On Fri, 2012-02-10 at 20:18 +0100, Dominick Grift wrote: > This might work: > > mkdir ~/mygito; cd ~/mygito; > > echo "policy_module(mygito, 1.0.0)" > mygito.te; > echo "role mygito_r;" >> mygito.te; > echo "userdom_restricted_user_template(mygito)" >> mygito.te; > echo "gitosis_run(mygito_t, mygito_r)" >> mygito.te; > echo "gen_user(mygito_u, user, mygito_r, s0, s0)" >> mygito.te; > > make -f /usr/share/selinux/devel/Makefile mygito.pp > sudo semodule -i mygito.pp > > useradd -Z mygito_u mygito > passwd mygito Ok, one small addition: cd /etc/selinux/targeted/contexts/users sed 's/guest_/mygito_/g' guest_u > mygito_u Best, -- Konstantin Ryabitsev Systems Administrator, Kernel.org Montréal, Québec
Attachment:
signature.asc
Description: This is a digitally signed message part
-- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux