Well pam_namespace is just mounting on top of /tmp and /var/tmp, I believe. While I think pulseaudio uses just /dev/shm. Since pulseaudio runs in the users space, I have no idea why it would not work. On 11/05/2014 06:42 AM, george karakou wrote: > > > On 11/04/2014 11:07 PM, Daniel J Walsh wrote: >> >> On 11/02/2014 06:19 AM, george karakou wrote: >>> So i enabled polyinstatiation and everything seems to run smoothly >>> except from pulseaudio. The weird thing is i dont get any denials from >>> selinux at all. And everything seems to be working. The pulseaudio >>> daemon is running but i dont get the cards to be recognized. Tried all >>> the troubleshooting from fedoraproject wiki to no avail. I guess it >>> has something to do with /tmp-inst and .esd permissions. >>> -- >>> selinux mailing list >>> selinux@xxxxxxxxxxxxxxxxxxxxxxx >>> https://admin.fedoraproject.org/mailman/listinfo/selinux >> Does it work in permissive mode? >> >> >> > No it doesnt. > It only works if i polyinstantiate only the $HOME dirs for my 2 > users(a staff_u and an xguest_u one) and to make it work i have to > manually kill and start pulseaudio from a terminal atfer the DE has > finished loading and i am represented with a kde or gnome session. > I dont know if it has anything to do with /tmp mounted as tmpfs from > systemd's tmp.mount unit. I tried to disable and mask it but system > became unbootable and i reverted back to tmp as tmpfs. I really have > no other hints either from audit logs or from dmesg/syslog output. > -- > selinux mailing list > selinux@xxxxxxxxxxxxxxxxxxxxxxx > https://admin.fedoraproject.org/mailman/listinfo/selinux -- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux