Skip top menus
National Security Agency and Central Security Service with agency logos.NSA/CSS Memorial Wall
Home    About NSA    Research    Business    Careers    Public Info    History
Introduction to Research    Security-Enhanced Linux    Information Assurance Research    Technology Transfer    Publications    Related Links

>>SELinux Mailing List: by date

Search
What's new?
Contents
Overview
What's New
Frequently Asked Questions
Background
Documentation
License
Download
Participating
Mail List
Archive Summary
Archive by Thread
Archive by Author
Archive by Date
Archive by Subject
Remaining Work
Contributors
Related Work
Press Releases
  • 26363 messages: Starting Fri 22 Dec 2000 - 09:05:15 EST, Ending Tue 10 Jun 2008 - 23:04:35 EDT
  • sort by: [ thread ] [ author ] [ date ] [ subject ]
  • Nearby: [ About this archive ]
  • Tuesday, 10 June
    • Re: releasibility in mcstransd Joe Nall 
    • rbacsep: home/tmp polyinstantiation Christopher J. PeBenito 
    • Re: Questions regarding labeled ipsec/MAC networking Joy Latten 
    • Re: X in MLS enforcing problem Ted X Toth 
    • Re: tracking down execstack & execmem violations Stephen Smalley 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: tracking down execstack & execmem violations Daniel J Walsh 
    • Re: tracking down execstack & execmem violations Eric Paris 
    • Re: Questions regarding labeled ipsec/MAC networking Joy Latten 
    • RE: tracking down execstack & execmem violations Stephen Smalley 
    • RE: tracking down execstack & execmem violations Clarkson, Mike R \(US SSA\) 
    • Re: tracking down execstack & execmem violations Stephen Smalley 
    • tracking down execstack & execmem violations Clarkson, Mike R \(US SSA\) 
    • Re: Questions regarding labeled ipsec/MAC networking Joy Latten 
    • Re: Questions regarding labeled ipsec/MAC networking Paul Moore 
    • Re: avc_* functions not in libselinux-python Stephen Smalley 
    • Re: avc_* functions not in libselinux-python Ted X Toth 
    • Re: X in MLS enforcing problem Ted X Toth 
    • Re: avc_* functions not in libselinux-python Stephen Smalley 
    • Re: Questions regarding labeled ipsec/MAC networking Stephen Smalley 
    • Re: X in MLS enforcing problem Stephen Smalley 
    • Re: [PATCH] SELinux: more user friendly unknown handling printk Stephen Smalley 
  • Monday, 9 June
    • Re: X in MLS enforcing problem Eamon Walsh 
    • Re: Questions regarding labeled ipsec/MAC networking James Morris 
    • Re: [PATCH] SELinux: fix off by 1 reference of class_to_string in context_struct_compute_av James Morris 
    • Re: [PATCH] SELinux: more user friendly unknown handling printk James Morris 
    • Re: [patch] selinux: change handling of invalid classes (Was: Re: 2.6.26-rc5-mm1 selinux whine) James Morris 
    • Re: [PATCH] SELinux: drop load_mutex in security_load_policy James Morris 
    • Questions regarding labeled ipsec/MAC networking Joy Latten 
    • Re: X in MLS enforcing problem Xavier Toth 
    • RE: X in MLS enforcing problem Chad Hanson 
    • X in MLS enforcing problem Xavier Toth 
    • RE: releasibility in mcstransd Chad Hanson 
    • [PATCH] SELinux: more user friendly unknown handling printk Eric Paris 
    • Re: releasibility in mcstransd Paul Moore 
    • releasibility in mcstransd Joshua Brindle 
    • Re: [PATCH] SELinux: drop load_mutex in security_load_policy Stephen Smalley 
    • Re: [patch] selinux: change handling of invalid classes (Was: Re: 2.6.26-rc5-mm1 selinux whine) Eric Paris 
    • Re: [PATCH] SELinux: fix off by 1 reference of class_to_string in context_struct_compute_av Stephen Smalley 
    • RE: To domain transition or not? Stephen Smalley 
    • [patch] selinux: change handling of invalid classes (Was: Re: 2.6.26-rc5-mm1 selinux whine) Stephen Smalley 
    • [PATCH] SELinux: drop load_mutex in security_load_policy Eric Paris 
    • Re: [PATCH] SELinux: fix off by 1 reference of class_to_string in context_struct_compute_av Eric Paris 
    • RE: To domain transition or not? Clarkson, Mike R \(US SSA\) 
    • [PATCH] SELinux: fix off by 1 reference of class_to_string in context_struct_compute_av Eric Paris 
    • Re: No AVC messages found Justin Mattock 
    • Re: To domain transition or not? Stephen Smalley 
    • To domain transition or not? Clarkson, Mike R \(US SSA\) 
    • Re: [refpolicy] /usr/lib32 type Martin Orr 
    • Re: No AVC messages found Stephen Smalley 
    • Re: No AVC messages found Justin Mattock 
    • [refpolicy] Milter Mail Filters Paul Howarth 
    • Re: kernel/kernel.* diffs Christopher J. PeBenito 
    • Re: [refpolicy] Let xserver chat to hal Christopher J. PeBenito 
    • Re: [refpolicy] /usr/lib32 type Christopher J. PeBenito 
    • Re: No AVC messages found Stephen Smalley 
    • Re: RFC: Per-object manager controls in /selinux/config KaiGai Kohei 
  • Sunday, 8 June
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: Trying to get XAce policy straightened out but our tool chain is too broken to handle it. Ted X Toth 
    • No AVC messages found Justin Mattock 
  • Saturday, 7 June
    • [refpolicy] Let xserver chat to hal Martin Orr 
    • [refpolicy] /usr/lib32 type Martin Orr 
  • Friday, 6 June
    • Re: Trying to get XAce policy straightened out but our tool chain is too broken to handle it. Eamon Walsh 
    • Re: [PATCH RFC 0/3] Open code kernel locks Paul Moore 
    • RE: modules.conf problem Christopher J. PeBenito 
    • RE: modules.conf problem Clarkson, Mike R \(US SSA\) 
    • Re: [patch] libsepol: fix endianness bug in network node address handling Stephen Smalley 
    • Re: [PATCH 2/3] SELinux: open code load_mutex Stephen Smalley 
    • Re: RFC: Per-object manager controls in /selinux/config Stephen Smalley 
    • Re: [PATCH 2/3] SELinux: open code load_mutex James Morris 
    • Re: modules.conf problem Christopher J. PeBenito 
    • Re: [PATCH 3/3] SELinux: open code sidtab lock Stephen Smalley 
    • Re: [PATCH 2/3] SELinux: open code load_mutex Stephen Smalley 
    • Re: [PATCH 1/3] SELinux: open code policy_rwlock Stephen Smalley 
    • SE Linux and GPG Russell Coker 
    • [PATCH 3/3] SELinux: open code sidtab lock James Morris 
    • [PATCH 2/3] SELinux: open code load_mutex James Morris 
    • [PATCH 1/3] SELinux: open code policy_rwlock James Morris 
    • [PATCH RFC 0/3] Open code kernel locks James Morris 
    • Re: RFC: Per-object manager controls in /selinux/config KaiGai Kohei 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
  • Thursday, 5 June
    • modules.conf problem Clarkson, Mike R \(US SSA\) 
    • Re: RFC: Per-object manager controls in /selinux/config Stephen Smalley 
    • Re: RFC: Per-object manager controls in /selinux/config Eamon Walsh 
    • Re: [patch][stable] policycoreutils user_u seuser vs. genhomedircon Stephen Smalley 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Eamon Walsh 
    • Trying to get XAce policy straightened out but our tool chain is too broken to handle it. Daniel J Walsh 
