RE: Security policy analysis

From: Stephen Smalley <sds_at_tislabs.com>
Date: Wed, 10 Oct 2001 15:32:25 -0400 (EDT)

On Wed, 10 Oct 2001, Frank Mayer wrote:

>We looked quickly at checkpolicy and came to the same conclusion, i.e., that
>it compiles policies for a different reason and has a policy DB not
>suited for our purpose. That's not a strong opinion.

So perhaps checkpolicy needs to be revised to generate an intermediate set of data structures that are more suitable for policy analysis tools prior to generating the final set of data structures for the kernel security server?

--
Stephen D. Smalley, NAI Labs
ssmalley@nai.com




--
You have received this message because you are subscribed to the selinux list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Wed 10 Oct 2001 - 15:40:59 EDT

This archive was generated by hypermail 2.2.0 on Wed 11 Jun 2008 - 08:10:26 EDT