[$] Still waiting for stackable security modules
The Linux security module (LSM) mechanism was created as a result of the first Kernel Summit in 2001; it wasdesigned to allow the development of multiple approaches to Linux security.That goal has been met; there are several security modules available withcurrent kernels. The LSM subsystem was not designed, though, to allowmultiple security modules to work together on the same system. Developershave been working to rectify that problem almost since the LSM subsystemwas merged, but with limited success; some small security modules can bestacked on top of the "major" ones, but arbitrary stacking is not possible.Now, a full 20 years aftersecurity-module support went into the 2.5 development kernel series, itlooks like a solution to the stacking problem may finally be gettingcloser.