OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [suse-security] AppArmor in SUSE 10.0

From: Crispin Cowan (crispinnovell.com)
Date: Sun May 07 2006 - 15:22:16 CDT


Christian Boltz wrote:
> BTW: I agree that a YOU update removing the restrictions in 10.0 would
> be a very good idea.
>
We are trying to decide which would be better:

    * Issue the certificate via YOU. This imposes the least change on
      your systems. Least work for you, least work for us, but kinda
      kludgey.
    * Issue an updated AppArmor parser via YOU. This imposes larger
      changes on your system, but results in simpler software running on
      your systems. This is more work for you, more work for us, but is
      the right thing to do.

But if we are going to talk about the "right thing to do", the right
thing is to upgrade to SUSE 10.1 :) which has the unrestricted version
of AppArmor by default. It also has some new features, and a much
improved set of profiles.

Crispin
--
Crispin Cowan, Ph.D. http://crispincowan.com/~crispin/
Director of Software Engineering, Novell http://novell.com

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here