From owner-p4-projects Thu Jan 2 12:21:54 2003 Delivered-To: p4-projects@freebsd.org Received: by hub.freebsd.org (Postfix, from userid 32767) id A0F3A37B405; Thu, 2 Jan 2003 12:21:52 -0800 (PST) Delivered-To: perforce@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 4B56C37B406 for ; Thu, 2 Jan 2003 12:21:52 -0800 (PST) Received: from repoman.freebsd.org (repoman.freebsd.org [216.136.204.115]) by mx1.FreeBSD.org (Postfix) with ESMTP id 8DF3643EA9 for ; Thu, 2 Jan 2003 12:21:51 -0800 (PST) (envelope-from cvance@tislabs.com) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.12.6/8.12.6) with ESMTP id h02KLpfh014772 for ; Thu, 2 Jan 2003 12:21:51 -0800 (PST) (envelope-from cvance@tislabs.com) Received: (from perforce@localhost) by repoman.freebsd.org (8.12.6/8.12.6/Submit) id h02KLoBe014769 for perforce@freebsd.org; Thu, 2 Jan 2003 12:21:50 -0800 (PST) Date: Thu, 2 Jan 2003 12:21:50 -0800 (PST) Message-Id: <200301022021.h02KLoBe014769@repoman.freebsd.org> X-Authentication-Warning: repoman.freebsd.org: perforce set sender to cvance@tislabs.com using -f From: Chris Vance Subject: PERFORCE change 23059 for review To: Perforce Change Reviews Sender: owner-p4-projects@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG http://perforce.freebsd.org/chv.cgi?CH=23059 Change 23059 by cvance@cvance_laptop on 2003/01/02 12:21:49 Misc. updates to todo list Affected files ... .. //depot/projects/trustedbsd/mac/sys/security/sebsd/TODO#2 edit Differences ... ==== //depot/projects/trustedbsd/mac/sys/security/sebsd/TODO#2 (text+ko) ==== @@ -19,21 +19,18 @@ SELinux and should be resync'd, probably along with the rest of the AVC and Security Server. -* Convert sebsd_enforcing and sebsd_toggle back to sysctls. These were - sysctls, then I coverted them to system calls, now I think they should - be sysctls again. Perhaps instead of the SELinux toggle - semantics, the enforcing program should be specific "on" vs "off"? +* Provide user-space tools for load_policy, enforcing, etc. * Port/write newrole application * Port/write run_init application -* Modify login to query permitted roles - -* Add syscall so policy my be reloaded on a live system +* Generate a table comparing SELinux and TrustedBSD hooks and coverage * Fix policy - Fix existing policy - Remove unused domains and policy components + - newsyslog is busted + - cron has issues To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe p4-projects" in the body of the message