~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

TOMOYO Linux Cross Reference
Linux/Documentation/netlabel/lsm_interface.rst

Version: ~ [ linux-6.12-rc7 ] ~ [ linux-6.11.7 ] ~ [ linux-6.10.14 ] ~ [ linux-6.9.12 ] ~ [ linux-6.8.12 ] ~ [ linux-6.7.12 ] ~ [ linux-6.6.60 ] ~ [ linux-6.5.13 ] ~ [ linux-6.4.16 ] ~ [ linux-6.3.13 ] ~ [ linux-6.2.16 ] ~ [ linux-6.1.116 ] ~ [ linux-6.0.19 ] ~ [ linux-5.19.17 ] ~ [ linux-5.18.19 ] ~ [ linux-5.17.15 ] ~ [ linux-5.16.20 ] ~ [ linux-5.15.171 ] ~ [ linux-5.14.21 ] ~ [ linux-5.13.19 ] ~ [ linux-5.12.19 ] ~ [ linux-5.11.22 ] ~ [ linux-5.10.229 ] ~ [ linux-5.9.16 ] ~ [ linux-5.8.18 ] ~ [ linux-5.7.19 ] ~ [ linux-5.6.19 ] ~ [ linux-5.5.19 ] ~ [ linux-5.4.285 ] ~ [ linux-5.3.18 ] ~ [ linux-5.2.21 ] ~ [ linux-5.1.21 ] ~ [ linux-5.0.21 ] ~ [ linux-4.20.17 ] ~ [ linux-4.19.323 ] ~ [ linux-4.18.20 ] ~ [ linux-4.17.19 ] ~ [ linux-4.16.18 ] ~ [ linux-4.15.18 ] ~ [ linux-4.14.336 ] ~ [ linux-4.13.16 ] ~ [ linux-4.12.14 ] ~ [ linux-4.11.12 ] ~ [ linux-4.10.17 ] ~ [ linux-4.9.337 ] ~ [ linux-4.4.302 ] ~ [ linux-3.10.108 ] ~ [ linux-2.6.32.71 ] ~ [ linux-2.6.0 ] ~ [ linux-2.4.37.11 ] ~ [ unix-v6-master ] ~ [ ccs-tools-1.8.12 ] ~ [ policy-sample ] ~
Architecture: ~ [ i386 ] ~ [ alpha ] ~ [ m68k ] ~ [ mips ] ~ [ ppc ] ~ [ sparc ] ~ [ sparc64 ] ~

Diff markup

Differences between /Documentation/netlabel/lsm_interface.rst (Version linux-6.12-rc7) and /Documentation/netlabel/lsm_interface.rst (Version linux-2.6.32.71)


  1 ========================================          
  2 NetLabel Linux Security Module Interface          
  3 ========================================          
  4                                                   
  5 Paul Moore, paul.moore@hp.com                     
  6                                                   
  7 May 17, 2006                                      
  8                                                   
  9 Overview                                          
 10 ========                                          
 11                                                   
 12 NetLabel is a mechanism which can set and retr    
 13 network packets.  It is intended to be used by    
 14 use of a common code base for several differen    
 15 The NetLabel security module API is defined in    
 16 brief overview is given below.                    
 17                                                   
 18 NetLabel Security Attributes                      
 19 ============================                      
 20                                                   
 21 Since NetLabel supports multiple different pac    
 22 it uses the concept of security attributes to     
 23 labels.  The NetLabel security attributes are     
 24 'netlbl_lsm_secattr' structure in the NetLabel    
 25 NetLabel subsystem converts the security attri    
 26 low-level packet label depending on the NetLab    
 27 configuration.  It is up to the LSM developer     
 28 security attributes into whatever security ide    
 29 particular LSM.                                   
 30                                                   
 31 NetLabel LSM Protocol Operations                  
 32 ================================                  
 33                                                   
 34 These are the functions which allow the LSM de    
 35 on outgoing packets as well as read the labels    
 36 exist to operate both on sockets as well as th    
 37 level functions are translated into low level     
 38 the administrator has configured the NetLabel     
 39                                                   
 40 NetLabel Label Mapping Cache Operations           
 41 =======================================           
 42                                                   
 43 Depending on the exact configuration, translat    
 44 label and the internal LSM security identifier    
 45 NetLabel label mapping cache is a caching mech    
 46 sidestep much of this overhead once a mapping     
 47 LSM has received a packet, used NetLabel to de    
 48 and translated the security attributes into a     
 49 can use the NetLabel caching functions to asso    
 50 identifier with the network packet's label.  T    
 51 when a incoming packet matches a cached value     
 52 NetLabel translation mechanisms bypassed but t    
 53 bypassed as well which should result in a sign    
                                                      

~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

kernel.org | git.kernel.org | LWN.net | Project Home | SVN repository | Mail admin

Linux® is a registered trademark of Linus Torvalds in the United States and other countries.
TOMOYO® is a registered trademark of NTT DATA CORPORATION.

sflogo.php