    • Re: [patch] selinux: fix endianness bug in network node address handling James Morris 
    • Re: [patch] selinux: simplify ioctl checking James Morris 
    • [patch] selinux: fix endianness bug in network node address handling Stephen Smalley 
    • [patch] libsepol: fix endianness bug in network node address handling Stephen Smalley 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Chris PeBenito 
    • [patch] selinux: simplify ioctl checking Stephen Smalley 
  • Wednesday, 4 June
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: NetLabel Justin Mattock 
    • Re: NetLabel Paul Moore 
    • Re: NetLabel Justin Mattock 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: NetLabel Paul Moore 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Joshua Brindle 
    • NetLabel Justin Mattock 
    • Re: RFC: Per-object manager controls in /selinux/config KaiGai Kohei 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
  • Tuesday, 3 June
    • Re: [RFC][PATCH] selinux: simplify ioctl checking James Morris 
    • Re: [RFC][PATCH] selinux: simplify ioctl checking Eric Paris 
    • Re: [RFC][PATCH] selinux: simplify ioctl checking Stephen Smalley 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
  • Monday, 2 June
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: rbacsep: collapsing xserver Christopher J. PeBenito 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Eamon Walsh 
    • Re: changing role to user_r Justin Mattock 
    • RE: changing role to user_r Clarkson, Mike R \(US SSA\) 
    • Re: changing role to user_r Justin Mattock 
    • Re: changing role to user_r Justin Mattock 
  • Sunday, 1 June
    • Recent problems recompiling libsemanage with new libustr (1.0.4) Manoj Srivastava 
  • Monday, 2 June
    • Re: changing role to user_r Christopher J. PeBenito 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
  • Sunday, 1 June
    • Re: Recent problems recompiling libsemanage with new libustr (1.0.4) Manoj Srivastava 
  • Saturday, 31 May
    • Re: question about security Justin Mattock 
    • Re: question about security Russell Coker 
    • changing role to user_r Justin Mattock 
  • Friday, 30 May
    • Re: Here is my current diff on xserver policy. Eamon Walsh 
    • Re: question about security Justin Mattock 
    • Re: rbacsep: collapsing xserver Eamon Walsh 
    • Re: rbacsep: collapsing xserver Casey Schaufler 
    • Here is my current diff on xserver policy. Daniel J Walsh 
    • Re: question about security Justin Mattock 
    • Re: question about security Daniel J Walsh 
    • Re: question about security Justin Mattock 
    • Re: question about security Matthew Hammer 
    • question about security Justin Mattock 
    • Re: rbacsep: collapsing xserver Joe Nall 
    • Re: rbacsep: collapsing xserver Joe Nall 
    • Re: rbacsep: collapsing xserver Xavier Toth 
    • Re: Writing SELinux Policy...(Allow ALL, Deny Few) Stephen Smalley 
    • Re: rbacsep: collapsing xserver Christopher J. PeBenito 
    • Re: rbacsep: collapsing xserver Xavier Toth 
    • Re: rbacsep: collapsing xserver Xavier Toth 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
  • Thursday, 29 May
    • Re: rbacsep: collapsing xserver Eamon Walsh 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Eamon Walsh 
    • Fwd: rbacsep: collapsing xserver Xavier Toth 
    • Re: rbacsep: collapsing xserver Daniel J Walsh 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Eamon Walsh 
    • Re: rbacsep: collapsing xserver Xavier Toth 
    • Re: rbacsep: collapsing xserver Christopher J. PeBenito 
  • Wednesday, 28 May
    • [patch][stable] policycoreutils user_u seuser vs. genhomedircon Chris PeBenito 
    • Re: rbacsep: collapsing xserver Eamon Walsh 
    • Re: rbacsep: collapsing xserver Daniel J Walsh 
    • Re: rbacsep: collapsing xserver Joe Nall 
    • Re: copy/paste policy patch Christopher J. PeBenito 
    • Re: rbacsep: collapsing xserver Christopher J. PeBenito 
    • Writing SELinux Policy...(Allow ALL, Deny Few) Hasan Rezaul-CHR010 
    • Re: copy/paste policy patch Xavier Toth 
    • Re: rbacsep: collapsing xserver Joe Nall 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: rbacsep: collapsing xserver Joe Nall 
    • Re: rbacsep: collapsing xserver Christopher J. PeBenito 
    • Re: rbacsep: collapsing xserver Xavier Toth 
    • Re: rbacsep: collapsing xserver Joe Nall 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Stephen Smalley 
    • rbacsep: collapsing xserver Christopher J. PeBenito 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
  • Tuesday, 27 May
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Re: Problem with multisame specification warning messages RHEL 5 Ali Nebi 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Eamon Walsh 
    • Re: Is there a command line tool that returns 1 if a file is in the wrong context? Stephen Smalley 
    • Re: [PATCH Take 3] user and role remapping in expander (was Re: roles in base module) Stephen Smalley 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Stephen Smalley 
    • Re: Is there a command line tool that returns 1 if a file is in the wrong context? Eamon Walsh 
    • Re: Quick question Stephen Smalley 
    • Re: 7 simple noobie questions = 1-line answers ok :) Stephen Smalley 
    • Re: 7 simple noobie questions = 1-line answers ok :) Danny Howerton 
    • Re: Quick question Ioannis Aslanidis 
    • 7 simple noobie questions = 1-line answers ok :) green bean 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Stephen Smalley 
    • Re: Quick question Stephen Smalley 
    • Re: Quick question Ioannis Aslanidis 
    • Re: Quick question Stephen Smalley 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Christopher J. PeBenito 
    • Re: [PATCH Take 3] user and role remapping in expander (was Re: roles in base module) Joshua Brindle 
    • Quick question Ioannis Aslanidis 
    • Re: [PATCH] libselinux: add support for /contexts/postgresql_contexts Stephen Smalley 
    • Re: [PATCH Take 3] user and role remapping in expander (was Re: roles in base module) Stephen Smalley 
    • Re: Is there a command line tool that returns 1 if a file is in the wrong context? Stephen Smalley 
    • Re: Problem with multisame specification warning messages RHEL 5 Daniel J Walsh 
    • Re: New domain for podsleuth Daniel J Walsh 
    • Re: New domain for nsplugin Daniel J Walsh 
  • Monday, 26 May
    • Re: Updated kernel/filesystem.* patch Christopher J. PeBenito 
    • Re: [PATCH 1/1] REFPOL: Add new labeled networking permissions Christopher J. PeBenito 
    • Re: New policy for kerneloops Christopher J. PeBenito 
    • Re: New domain for nsplugin Christopher J. PeBenito 
    • Re: New domain for podsleuth Christopher J. PeBenito 
    • Re: New Domain for kismet Christopher J. PeBenito 
    • [PATCH] libselinux: add support for /contexts/postgresql_contexts KaiGai Kohei 
    • Problem with multisame specification warning messages RHEL 5 Ali Nebi 
  • Sunday, 25 May
