On Fri, 2005-04-01 at 08:56 -0500, Steve Grubb wrote:
 On Friday 01 April 2005 08:42, Stephen Smalley wrote:
 > BTW, I think we need to run the comm through audit_log_untrustedstring
 > or similar, and likewise for the path generated for the exe.  Right?
 
 Yes we do. I needed a kernel that has those functions before I could make that 
 adjustment. 
It is already in the -mm patchset, e.g. 2.6.12-rc1-mm4.
-- 
Stephen Smalley <sds(a)tycho.nsa.gov>
National Security Agency