--- Ivan Gyurdiev <ivg2@xxxxxxxxxxx> wrote: > Add nscd_client_domain to the daemon_domain call for > smbd What does that mean? > Samba's currently not allowed to delete logs - it > seems this was > done on purpose. Why, I'm not sure - so you can't > erase valuable > audit trail I suppose... > > --- > > By the way, notice how samba doesn't use standard > log macros for > this (append_logdir_domain). The only reason for > this appears to > be that the type is shared across multiple types. > This is not a very > good reason. IMHO we need to change all those > log/var/etc macros > to address this issue. If you look at home_macros.te > you'll see one > (rather ugly) way to address this - separate macro > in one declaration > part, and another "access" part. In general you are saying "Do not touch for now. It works." Thank you for your time! -- L. Miles ____________________________________________________ Yahoo! Sports Rekindle the Rivalries. Sign up for Fantasy Football http://football.fantasysports.yahoo.com -- fedora-selinux-list mailing list fedora-selinux-list@xxxxxxxxxx http://www.redhat.com/mailman/listinfo/fedora-selinux-list