On Fri, 2010-01-22 at 07:48 -0500, Daniel J Walsh wrote: > Any comments? What should we add? What should we remove? > > http://sradvan.fedorapeople.org/SELinux_FAQ/#id2654720 The "What programs are protected by the SELinux policy?" Q&A is misleading, as some of those programs may run in unconfined domains, or may have a separate executable type for a reason other than entering their own domain. The analysis from your blog was more detailed. -- Stephen Smalley National Security Agency -- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux