul Moore <paul.moore@xxxxxx> I think these patches should go through the security tree. Acked-by: Patrick McHardy <kaber@xxxxxxxxx> -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html