David Quigley
Mon Sep-21, 10:30 AM- 11:15 AM
Operations
As the use of SELinux expands in Enterprise environments customers are requesting the ability to use SELinux with their NFS based network storage.The labeled-nfs project seeks to extend the NFSv4 protocol to provide a generic mechanism for conveying process and file MAC security attribute information for use by security mechanisms employed on the client and server. This presentation explores the design and implementation for the labeled-nfs effort. We discuss why certain design decisions were made and what impact they have on the implementation of NFS in the Linux kernel and NFS userland infrastructure. Finally we discuss on going efforts working with the IETF to turn the labeled-nfs modifications into an open standard. This presentation contains content for system administrators as well as kernel developers and is accessible to a wide range of attendants.

Conversations

(0 total)

Session conversations are public discussions amongst those attending this session. Start the first conversation by clicking the Start a Conversation button at top.


Wiki

(What's this?) What is the EasyEdit button? This website gets better when people like you add to it. Just click the EasyEdit button to start. (help)

Speakers

Materials

You must be registered and signed in to download session materials.

Participants

(7 total)
Start a Conversation
Add materials
Have a photo online? Upload by URL
Loading_long
Enter the URL of an online document
Loading_long