    • Re: netif and node check in RHEL5 Takesi satoh 
  • Saturday, 24 May
    • [PATCH Take 3] user and role remapping in expander (was Re: roles in base module) Joshua Brindle 
    • Is there a command line tool that returns 1 if a file is in the wrong context? Joe Nall 
  • Friday, 23 May
    • Re: overriding home directory file contexts Daniel J Walsh 
    • Re: netif and node check in RHEL5 Paul Moore 
    • Re: netif and node check in RHEL5 Takesi satoh 
    • We need to do a better job of merging policy into Refpolicy Daniel J Walsh 
    • I have copied a bunch of patches for most of kernel/system directory Daniel J Walsh 
    • kernel/kernel.* diffs Daniel J Walsh 
    • Fedora 10 modules config for MLS and Targeted policy Daniel J Walsh 
    • Updated kernel/filesystem.* patch Daniel J Walsh 
    • RE: overriding home directory file contexts Stephen Smalley 
  • Thursday, 22 May
    • [PATCH 1/1] REFPOL: Add new labeled networking permissions Paul Moore 
    • [PATCH 0/1] Latest network peer labeling patch Paul Moore 
    • RE: overriding home directory file contexts Clarkson, Mike R \(US SSA\) 
    • Re: overriding home directory file contexts Stephen Smalley 
    • overriding home directory file contexts Clarkson, Mike R \(US SSA\) 
    • Re: refpolicy: syscall init_module needs sys_nice & setsched Christopher J. PeBenito 
    • refpolicy: syscall init_module needs sys_nice & setsched Václav Ovsík 
    • Re: Suggested global change to policy Daniel J Walsh 
    • Re: Suggested global change to policy Christopher J. PeBenito 
    • Re: [PATCH] selinux: enable processes with mac_admin to get the raw inode contexts James Morris 
  • Wednesday, 21 May
    • [PATCH] selinux: enable processes with mac_admin to get the raw inode contexts Stephen Smalley 
    • Re: netif and node check in RHEL5 Paul Moore 
    • Suggested global change to policy Daniel J Walsh 
    • Re: should GNU install call matchpathcon by default? Stephen Smalley 
    • Re: should GNU install call matchpathcon by default? Jim Meyering 
    • Re: SELINUX admin with LDAP Daniel J Walsh 
    • netif and node check in RHEL5 Takesi satoh 
  • Tuesday, 20 May
    • Re: should GNU install call matchpathcon by default? Jim Meyering 
    • Re: should GNU install call matchpathcon by default? Eric Paris 
    • Re: roles in base module Stephen Smalley 
    • Re: should GNU install call matchpathcon by default? Jim Meyering 
    • Re: should GNU install call matchpathcon by default? Stephen Smalley 
    • Re: Potential Memory leak in libselinux Stephen Smalley 
  • Monday, 19 May
    • Potential Memory leak in libselinux Daniel J Walsh 
    • Patch to add auth_switch to lots of domains. Daniel J Walsh 
    • New Domain for kismet Daniel J Walsh 
    • New domain for podsleuth Daniel J Walsh 
    • new domain for libvirt Daniel J Walsh 
    • New domain for nsplugin Daniel J Walsh 
    • new domain for policy kit Daniel J Walsh 
    • new domain for gnomeclock Daniel J Walsh 
    • New domain for prelude Daniel J Walsh 
    • New domain for qemu Daniel J Walsh 
    • New policy for kerneloops Daniel J Walsh 
    • Re: roles in base module Joshua Brindle 
    • Re: roles in base module Martin Orr 
    • Re: File_contexts file and semanage... Stephen Smalley 
    • File_contexts file and semanage... Hasan Rezaul-CHR010 
    • RE: roles in base module Joshua Brindle 
    • Re: [RFC][PATCH] selinux: simplify ioctl checking Eric Paris 
    • Re: [RFC][PATCH] selinux: simplify ioctl checking Stephen Smalley 
    • Re: roles in base module Stephen Smalley 
  • Sunday, 18 May
    • [ANN] Community developer server accounts available James Morris 
  • Friday, 16 May
    • Re: roles in base module Joshua Brindle 
    • Re: Differences between openssh and pam_selinux Stephen Smalley 
    • Re: rbacsep: RFC cron jobs execute under user domain Daniel J Walsh 
    • Re: Differences between openssh and pam_selinux Stephen Smalley 
    • Re: rbacsep: RFC cron jobs execute under user domain Stephen Smalley 
    • rbacsep: RFC cron jobs execute under user domain Christopher J. PeBenito 
  • Wednesday, 14 May
    • Re: [PATCH] SELinux: keep the code clean formating and syntax James Morris 
    • Re: [PATCH] selinux: fix sleeping allocation in security_context_to_sid (Was: + selinux-dopey-hack.patch added to -mm tree) James Morris 
    • Re: RHEL5 initrc_t vs. unconfined_t Daniel J Walsh 
    • Re: RHEL5 initrc_t vs. unconfined_t Jan-Frode Myklebust 
    • Re: RHEL5 initrc_t vs. unconfined_t Daniel J Walsh 
    • Re: RHEL5 initrc_t vs. unconfined_t Jan-Frode Myklebust 
    • Re: [PATCH] selinux: fix sleeping allocation in security_context_to_sid (Was: + selinux-dopey-hack.patch added to -mm tree) Stephen Smalley 
    • [PATCH] SELinux: keep the code clean formating and syntax Eric Paris 
    • Re: RHEL5 initrc_t vs. unconfined_t Daniel J Walsh 
    • Re: RHEL5 initrc_t vs. unconfined_t Jan-Frode Myklebust 
    • Re: [PATCH] selinux: fix sleeping allocation in security_context_to_sid (Was: + selinux-dopey-hack.patch added to -mm tree) Stephen Smalley 
    • Re: [PATCH] selinux: fix sleeping allocation in security_context_to_sid (Was: + selinux-dopey-hack.patch added to -mm tree) Stephen Smalley 
    • Re: RHEL5 initrc_t vs. unconfined_t Daniel J Walsh 
  • Tuesday, 13 May
    • Re: [PATCH-v3] libsepol: allow genfscon statements in modules Joshua Brindle 
    • RHEL5 initrc_t vs. unconfined_t Jan-Frode Myklebust 
    • Re: [PATCH-v3] libsepol: allow genfscon statements in modules Eric Paris 
    • Re: [PATCH-v3] libsepol: allow genfscon statements in modules Joshua Brindle 
    • Re: [PATCH] selinux: fix sleeping allocation in security_context_to_sid (Was: + selinux-dopey-hack.patch added to -mm tree) Stephen Smalley 
    • ANN: SELinux Project Wiki migration James Morris 
    • [PATCH] selinux: fix sleeping allocation in security_context_to_sid (Was: + selinux-dopey-hack.patch added to -mm tree) Stephen Smalley 
  • Monday, 12 May
    • Re: SELinux Policy test cases updates Paul Moore 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) KaiGai Kohei 
    • SELinux Policy test cases updates Subrata Modak 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) KaiGai Kohei 
    • Re: refpolicy: patch for gpg-agent Václav Ovsík 
    • Re: I think this is a bug in the kernel Stephen Smalley 
    • Re: [RFC][PATCH] security: split ptrace checking in proc Stephen Smalley 
    • Re: I think this is a bug in the kernel Daniel J Walsh 
    • Re: [RFC][PATCH] selinux: simplify ioctl checking Stephen Smalley 
  • Sunday, 11 May
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) KaiGai Kohei 
    • Re: [RFC][PATCH] security: split ptrace checking in proc James Morris 
    • Re: [RFC][PATCH] selinux: simplify ioctl checking James Morris 
  • Friday, 9 May
    • [RFC][PATCH] security: split ptrace checking in proc Stephen Smalley 
    • Re: Compat_net an pam login problem. Stephen Smalley 
    • Compat_net an pam login problem. Scally, Katrina-P54861 
