Hi, I need some advise/suggestion on below setup. We created 'guest_u' accounts with shell access. Now we like to allow: 1) Only selected guest_u users has "guest_exec_content->on" permission. (ex: user1,user3 has exec permission, but user2 don't have permission) 2) for users in (1) allow them to execute specific binary(~/abc.bin) but not all. (ex: user1,user3 can execute only ~/abc.bin but can't other binary files) Is that possible to achieve? any suggestion how to create such setup? thanks. ---- Cheers, Lakshmipathi.G http://www.giis.co.in http://www.webminal.org _______________________________________________ selinux mailing list -- selinux@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to selinux-leave@xxxxxxxxxxxxxxxxxxxxxxx