Microsoft proposed an IPE access management system for the Linux kernel.
The company has presented for discussion on the Linux kernel developers mailing list the code for an LSM module implementing the Integrity Policy Enforcement (IPE) mechanism, which expands existing mandatory access control systems. Instead of being tied to labels and paths, the IPE makes decisions on permission or denial of operations based on the inherent properties of the system component involved in the operation. The module allows defining a general policy […]
