[rsbac] rsbac-v1.2.0-pre4 uploaded to /pre

Amon Ott rsbac@rsbac.org
Fri, 22 Feb 2002 17:57:59 +0100

Hello once more!

RSBAC v1.2.0-pre4 has been uploaded to http://rsbac.org/pre.

We are now getting near feature freeze for 1.2.0 - some items at the bottom 
will have to wait for 1.2.1.


- Network access control with templates:
  - works with all models except PM
  - UNIX / INET (ipv4) address families fully supported
  - other AF matched without addresses etc.
- Template based individual netobj logging Command line and menu tools for
above items
- RC model and tools with unlimited roles and types (well, 32 Bit unsigned
  integer index)
- Symlink RC role redirection
- Selective dir tree disabling of Linux DAC
- rsbac_dialog program (modified cdialog) with menu help button and default 
- help in all rsbac menues
- Kernel config help for new items
- Fixed rklogd problem with 2.4 kernels and put rklogd back into tools package
- Generic list ordering (needed for templates and optimization)
- Model names in attribute tools
- Finish Net Device access control and tools/menues
- List optimization
- Reactivate Malware Scan module
- Generic time-to-live support in generic lists (new on-disk version)
- Support time-to-live for ACL group members and ACL entries
- copy_net_temp

To do for pre5:

- Network attribute backup
- Individual model soft mode
- Support time-to-live for RC entries
- ACL and RC ttl in menues
- Special backup script for transfer from 1.1.2 to 1.2.0

To do later:

- Support more network address families with addresses etc.
- Support more network address families with NETDEV and SCD/network/firewall
- Port the last lists (AUTH, log_levels etc.) to generic lists
- PM overhaul and menues
- Learning modes etc. for automatic setup script generation
- ACL support in Samba
- Versions in backup (-V n, n = (major<<16)+(mid<<8)+subver), automatic
  translation to new settings on restore
- Attribute set log in menues / undo log?
- (maybe) Attribute get log in menues
- Port to 2.2.20