K 10 svn:author V 7 rwatson K 8 svn:date V 27 2002-07-30T22:39:28.000000Z K 7 svn:log V 588 Introduce support for Mandatory Access Control and extensible kernel access control. Label socket IPC objects, permitting security features to be maintained at the granularity of the socket. Two labels are stored for each socket: the label of the socket itself, and a cached peer label permitting interogation of the remote endpoint. Since socket locking is not yet present in the base tree, these objects are not locked, but are assumed to follow the same semantics as other modifiable entries in the socket structure. Obtained from: TrustedBSD Project Sponsored by: DARPA, NAI Labs END