On 9/5/2012 7:38 AM, Stephen Smalley wrote: > On Tue, 2012-09-04 at 19:09 -0700, Casey Schaufler wrote: >> Subject: LSM: SELinux changes to allow LSM stacking >> >> Change security blob accesses to use the lsm_get/lsm_set >> interfaces. This requires removal of the cred pointer >> poisoning in selinux_cred_free. >> >> Signed-off-by: Casey Schaufler <casey@xxxxxxxxxxxxxxxx> > FWIW, passes the selinux-testsuite with SELinux and Yama enabled. > Thank you. I'm not at all surprised given the intent of Yama. I would be much more interested in the results with AppArmor and TOMOYO. -- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with the words "unsubscribe selinux" without quotes as the message.