Security Continued work on SELinux Remaining work mostly in user space Hardening Linux Address space randomization Better no-execute support Dealing with security issues Actually tracking vulnerabilities ...and fixes! Creating security kernel releases Coming: Signed kernel modules and binaries Class-based resource management