-----Original Message-----
From: linux-audit-bounces(a)redhat.com
[mailto:linux-audit-bounces@redhat.com] On Behalf Of Steve Grubb
Sent: Tuesday, December 21, 2004 9:51 AM
To: Linux Audit Discussion
Subject: Re: Snare, SELinux, NISPOM
I use FC3 & rawhide under targeted policy for auditd
development. However, both user space and kernel code is
still be written.
Thanks, Steve, when someone has a good policy that (1) satisfies NISPOM
and (2) eliminates most other avc log traffic you'll have a winner.
Tom Browder