Hi. On Fri, 24 Feb 2006 06:42:45 -0500, Benjy Grogan wrote: > That was my understanding of SELinux. You could run a crazy program > that has root privileges, is hackable, has no SELinux policy, and all > that effort was for nigh. I think this is a question of policy. The "targeted" policy does what you describe, it just confines specific applications. You are free to use the reverse approach, though. -- fedora-devel-list mailing list fedora-devel-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-devel-list