LWN.net Logo

SELinux and upstream developers

SELinux and upstream developers

Posted Jul 12, 2008 23:12 UTC (Sat) by jch (guest, #51929)
In reply to: SELinux and upstream developers by dpquigl
Parent article: SELinux and Fedora

> 1) A developer is usually working on new features and bug fixes and that is their main
focus.

While I'm grateful to learn what a developer is usually working on, a great many of us do
spend a significant amount of time ensuring that our software is secure.  Any tools to help
would be welcome.


(Log in to post comments)

SELinux and upstream developers

Posted Jul 15, 2008 16:50 UTC (Tue) by dpquigl (subscriber, #52852) [Link]

Perhaps my wording was off. I didn't mean to imply that developers don't care about writing
secure software or that security isn't in mind when developing but rather that if it comes
down to implementing feature X or writing SELinux policy chances are feature X is going to be
implemented first. Unless you have someone who's job it is to keep track of what is changing
in your project and update your SELinux policy accordingly, your policy will be an
afterthought. I'd be glad to be proved wrong on this but sadly based on what I've seen this
seems to be the case.

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds