1. Complexity of SELinux policies a. Inability to create policy abstraction layers i. If we had to write software the way we write policy, we would have to compile everything in our system into one gigantic, monolithic executable. -- James Carter <jwcart2@xxxxxxxxxxxxx> National Security Agency -- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with the words "unsubscribe selinux" without quotes as the message.