Why we should care
Posted Aug 17, 2005 21:14 UTC (Wed) by
tzafrir (subscriber, #11501)
In reply to:
Why we should care by kokopelli
Parent article:
An overview of multilevel security
I hardly see too many hirarchial levels here. Trying to abstract it as multi-level doesn't seem to help much. Unix already has a special super-user and some special cases for "guests".
I also fail to see why the ssh key is more sensetive: the ssh daemon has to be able to read it. Thus it is hard to imagine a system where the super-user (that originally executed the sshd) can't read it.
The implementation of SELinux has created a complex set of rules in parallel of the filesystem. Not a pretty sight. Not very managable.
(
Log in to post comments)