    • Re: I think this is a bug in the kernel Daniel J Walsh 
    • Re: I think this is a bug in the kernel Stephen Smalley 
    • Re: I think this is a bug in the kernel Daniel J Walsh 
    • Re: I think this is a bug in the kernel Stephen Smalley 
    • Re: I think this is a bug in the kernel Daniel J Walsh 
    • Re: I think this is a bug in the kernel Stephen Smalley 
    • Re: I think this is a bug in the kernel Daniel J Walsh 
    • Re: I think this is a bug in the kernel Stephen Smalley 
    • I think this is a bug in the kernel Daniel J Walsh 
    • [RFC][PATCH] selinux: simplify ioctl checking Stephen Smalley 
  • Thursday, 8 May
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: roles in base module Stephen Smalley 
  • Wednesday, 7 May
    • Re: [PATCH v5] selinux: support deferred mapping of contexts James Morris 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Steve Grubb 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Christopher J. PeBenito 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [PATCH v5] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Daniel J Walsh 
    • [PATCH v5] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Steve Grubb 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Eric Paris 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Eric Paris 
    • [PATCH-v3] checkpolicy: allow genfscon statements in modules Eric Paris 
    • [PATCH-v3] libsepol: allow genfscon statements in modules Eric Paris 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts James Morris 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Stephen Smalley 
  • Tuesday, 6 May
    • Re: [PATCH v4] selinux: support deferred mapping of contexts James Morris 
    • roles in base module Martin Orr 
    • Re: rbacsep: transition/inherit perms Stephen Smalley 
    • rbacsep: transition/inherit perms Christopher J. PeBenito 
    • Re: [PATCH v4] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: refpolicy: patch for gpg-agent Christopher J. PeBenito 
    • [PATCH v4] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC] libsepol: allow genfscon statements in modules Stephen Smalley 
    • [RFC-v2] libsepol and checkpolicy: make genfs statements valid in modules Eric Paris 
    • Re: copy/paste policy patch Christopher J. PeBenito 
    • Re: [refpolicy] initrc_t access to sshd /proc to adjust OOM killer Václav Ovsík 
  • Monday, 5 May
    • Re: [PATCH v3] selinux: support deferred mapping of contexts James Morris 
    • [RFC] checkpolicy: allow genfscon statements in modules Eric Paris 
    • [RFC] libsepol: allow genfscon statements in modules Eric Paris 
    • Re: [PATCH v3] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [refpolicy] initrc_t access to sshd /proc to adjust OOM killer Daniel J Walsh 
    • [PATCH v3] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) Christopher J. PeBenito 
    • Re: [refpolicy] initrc_t access to sshd /proc to adjust OOM killer Václav Ovsík 
  • Friday, 2 May
    • Re: segfault using dismod when linking modules Eric Paris 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Daniel J Walsh 
    • Re: [refpolicy] initrc_t access to sshd /proc to adjust OOM killer Daniel J Walsh 
    • [refpolicy] initrc_t access to sshd /proc to adjust OOM killer Václav Ovsík 
    • Re: segfault using dismod when linking modules Stephen Smalley 
  • Thursday, 1 May
    • segfault using dismod when linking modules Eric Paris 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Eric Paris 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts James Morris 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts James Morris 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
  • Wednesday, 30 April
    • Re: copy/paste policy patch Eamon Walsh 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts James Morris 
    • Re: [RFC][PATCH v2] selinux: support deferred mapping of contexts Casey Schaufler 
    • [RFC][PATCH v2] selinux: support deferred mapping of contexts Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Daniel J Walsh 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Daniel J Walsh 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: [PATCH] NFS/LSM: Make NFSv4 set LSM mount options Eric Paris 
    • Re: refpolicy roles / RBAC separation RFC Daniel J Walsh 
    • Re: refpolicy roles / RBAC separation RFC Christopher J. PeBenito 
    • Re: refpolicy roles / RBAC separation RFC Christopher J. PeBenito 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Christopher J. PeBenito 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Daniel J Walsh 
  • Tuesday, 29 April
    • Re: [PATCH] Security: Make secctx_to_secid() take const secdata Casey Schaufler 
    • [PATCH] Security: Make secctx_to_secid() take const secdata David Howells 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Christopher J. PeBenito 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • Re: refpolicy roles / RBAC separation RFC Stephen Smalley 
    • [20/37] SELinux: no BUG_ON(!ss_initialized) in selinux_clone_mnt_opts Greg KH 
    • Re: refpolicy roles / RBAC separation RFC Daniel J Walsh 
    • refpolicy roles / RBAC separation RFC Christopher J. PeBenito 
  • Monday, 28 April
    • [ANN] 2008 SELinux Developer Summit Schedule Published James Morris 
    • Re: copy/paste policy patch Xavier Toth 
    • Re: copy/paste policy patch Eamon Walsh 
    • Re: copy/paste policy patch Eamon Walsh 
    • Re: copy/paste policy patch Eamon Walsh 
    • Re: [PATCH]Introduce generalized hooks for getting and setting inode secctx. Dave Quigley 
    • Re: [PATCH]Introduce generalized hooks for getting and setting inode secctx. James Morris 
    • Re: [PATCH]Introduce generalized hooks for getting and setting inode secctx. Casey Schaufler 
    • Re: copy/paste policy patch Christopher J. PeBenito 
  • Sunday, 27 April
    • Re: [PATCH -v3] LSM/SELinux: show LSM mount options in /proc/mounts James Morris 
    • Re: [PATCH]Introduce generalized hooks for getting and setting inode secctx. James Morris 
    • Re: [PATCH -v3] LSM/SELinux: show LSM mount options in /proc/mounts James Morris 
  • Friday, 25 April
    • Shintaro sent you a friend request on Tagged :) Shintaro Fujiwara 
    • Re: audit2allow -R Stephen Smalley 
    • Re: audit2allow -R Stephen Smalley 
    • Re: audit2allow -R Daniel J Walsh 
    • [PATCH 0/2] Fixes for 2.6.26 Paul Moore 
    • [PATCH 1/2] SELinux: Made netnode cache adds faster Paul Moore 
    • [PATCH 2/2] SELinux: Fix a RCU free problem with the netport cache Paul Moore 
    • RE: sepolgen-ifgen Kim Lawson-Jenkins 
    • audit2allow -R Stephen Smalley 
    • Re: sepolgen-ifgen Stephen Smalley 
    • Re: labelling with genfscon run zhang 
    • sepolgen-ifgen Kim Lawson-Jenkins 
    • copy/paste policy patch Xavier Toth 
    • Re: labelling with genfscon Stephen Smalley 
  • Thursday, 24 April
    • Re: labelling with genfscon run zhang 
    • Re: How to handle USB devices.... Stephen Smalley 
    • How to handle USB devices.... Tom London 
    • Re: refpolicy: patch for gpg-agent Daniel J Walsh 
    • Re: refpolicy: domains need access to the apt's pty and fifos Christopher J. PeBenito 
    • Re: [refpolicy] potential rsync patch Christopher J. PeBenito 
    • Re: labelling with genfscon Stephen Smalley 
    • Re: refpolicy: domains need access to the apt's pty and fifos Václav Ovsík 
    • Re: refpolicy: patch for gpg-agent Václav Ovsík 
  • Wednesday, 23 April
    • Re: [PATCH -v3] LSM/SELinux: show LSM mount options in /proc/mounts James Morris 
    • [PATCH -v3] LSM/SELinux: show LSM mount options in /proc/mounts Eric Paris 
    • labelling with genfscon run zhang 
    • [PATCH 1/2] VFS: Factor out part of vfs_setxattr so it can be called from the SELinux hook for inode_setsecctx. David P. Quigley 
    • [PATCH]Introduce generalized hooks for getting and setting inode secctx. David P. Quigley 
    • [PATCH 2/2] LSM/SELinux: inode_{get,set,notify}secctx hooks to access LSM security context information. David P. Quigley 
    • Re: open_init_pty: eats much of the CPU time Manoj Srivastava 
    • Re: [DSE-Dev] refpolicy: domains need access to the apt's pty and fifos Václav Ovsík 
    • Re: [PATCH] SELinux: include/security.h whitespace, syntax, and other cleanups James Morris 
  • Tuesday, 22 April
    • [PATCH] SELinux: mls.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: objsec.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: ss/conditional.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: netlabel.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: avc_ss.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: policydb.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: selinux/include/security.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: include/security.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: mls_types.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: context.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • [PATCH] SELinux: hashtab.h whitespace, syntax, and other cleanups eparis_at_redhat.com 
    • Re: port numbers for sctp support? Stephen Smalley 
    • Re: port numbers for sctp support? Daniel J Walsh 
    • Re: SELinux with NFSv4 Daniel J Walsh 
    • Re: [PATCH] SELinux: no BUG_ON(!ss_initialized) in selinux_clone_mnt_opts Stephen Smalley 
  • Monday, 21 April
    • [PATCH] SELinux: no BUG_ON(!ss_initialized) in selinux_clone_mnt_opts Eric Paris 
    • Re: SELinux with NFSv4 Daniel J Walsh 
    • Re: [PATCH 01/13] SELinux: netif.c whitespace, syntax, and static declaraction cleanups Paul Moore 
    • Re: avc_init & avc_open Stephen Smalley 
    • Re: avc_init & avc_open Joe Nall 
    • Re: avc_init & avc_open Stephen Smalley 
    • Re: avc_init & avc_open Stephen Smalley 
    • Re: avc_init & avc_open Joe Nall 
    • Re: [patch] libsemanage: don't call genhomedircon if policy was not rebuilt Joshua Brindle 
    • [patch] libsemanage: don't call genhomedircon if policy was not rebuilt Stephen Smalley 
    • Re: avc_init & avc_open Stephen Smalley 
    • avc_init & avc_open Joe Nall 
    • Re: [PATCH 01/13] SELinux: netif.c whitespace, syntax, and static declaraction cleanups Eric Paris 
    • Re: [PATCH 01/13] SELinux: netif.c whitespace, syntax, and static declaraction cleanups Paul Moore 
  • Friday, 18 April
    • Re: [refpolicy] RFC: hal_read_log interface rob myers 
    • [PATCH 12/13] SELinux: services.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 07/13] SELinux: avtab.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 13/13] SELinux: sidtab.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 08/13] SELinux: conditional.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 05/13] SELinux: nlmsgtab.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 04/13] SELinux: netnode.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 10/13] SELinux: hashtab.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 01/13] SELinux: netif.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 02/13] SELinux: netlabel.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 11/13] SELinux: mls.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 09/13] SELinux: ebitmap.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 06/13] SELinux: xfrm.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • [PATCH 03/13] SELinux: netlink.c whitespace, syntax, and static declaraction cleanups eparis_at_redhat.com 
    • Re: semanage man page updated for booleans Daniel J Walsh 
    • Re: semanage man page updated for booleans Daniel J Walsh 
    • Re: [refpolicy] RFC: hal_read_log interface Christopher J. PeBenito 
    • Re: [refpolicy] trivial HAL doc patch Christopher J. PeBenito 
    • Re: Enabling policy capabilities Christopher J. PeBenito 
    • Re: [refpolicy] lvm runs shell scripts Christopher J. PeBenito 
    • Re: semanage man page updated for booleans Stephen Smalley 
    • Re: semanage man page updated for booleans Stephen Smalley 
    • Re: libselinux/matchpathcon has a memory leak Stephen Smalley 
    • Re: upstart/SELinux problem loading the wrong policy with kernel version change Stephen Smalley 
    • Re: refpolicy: loadable_module.spt improvement? Christopher J. PeBenito 
    • refpolicy: loadable_module.spt improvement? Václav Ovsík 
  • Thursday, 17 April
    • Re: [PATCH] NFS/LSM: Make NFSv4 set LSM mount options James Morris 
    • Re: Fwd: adding a new security class Christopher J. PeBenito 
    • selinux mini-summit sub-policy topic Serge E. Hallyn 
    • Re: Fwd: adding a new security class Xavier Toth 
    • [PATCH] changing whitespace for fun and profit: policydb.c Eric Paris 
    • Re: memory_device_t Justin Mattock 
    • Re: memory_device_t Justin Mattock 
    • [PATCH] SELinux: one little, two little, three little whitespaces, the avc.c saga. Eric Paris 
    • [PATCH] SELinux: cleanup on isle selinuxfs.c Eric Paris 
    • Re: memory_device_t Stephen Smalley 
    • Re: memory_device_t Stephen Smalley 
    • memory_device_t Justin Mattock 
    • Re: Fwd: adding a new security class Xavier Toth 
    • Re: Fwd: adding a new security class Xavier Toth 
    • [PATCH] SELinux: whitespace and formating fixes for hooks.c Eric Paris 
    • Re: Fwd: adding a new security class Stephen Smalley 
    • [PATCH] SELinux: clean up printks Eric Paris 
    • Re: Fwd: adding a new security class Stephen Smalley 
    • Re: Fwd: adding a new security class Xavier Toth 
    • Re: Fwd: adding a new security class Stephen Smalley 
    • Re: Fwd: adding a new security class Stephen Smalley 
    • [PATCH] NFS/LSM: Make NFSv4 set LSM mount options Eric Paris 
    • Re: Fwd: adding a new security class Stephen Smalley 
    • Fwd: adding a new security class Xavier Toth 
  • Wednesday, 16 April
    • [PATCH] Setools: Fix missing command name in logwatch script Manoj Srivastava 
  • Tuesday, 15 April
    • Re: open_init_pty: eats much of the CPU time Manoj Srivastava 
