freebsd-dev/sys/security
Robert Watson 9283578946 Instrument sysarch() MD privileged I/O access interfaces with a MAC
check, mac_check_sysarch_ioperm(), permitting MAC security policy
modules to control access to these interfaces.  Currently, they
protect access to IOPL on i386, and setting HAE on Alpha.
Additional checks might be required on other platforms to prevent
bypass of kernel security protections by unauthorized processes.

Obtained from:	TrustedBSD Project
Sponsored by:	DARPA, Network Associates Laboratories
2003-03-06 04:47:47 +00:00
..
mac Instrument sysarch() MD privileged I/O access interfaces with a MAC 2003-03-06 04:47:47 +00:00
mac_biba Back out M_* changes, per decision of the TRB. 2003-02-19 05:47:46 +00:00
mac_bsdextended Back out M_* changes, per decision of the TRB. 2003-02-19 05:47:46 +00:00
mac_ifoff
mac_lomac Back out M_* changes, per decision of the TRB. 2003-02-19 05:47:46 +00:00
mac_mls Back out M_* changes, per decision of the TRB. 2003-02-19 05:47:46 +00:00
mac_none
mac_partition
mac_portacl A cute yet small MAC policy that provides a simple ACL mechanism to 2003-03-02 23:01:42 +00:00
mac_seeotheruids
mac_stub
mac_test