Re: [policy-1.8-19] Running /bin/mail as a sysadm_r user AVCs

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, 19 Mar 2004 20:03, Aleksey Nogin <aleksey@xxxxxxxxx> wrote:
> The first one is probably an issue with how the kernel manages /proc -
> /proc/self IMHO should not be system_u:object_r:proc_t.

That seems like a reasonable idea, I wonder what Steve will think.

I've put a new snapshot of my tree on 
http://www.coker.com.au/selinux/policy.tgz .  It has a fix for the hostname 
issue and changes to sendmail_macros.te and procmail.te to deal with the 
issues you reported.

If you like living on the edge then you can run your machine entirely from my 
policy instead of Dan's package.  Otherwise just selectively copy the files 
you want.

-- 
http://www.coker.com.au/selinux/   My NSA Security Enhanced Linux packages
http://www.coker.com.au/bonnie++/  Bonnie++ hard drive benchmark
http://www.coker.com.au/postal/    Postal SMTP/POP benchmark
http://www.coker.com.au/~russell/  My home page

[Index of Archives]     [Fedora Users]     [Fedora Desktop]     [Big List of Linux Books]     [Yosemite News]     [Yosemite Campsites]     [KDE Users]     [Gnome Users]

  Powered by Linux