    • Re: open_init_pty: eats much of the CPU time Joshua Brindle 
    • open_init_pty: eats much of the CPU time Václav Ovsík 
    • Re: refpolicy: patch for gpg-agent Václav Ovsík 
    • [refpolicy] potential rsync patch Patrick Neely 
  • Monday, 14 April
    • Reminder: 2008 SELinux Developer Summit CFP Paul Moore 
    • [refpolicy] trivial HAL doc patch rob myers 
    • [refpolicy] RFC: hal_read_log interface rob myers 
    • polyinstantiated home subdirectories show up on Desktop Xavier Toth 
    • Re: setfscreatecon-w/invalid-context can mistakenly succeed Jim Meyering 
    • Re: setfscreatecon-w/invalid-context can mistakenly succeed Stephen Smalley 
    • Re: setfscreatecon-w/invalid-context can mistakenly succeed Jim Meyering 
    • Re: setfscreatecon-w/invalid-context can mistakenly succeed Stephen Smalley 
  • Sunday, 13 April
    • Re: [PATCH v3 1/2] SELinux: Made netnode cache adds faster James Morris 
    • Re: [PATCH v3 2/2] SELinux: Add network port SID cache James Morris 
    • setfscreatecon-w/invalid-context can mistakenly succeed Jim Meyering 
  • Friday, 11 April
    • Re: [PATCH v3 2/2] SELinux: Add network port SID cache Paul Moore 
    • Re: [PATCH v3 2/2] SELinux: Add network port SID cache Stephen Smalley 
    • Re: [PATCH v3 1/2] SELinux: Made netnode cache adds faster Stephen Smalley 
    • Testing Apache Policy kihamba nengo 
  • Thursday, 10 April
    • Re: [RFC PATCH v2 0/2] Labeled networking patches for 2.6.26 Paul Moore 
    • Re: [RFC PATCH v2 0/2] Labeled networking patches for 2.6.26 James Morris 
    • Re: [RFC PATCH v2 2/2] LSM: Make the Labeled IPsec hooks more stack friendly James Morris 
    • Re: [RFC PATCH v2 1/2] NetLabel: Allow passing the LSM domain as a shared pointer James Morris 
    • Re: Enabling policy capabilities Daniel J Walsh 
    • Re: [RFC PATCH v2 0/2] Labeled networking patches for 2.6.26 Paul Moore 
    • Re: copy&paste security_compute_av from python Xavier Toth 
    • Re: copy&paste security_compute_av from python Daniel J Walsh 
    • [PATCH v3 2/2] SELinux: Add network port SID cache Paul Moore 
    • [PATCH v3 0/2] Series short description Paul Moore 
    • [PATCH v3 1/2] SELinux: Made netnode cache adds faster Paul Moore 
    • Re: [PATCH 2/3] SELinux: Made netnode cache adds faster Paul Moore 
    • Re: Enabling policy capabilities Paul Moore 
    • Enabling policy capabilities Stephen Smalley 
    • Re: [PATCH 2/3] SELinux: Made netnode cache adds faster Stephen Smalley 
    • Re: A Question about MLS in SELinux Stephen Smalley 
    • [PATCH] setools 3.3.4: Fix build failure with gcc-4.3.X Manoj Srivastava 
    • [PATCH] setools 3.3.4: Fix configure.ac to allow generation of configuration files Manoj Srivastava 
  • Wednesday, 9 April
    • Re: [RFC PATCH 1/2] NetLabel: Allow passing the LSM domain as a shared pointer Casey Schaufler 
    • Re: [PATCH 2/3] SELinux: Made netnode cache adds faster Paul Moore 
    • A Question about MLS in SELinux zhao hui 
    • Re: [PATCH] SELinux: don't BUG if fs reuses a superblock James Morris 
    • [PATCH v2 2/2] SELinux: Add network port SID cache Paul Moore 
    • [PATCH v2 1/2] SELinux: Made netnode cache adds faster Paul Moore 
    • [PATCH v2 0/2] SELinux networking patches for 2.6.26 Paul Moore 
    • [RFC PATCH v2 2/2] LSM: Make the Labeled IPsec hooks more stack friendly Paul Moore 
    • [RFC PATCH v2 0/2] Labeled networking patches for 2.6.26 Paul Moore 
    • [RFC PATCH v2 1/2] NetLabel: Allow passing the LSM domain as a shared pointer Paul Moore 
    • Re: avc_* functions not in libselinux-python Xavier Toth 
    • Re: [PATCH] SELinux: don't BUG if fs reuses a superblock Stephen Smalley 
    • [PATCH] SELinux: don't BUG if fs reuses a superblock Eric Paris 
    • Re: copy&paste security_compute_av from python Xavier Toth 
    • Re: [PATCH 3/3] SELinux: Add network port SID cache Stephen Smalley 
    • Re: [PATCH 3/3] SELinux: Add network port SID cache Paul Moore 
    • Re: avc_* functions not in libselinux-python Stephen Smalley 
    • Re: [PATCH 1/3] SELinux: Cleanup the secid/secctx conversion functions Stephen Smalley 
    • Re: [PATCH 3/3] SELinux: Add network port SID cache Stephen Smalley 
    • Re: [PATCH 2/3] SELinux: Made netnode cache adds faster Stephen Smalley 
    • Re: nfs_xdev_get_sb appears to sometimes reuse a sb and makes SELinux angry Stephen Smalley 
    • Re: nfs_xdev_get_sb appears to sometimes reuse a sb and makes SELinux angry Eric Paris 
    • Re: nfs_xdev_get_sb appears to sometimes reuse a sb and makes SELinux angry Stephen Smalley 
    • nfs_xdev_get_sb appears to sometimes reuse a sb and makes SELinux angry Eric Paris 
    • Re: dpkg bug related to SE Linux Russell Coker 
  • Tuesday, 8 April
    • Re: [PATCH 1/3] SELinux: Cleanup the secid/secctx conversion functions Paul Moore 
    • avc_* functions not in libselinux-python Xavier Toth 
    • Re: [RFC PATCH 2/2] LSM: Make the Labeled IPsec hooks more stack friendly Paul Moore 
    • Re: gdm login problem when polyinstantiating /tmp Daniel J Walsh 
    • Re: gdm login problem when polyinstantiating /tmp Xavier Toth 
    • Re: [PATCH 1/3] SELinux: Cleanup the secid/secctx conversion functions Stephen Smalley 
    • Re: [PATCH 1/3] SELinux: Cleanup the secid/secctx conversion functions Stephen Smalley 
    • semanage man page updated for booleans Daniel J Walsh 
    • Re: selinux support in cron withou system_u Stephen Smalley 
    • selinux support in cron withou system_u Marcela Maslanova 
    • Re: upstart/SELinux problem loading the wrong policy with kernel version change Stephen Smalley 
    • Re: upstart/SELinux problem loading the wrong policy with kernel version change Stephen Smalley 
    • Re: dpkg bug related to SE Linux Stephen Smalley 
  • Monday, 7 April
    • upstart/SELinux problem loading the wrong policy with kernel version change Daniel J Walsh 
    • [PATCH 1/3] SELinux: Cleanup the secid/secctx conversion functions Paul Moore 
    • Re: dpkg bug related to SE Linux Russell Coker 
    • [RFC PATCH 2/2] LSM: Make the Labeled IPsec hooks more stack friendly Paul Moore 
    • [RFC PATCH 1/2] NetLabel: Allow passing the LSM domain as a shared pointer Paul Moore 
    • [RFC PATCH 0/2] Labeled networking tweaks for 2.6.26 Paul Moore 
    • [PATCH 0/3] Some SELinux patches for 2.6.26 Paul Moore 
    • [PATCH 3/3] SELinux: Add network port SID cache Paul Moore 
    • [PATCH 2/3] SELinux: Made netnode cache adds faster Paul Moore 
    • Re: mcstransd Casey Schaufler 
    • RE: Audit2allow + allow rule for 'granted' access Karrels, Jeffrey J \(US SSA\) 
    • RE: Audit2allow + allow rule for 'granted' access Stephen Smalley 
    • RE: Audit2allow + allow rule for 'granted' access Karrels, Jeffrey J \(US SSA\) 
    • Re: dpkg bug related to SE Linux Stephen Smalley 
    • Re: dpkg bug related to SE Linux Stephen Smalley 
    • Re: mcstransd Stephen Smalley 
    • gdm login problem when polyinstantiating /tmp Xavier Toth 
    • mcstransd Russell Coker 
