[KLUG Members] KLUG Meeting Notes 01/28/2003 Clarification!!! MAC/LIDS

mag00 members@kalamazoolinux.org
Mon, 03 Feb 2003 15:29:41 -0500


*************************************************************************
CLARIFICATION FROM MATTHEW BENJAMIN OF THE LINUX BOX ON MAC/LIDS:
======================================================================
LIDS does not meet Common Criteria standards.  It just has some
things in common with B1 systems.  As mentioned in the presentation,
something that _might_ meet them is SELinux.

The notes are just that--headings to guide the talk, and I may have
run by this point quickly in the presentation.  I tried to draw a
distinction between systems designed to meet formal security standards,
and systems that just address specific goals.  I put LIDS in the latter
category.  It modifies the Linux kernel in useful ways, that are similar
to ACLs in B1 systems, but Linux with LIDS is not B1.  (If it were, it
would have to be a specific distribution or product, that would actually
be certified.)
*************************************************************************

Note:
I had the impression that Matt was saying B1/common criteria could be
applied to MAC/LIDS in his presentation!  Didn't want to lead anyone
to incorrect conclusions from my error.  He was nice enough to clarify
this for us and I hope that I have not caused anyone professional grief.
My misunderstanding and misrepresentation 100%.  Matt knows his material
and deserves better than my erroneous translation!  SORRY!

I also added some comedic glibness to the notes that may have poorly
reflected Matt's professionalism and integrity.  Nothing like that was
intended and he is respected greatly by KLUG and the entire GNU/Linux
Open Source community.  We need many more with his talent and vision.
Since this was a security focused presentation, I made some rather
reckless comments that could have misunderstood.  Here is his bio from
the Linux Box web site that more professionally presents his creditials
and systems focus. 

----------

Matthew W. Benjamin, president, CTO, and co-founder of The Linux Box
Corporation, has over 10 years experience in Information Technology. 
He is a contributor to a variety of open source software packages and
tools.  Prior to co-founding The Linux Box he held a senior developer
position with Comshare, Inc. in Ann Arbor, Michigan.  Matt had been a
consultant with Integrated Micro Systems prior to joining Comshare. He
holds a master's degree from the University of Michigan, and a
bachelor's degree from the University of Missouri. 

The Linux Box
-------------
http://www.linuxbox.nu/index.php
The Linux Box has been providing services from training to software
development to customers users using Open Source software since 1999 and
are a sponsor of the Linux Professional Institute  http://www.lpi.org

The Linux Box is a sponsor of NPR and many of us are grateful for that!