SELinux, LSM and ima_policy rules

Lev Olshvang <levonshe-zJpx2rpV7r/[email protected]> Mon, 04 Feb 2019 11:38:19 +0300
Newsgroups gmane.linux.region.israel
Message-ID <25111041549269499__34253.4982760967$1549269551$gmane$org@myt6-67cd1de25d8a.qloud-c.yandex.net>
Hello everybody.

I learned recently that IMA kernel security  subsystem can be integrated with LSMs, such as SELinux, Smack, ...
https://sourceforge.net/p/linux-ima/wiki/Home/

https://www.kernel.org/doc/Documentation/ABI/testing/ima_policy

It was present in kernel since v3.8 but not google does not know much about the usability.

Does anybody have any experience or references which I can read to learn restrictions, performance impact or just use cases? 

ThanX!
Lev.



_______________________________________________
Linux-il mailing list
[email protected]
http://mailman.cs.huji.ac.il/mailman/listinfo/linux-il