These patches provides support to a new tool in sepolicy (admin). The goal here is to give an user the hability to create new SELinux users, named here as users admin, using admin roles, e.g. secadm_r, logadm_r, dbadm_r, etc. Since sepolicy also intends to be used to create admin roles, I believe admin tool can be used to complement the creation of those roles. sepolicy admin, works creating admin users and linking a SELinux user admin to UNIX LOGIN that can transit from staff_r to 'adm_r' through sudo. ---- Leonidas Da Silva Barbosa (5): adding seadmin support adding changes to sepolicy argparse, seadmin option Adding seadmin manpage Adding seadmin manpage info into sepolicy.8 adding completion to seadmin feature policycoreutils/sepolicy/sepolicy-admin.8 | 40 +++++++++++ .../sepolicy/sepolicy-bash-completion.sh | 18 ++++- policycoreutils/sepolicy/sepolicy.8 | 5 ++ policycoreutils/sepolicy/sepolicy.py | 52 ++++++++++++++ policycoreutils/sepolicy/sepolicy/seadmin.py | 83 ++++++++++++++++++++++ 5 files changed, 197 insertions(+), 1 deletion(-) create mode 100644 policycoreutils/sepolicy/sepolicy-admin.8 create mode 100644 policycoreutils/sepolicy/sepolicy/seadmin.py -- 1.8.3.1 -- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux