[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: smaller memory footprint for 'strict' policy - helping gentoo as well


On Mon, May 30, 2005 at 10:37:17PM -0400, Joshua Brindle wrote:

> >... surely... there's some analysis done by the m4 macro
> >compiler that automatically removes "unwanted" / "unused"
> >macros?
> >
> >could that be done as a separate pre-pass / analysis step,
> >making it unnecessary to consider a macros/unused directory?
> >
> > 
> >
> Why? if the macro is unused it never makes it past the policy.conf which 
> you shouldn't be reading directly anyway, aside from debugging.
 
 okay - then i must have misunderstood what valdis has done that
 reduces the memory footprint so dramatically.

 i mean, _yes_ of course, personally, i remove any policy
 domains that aren't used, i assume that naturally _everybody_
 does that because otherwise a package could be installed
 without consent and it would work (whereas if the policy
 isn't there, it will definitely fail).

 i am confused.

 valdis, hi, any chance you could elaborate?

 l.


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.


This mailing list archive is a service of Copilot Consulting.