  • Sunday, 6 April
    • Re: semanage library problem on RHEL5 Daniel J Walsh 
  • Friday, 4 April
    • dpkg bug related to SE Linux Russell Coker 
    • Re: Audit2allow + allow rule for 'granted' access Stephen Smalley 
    • ANN: 2008 SELinux Developer Summit CFP James Morris 
  • Thursday, 3 April
    • Audit2allow + allow rule for 'granted' access Karrels, Jeffrey J \(US SSA\) 
    • RE: Removing 2 modules that depend on eachother Karrels, Jeffrey J \(US SSA\) 
    • Re: Removing 2 modules that depend on eachother Joshua Brindle 
    • Removing 2 modules that depend on eachother Karrels, Jeffrey J \(US SSA\) 
    • Re: Error running semanage from trunk Caleb Case 
    • Re: Error running semanage from trunk Stephen Smalley 
    • Error running semanage from trunk Brian M. Williams 
    • Re: Need to break or reduce the dependency on a static libsepol Joshua Brindle 
    • RE: Need to break or reduce the dependency on a static libsepol Stephen Smalley 
    • RE: Need to break or reduce the dependency on a static libsepol Stephen Smalley 
    • RE: Need to break or reduce the dependency on a static libsepol Joshua Brindle 
    • Re: Need to break or reduce the dependency on a static libsepol Stephen Smalley 
    • Re: RFC: fcglob prototype Christopher J. PeBenito 
  • Wednesday, 2 April
    • RFC: changing the "+" in ls -l output to be "." or "+" Jim Meyering 
    • Re: Need to break or reduce the dependency on a static libsepol Dave Sugar 
    • Re: Need to break or reduce the dependency on a static libsepol Joshua Brindle 
    • ANN: Reference Policy Release Christopher J. PeBenito 
    • Re: semanage library problem on RHEL5 Stephen Smalley 
    • semanage library problem on RHEL5 Josef Kubin 
    • Re: file(1) Stephen Smalley 
    • Re: file(1) Russell Coker 
    • Re: [PATCH 1/2] SELinux: turn mount options strings into defines James Morris 
  • Tuesday, 1 April
    • ANN: SELinux Developer Summit 2008, Ottawa James Morris 
    • Re: Need to break or reduce the dependency on a static libsepol Stephen Smalley 
    • Re: Need to break or reduce the dependency on a static libsepol David Sugar 
    • Re: copy&paste security_compute_av from python Eamon Walsh 
    • Re: [PATCH 1/2] SELinux: turn mount options strings into defines Stephen Smalley 
    • [PATCH 2/2] SELinux: display SELinux mount options in /proc/mounts Eric Paris 
    • [PATCH 1/2] SELinux: turn mount options strings into defines Eric Paris 
    • RE: Need to break or reduce the dependency on a static libsepol Joshua Brindle 
    • Re: SSH + file_contexts + kerberos Stephen Smalley 
    • Re: [RFC] SELinux: display mount options in /proc/mounts Stephen Smalley 
    • Need to break or reduce the dependency on a static libsepol Stephen Smalley 
    • Re: copy&paste security_compute_av from python Stephen Smalley 
    • Re: [RFC] SELinux: display mount options in /proc/mounts James Morris 
  • Monday, 31 March
    • Re: copy&paste security_compute_av from python Eamon Walsh 
    • SSH + file_contexts + kerberos Karrels, Jeffrey J \(US SSA\) 
    • Re: [RFC] SELinux: display mount options in /proc/mounts Eric Paris 
    • Re: [RFC] SELinux: display mount options in /proc/mounts Stephen Smalley 
    • [RFC] SELinux: display mount options in /proc/mounts Eric Paris 
    • Re: RBAC in RHEL5 Takesi satoh 
    • Re: doc typo fix: s/behaviors/behavior/ Stephen Smalley 
    • Re: Things were going great until... Stephen Smalley 
    • Re: file(1) Stephen Smalley 
    • Re: RBAC in RHEL5 Christopher J. PeBenito 
    • Re: file(1) Stephen Smalley 
    • Re: Bug#472590: ls in Debian/Unstable Jim Meyering 
    • Re: Bug#472590: ls in Debian/Unstable Russell Coker 
    • Re: Bug#472590: ls in Debian/Unstable Jim Meyering 
  • Sunday, 30 March
    • Re: [PATCH-v4] SELinux: introduce permissive types James Morris 
    • RBAC in RHEL5 Takesi satoh 
    • Re: Login Identities not applied when logging in... Martin Orr 
    • Re: Login Identities not applied when logging in... Daniel J Walsh 
  • Saturday, 29 March
    • Login Identities not applied when logging in... Lisa R. 
    • doc typo fix: s/behaviors/behavior/ Jim Meyering 
    • RE: file(1) Joshua Brindle 
    • Things were going great until... Lisa R. 
  • Friday, 28 March
    • Re: file(1) Russell Coker 
    • RE: file(1) Joshua Brindle 
    • Re: file(1) Russell Coker 
    • Re: Debian SE Linux status Russell Coker 
    • RE: file(1) Joshua Brindle 
    • Re: file(1) Russell Coker 
    • Re: Debian SE Linux status Joshua Brindle 
    • Re: Debian SE Linux status Russell Coker 
    • [PATCH 09/45] Security: Change current->fs[ug]id to current_fs[ug]id() [ver #35] David Howells 
    • Re: policy package names for Debian Russell Coker 
    • RE: file(1) Joshua Brindle 
    • Re: policy package names for Debian Stephen Smalley 
    • Re: Debian SE Linux status Stephen Smalley 
    • [PATCH 11/45] Security: De-embed task security record from task and use refcounting [ver #35] David Howells 
    • [PATCH 05/45] KEYS: Don't generate user and user session keyrings unless they're accessed [ver #35] David Howells 
    • [PATCH 00/45] Permit filesystem local caching [ver #35] David Howells 
    • [PATCH 08/45] KEYS: Add keyctl function to get a security label [ver #35] David Howells 
    • [PATCH 06/45] KEYS: Make the keyring quotas controllable through /proc/sys [ver #35] David Howells 
    • [PATCH 28/45] FS-Cache: Make kAFS use FS-Cache [ver #35] David Howells 
    • [PATCH 04/45] KEYS: Allow clients to set key perms in key_create_or_update() [ver #35] David Howells 
    • [PATCH 19/45] Add missing consts to xattr function arguments [ver #35] David Howells 
    • [PATCH 13/45] Security: Allow kernel services to override LSM settings for task actions [ver #35] David Howells 
    • [PATCH 36/45] NFS: Use local disk inode cache [ver #35] David Howells 
    • [PATCH 16/45] FS-Cache: Recruit a couple of page flags for cache management [ver #35] David Howells 
    • [PATCH 34/45] NFS: Define and create superblock-level objects [ver #35] David Howells 
    • [PATCH 14/45] Security: Make NFSD work with detached security [ver #35] David Howells 
    • [PATCH 42/45] NFS: Read pages from FS-Cache into an NFS inode [ver #35] David Howells 
    • [PATCH 39/45] NFS: FS-Cache page management [ver #35] David Howells 
    • [PATCH 22/45] CacheFiles: Add a hook to write a single page of data to an inode [ver #35] David Howells 
    • [PATCH 35/45] NFS: Define and create inode-level cache objects [ver #35] David Howells 
    • [PATCH 32/45] NFS: Register NFS for caching and retrieve the top-level index [ver #35] David Howells 
    • [PATCH 12/45] Security: Add a kernel_service object class to SELinux [ver #35] David Howells 
    • [PATCH 29/45] NFS: Add comment banners to some NFS functions [ver #35] David Howells 
    • [PATCH 37/45] NFS: Invalidate FsCache page flags when cache removed [ver #35] David Howells 
