[aklug] Re: Modular security?

From: Joshua J. Kugler <joshua@eeinternet.com>
Date: Thu Oct 28 2010 - 14:39:25 AKDT

On Thursday 28 October 2010, Christopher Howard elucidated thus:
> My android phone has this interesting security model in which, just
> before installing an application, you are told which components of
> you phone's security (e.g., SD Card, Internet Access, GPS
> information) that the application is going to be granted access to.
> If you think that the app is asking for more privileges than it
> needs, you just don't install the app.
>
> I am curious if that kind of approach to application security had
> ever been explored in a Linux context, and how you might go about
> setting it up if you wanted it. (D-Bus? SetUID? New kernel modules?)

Capabilities
AppArmor
SELinux

j

-- 
Joshua Kugler
Part-Time System Admin/Programmer
http://www.eeinternet.com - Fairbanks, AK
PGP Key: http://pgp.mit.edu/  ID 0x73B13B6A
---------
To unsubscribe, send email to <aklug-request@aklug.org>
with 'unsubscribe' in the message body.
Received on Thu Oct 28 14:39:39 2010

This archive was generated by hypermail 2.1.8 : Thu Oct 28 2010 - 14:39:39 AKDT