Re: noexec mount-option with selinux?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Wed, 07 Jun 2006 18:03:18 +0200, Marten Lehmann said:
> Hello,
> 
> > That means a fully working solution looks something like this:
> > $ mount --bind /home/tmp/ /home/tmp/
> > $ mount -o remount,noexec /home/tmp/
> > $ mount --bind /home/tmp/ /tmp/
> 
> thanks, it really works. It even works after adding appropriate lines to 
> /etc/fstab so this is automatically done at boot time (I was afraid that 
> mount woudln't like entries with duplicate mountpoints).

You might also want to look at the pam_namespace code that's in Rawhide
right now... Per-userid /tmp and neat stuff like that....

Attachment: pgpMDTIKMCLFx.pgp
Description: PGP signature

--
fedora-selinux-list mailing list
fedora-selinux-list@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/fedora-selinux-list

[Index of Archives]     [Fedora Users]     [Fedora Desktop]     [Big List of Linux Books]     [Yosemite News]     [Yosemite Campsites]     [KDE Users]     [Gnome Users]

  Powered by Linux