Re: [PATCH v3 1/1] security: Add CONFIG_LSM_AUTO to handle default LSM stack ordering

2021-02-22 Thread Nicolas Iooss
On Mon, Feb 22, 2021 at 11:46 PM Casey Schaufler wrote: > > > On 2/22/2021 1:12 PM, Nicolas Iooss wrote: > > On Mon, Feb 22, 2021 at 9:32 PM Casey Schaufler > > wrote: > >> On 2/22/2021 10:31 AM, Mickaël Salaün wrote: > >>> On 22/02/2021 17:51, Casey Schaufler wrote: > On 2/22/2021 7:06 AM,

Re: [PATCH v3 1/1] security: Add CONFIG_LSM_AUTO to handle default LSM stack ordering

2021-02-22 Thread Casey Schaufler
On 2/22/2021 1:12 PM, Nicolas Iooss wrote: > On Mon, Feb 22, 2021 at 9:32 PM Casey Schaufler > wrote: >> On 2/22/2021 10:31 AM, Mickaël Salaün wrote: >>> On 22/02/2021 17:51, Casey Schaufler wrote: On 2/22/2021 7:06 AM, Mickaël Salaün wrote: > From: Mickaël Salaün > > Add a ne

Re: [PATCH v3 1/1] security: Add CONFIG_LSM_AUTO to handle default LSM stack ordering

2021-02-22 Thread Nicolas Iooss
On Mon, Feb 22, 2021 at 9:32 PM Casey Schaufler wrote: > > On 2/22/2021 10:31 AM, Mickaël Salaün wrote: > > On 22/02/2021 17:51, Casey Schaufler wrote: > >> On 2/22/2021 7:06 AM, Mickaël Salaün wrote: > >>> From: Mickaël Salaün > >>> > >>> Add a new option CONFIG_LSM_AUTO to enable users to deleg

Re: [PATCH v3 1/1] security: Add CONFIG_LSM_AUTO to handle default LSM stack ordering

2021-02-22 Thread Casey Schaufler
On 2/22/2021 10:31 AM, Mickaël Salaün wrote: > On 22/02/2021 17:51, Casey Schaufler wrote: >> On 2/22/2021 7:06 AM, Mickaël Salaün wrote: >>> From: Mickaël Salaün >>> >>> Add a new option CONFIG_LSM_AUTO to enable users to delegate default LSM >>> stacking order to kernel developers. This enable

Re: [PATCH v3 1/1] security: Add CONFIG_LSM_AUTO to handle default LSM stack ordering

2021-02-22 Thread Mickaël Salaün
On 22/02/2021 17:51, Casey Schaufler wrote: > On 2/22/2021 7:06 AM, Mickaël Salaün wrote: >> From: Mickaël Salaün >> >> Add a new option CONFIG_LSM_AUTO to enable users to delegate default LSM >> stacking order to kernel developers. This enable to keep a consistent >> order of enabled LSM when

Re: [PATCH v3 1/1] security: Add CONFIG_LSM_AUTO to handle default LSM stack ordering

2021-02-22 Thread Casey Schaufler
On 2/22/2021 7:06 AM, Mickaël Salaün wrote: > From: Mickaël Salaün > > Add a new option CONFIG_LSM_AUTO to enable users to delegate default LSM > stacking order to kernel developers. This enable to keep a consistent > order of enabled LSM when changing the LSM selection, especially when a > new L

[PATCH v3 1/1] security: Add CONFIG_LSM_AUTO to handle default LSM stack ordering

2021-02-22 Thread Mickaël Salaün
From: Mickaël Salaün Add a new option CONFIG_LSM_AUTO to enable users to delegate default LSM stacking order to kernel developers. This enable to keep a consistent order of enabled LSM when changing the LSM selection, especially when a new LSM is added to the kernel. CONFIG_LSM depends on !CONF