    • [PATCH 23/45] CacheFiles: Permit the page lock state to be monitored [ver #35] David Howells 
    • [PATCH 27/45] AFS: prevent double cell registration [ver #35] David Howells 
    • [PATCH 24/45] CacheFiles: Export things for CacheFiles [ver #35] David Howells 
    • [PATCH 30/45] NFS: Add FS-Cache option bit and debug bit [ver #35] David Howells 
    • [PATCH 20/45] CacheFiles: Add missing copy_page export for ia64 [ver #35] David Howells 
    • [PATCH 31/45] NFS: Permit local filesystem caching to be enabled for NFS [ver #35] David Howells 
    • [PATCH 26/45] AFS: Add a MAINTAINERS record for AFS [ver #35] David Howells 
    • Re: policy package names for Debian Christopher J. PeBenito 
    • [PATCH 41/45] NFS: nfs_readpage_async() needs to be accessible as a fallback for local caching [ver #35] David Howells 
    • Re: Debian SE Linux status James Carter 
    • [PATCH 45/45] NFS: Add mount options to enable local caching on NFS [ver #35] David Howells 
    • [PATCH 33/45] NFS: Define and create server-level objects [ver #35] David Howells 
    • [PATCH 44/45] NFS: Display local caching state [ver #35] David Howells 
    • [PATCH 40/45] NFS: Add read context retention for FS-Cache to call back with [ver #35] David Howells 
    • [PATCH 43/45] NFS: Store pages from an NFS inode into a local cache [ver #35] David Howells 
    • [PATCH 02/45] KEYS: Check starting keyring as part of search [ver #35] David Howells 
    • [PATCH 07/45] KEYS: Make key_serial() a function if CONFIG_KEYS=y [ver #35] David Howells 
    • [PATCH 38/45] NFS: Add some new I/O counters for FS-Cache doing things for NFS [ver #35] David Howells 
    • [PATCH 03/45] KEYS: Allow the callout data to be passed as a blob rather than a string [ver #35] David Howells 
    • [PATCH 15/45] FS-Cache: Release page->private after failed readahead [ver #35] David Howells 
    • [PATCH 21/45] CacheFiles: Be consistent about the use of mapping vs file->f_mapping in Ext3 [ver #35] David Howells 
    • [PATCH 17/45] FS-Cache: Provide an add_wait_queue_tail() function [ver #35] David Howells 
    • [PATCH 01/45] KEYS: Increase the payload size when instantiating a key [ver #35] David Howells 
    • Re: policy package names for Debian Stephen Smalley 
    • Re: Debian SE Linux status Stephen Smalley 
    • Re: policy package names for Debian Christopher J. PeBenito 
    • Re: [PATCH-v4] SELinux: introduce permissive types Stephen Smalley 
    • Re: Debian SE Linux status James Carter 
    • Re: file(1) Stephen Smalley 
    • Re: Debian SE Linux status Stephen Smalley 
    • Re: Debian SE Linux status Joshua Brindle 
    • Re: Debian SE Linux status Stephen Smalley 
    • Re: policy package names for Debian Stephen Smalley 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) KaiGai Kohei 
  • Thursday, 27 March
    • policy package names for Debian Russell Coker 
    • Debian SE Linux status Russell Coker 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Daniel J Walsh 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Daniel J Walsh 
    • Re: Permissive mode for xace is broken. Eamon Walsh 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) KaiGai Kohei 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) Christopher J. PeBenito 
    • file(1) Russell Coker 
    • [refpolicy] lvm runs shell scripts Martin Orr 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Russell Coker 
  • Wednesday, 26 March
    • Re: [DSE-Dev] refpolicy: domains need access to the apt's pty and fifos Martin Orr 
    • Re: SELinux policy for Fedora Directory Server 1.1.0 Pär Aronsson 
    • Testing SELinux in Ubuntu (Hardy Heron) Caleb Case 
    • Re: refpolicy: patch for gpg-agent Christopher J. PeBenito 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: [DSE-Dev] refpolicy: domains need access to the apt's pty and fifos Christopher J. PeBenito 
    • Re: USER_AVC vs USER_MAC_POLICY_LOAD ? Steve Grubb 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: USER_AVC vs USER_MAC_POLICY_LOAD ? Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • USER_AVC vs USER_MAC_POLICY_LOAD ? Steve Grubb 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Daniel J Walsh 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Daniel J Walsh 
    • Re: Bug#472590: ls in Debian/Unstable Russell Coker 
  • Tuesday, 25 March
    • Re: Bug#472590: ls in Debian/Unstable Russell Coker 
    • Re: ls in Debian/Unstable Russell Coker 
    • Re: Bug#472590: ls in Debian/Unstable Jim Meyering 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Add missing consts to xattr function arguments David Howells 
    • avc's Justin Mattock 
    • Re: ls in Debian/Unstable Jim Meyering 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: avc's Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • avc's Justin Mattock 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) Christopher J. PeBenito 
    • Re: ls in Debian/Unstable Casey Schaufler 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Christopher J. PeBenito 
    • ls in Debian/Unstable Russell Coker 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) KaiGai Kohei 
    • Re: Removing DAC. Russell Coker 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Russell Coker 
  • Monday, 24 March
    • Re: [Fwd: Re: Removing DAC.] Casey Schaufler 
    • Re: Removing DAC. Russell Coker 
    • Re: Permissive mode for xace is broken. Steve Grubb 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: [RFC][PATCH] user_transition support for libsepol/checkpolicy Stephen Smalley 
    • Re: [PATCH] libsepol: add permissive domain support Stephen Smalley 
    • Re: [PATCH] checkpolicy: support for permissive types Stephen Smalley 
    • Re: Permissive mode for xace is broken. Stephen Smalley 
    • [RFC][PATCH] user_transition support for libsepol/checkpolicy Joshua Brindle 
    • Re: [PATCH] SE-PostgreSQL Security Policy (try #3) Christopher J. PeBenito 
    • Re: Removing DAC. Casey Schaufler 
    • Re: Removing DAC. Casey Schaufler 
    • Re: Removing DAC. cinthya aranguren 
    • Re: Removing DAC. Stephen Smalley 
    • Re: Permissive mode for xace is broken. Steve G 
    • Re: Removing DAC. cinthya aranguren 
    • Re: Removing DAC. cinthya aranguren 
    • [PATCH] checkpolicy: support for permissive types Eric Paris 
    • [PATCH] libsepol: add permissive domain support Eric Paris 
    • Re: Removing DAC. Stephen Smalley 
    • Re: Removing DAC. Joshua Brindle 
    • Re: problem when running checkmodule Stephen Smalley 
    • Re: /bin/passwd and a basic MLS install of Fedora 8 Stephen Smalley 
    • Re: /bin/passwd and a basic MLS install of Fedora 8 Russell Coker 
  • Sunday, 23 March
    • Re: Removing DAC. Russell Coker 
    • Re: Removing DAC. Casey Schaufler 
    • Re: Removing DAC. Casey Schaufler 
    • Removing DAC. cinthya aranguren 
    • /bin/passwd and a basic MLS install of Fedora 8 Russell Coker 
    • Re: Performance degradation measurement [was Re: [PATCH 06/37] Security: Separate task security context from task