Merge required">
Done">
In progress">
Not done">
]>
&title;
$FreeBSD$
Current Status
This is a TODO list for the TrustedBSD Project. Items are listed in
their current condition along with an informational note and current
task handler. This is considered an addendum to the
TrustedBSD website.
Mandatory Access Control
| Issue | Status | Responsible | Description |
| devfs(8) changes |
&status.merge; |
&a.rwatson; |
devfs changes to pass complete paths of objects into
MAC Framework for label initialization. |
| Regression tests |
&status.wip; |
&a.trhodes; |
Regression tests should be present for all MAC modules.
These should exist in /usr/src/tools/regression/security/MODULE_NAME. |
| mac_bsdextended(4) first match |
&status.done; |
&a.trhodes; |
The file system firewall capabilities provided by the
mac_bsdextended(4) security policy module should be
fixed to honor on a first match basis. |
TrustedBSD Audit framework
| Issue | Status | Responsible | Description |
| STUB TABLE |
-- |
-- |
-- |
Security Enhanced BSD (SEBSD)
| Issue | Status | Responsible | Description |
| STUB TABLE |
-- |
-- |
-- |
Security-Enhanced Darwin (SEDarwin)
| Issue | Status | Responsible | Description |
| Missing hook: chdir() syscall
| -- |
-- |
-- |
TrustedBSD Documentation Issues
| Issue | Status | Responsible | Description |
| Consistent module text |
&status.wip; |
&a.trhodes; |
The handbook MAC chapter should use "security policy module"
consistently as not to confuse users. |
| MAC chapter bibliography |
&status.new; |
&a.trhodes; |
The handbook MAC chapter should have a bibliography to point
users to other texts. Robert is going to send Tom a list
that he thinks would be sufficiant. |
| MAC chapter numeric label descriptions |
&status.wip; |
&a.trhodes; |
The handbook MAC chapter describes the low, equal and high
labels; however, it should also discuss the numeric label
settings. |