[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: XML Based Policy Configuration for SELinux
On Tue, Jun 21, 2005 at 11:46:30PM -0400, Joshua Brindle wrote:
> >Wish List item 3)
> >
> >that the tools that do the converting to/from XML be
> >written in python!!!
> >
> >
> The doctool to generate module.conf, tunables.conf and the html docs for
> the reference policy is in python :)
wheeeee :)
> >XML is the sort of thing that allows people with very little
> >understanding of e.g. selinux to write, write, using simple
> >libraries, their Own Glorious parsing analysis and communication
> >tools.
> >
> >
> >
> I'm not sure what this means. How does XML help people that don't
> understand selinux do anything?
to illustrate: i did not need to understand anything about the ordering
of the application of incoming NAT and incoming firewall rules which
are different from the ordering of the application of outgoing NAT and
outgoing firewall rules in order to write my fw_builder.py program,
which simply takes the output of fwbuilder (an XML file) and spews
forth a prettified HTML version of the firewall policy.
more later.
l.
--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.
This mailing list archive is a service of Copilot Consulting.