Re: Security hooks for rpm

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, 2012-09-14 at 14:39 +0300, Elena Reshetova wrote:
> On Thu, Sep 13, 2012 at 10:23 PM, James Carter <jwcart2@xxxxxxxxxxxxx> wrote:
> > On Mon, 2012-09-10 at 10:44 -0400, Stephen Smalley wrote:
> >> On Mon, 2012-09-10 at 11:07 +0300, Elena Reshetova wrote:
> >> > And here are the actual hooks:
> >> >
> >> > 1. rpmRC SECURITYHOOK_INIT_FUNC(rpmts ts, const char *opts)
> >>
> >> I see that our init func takes a const char *name argument as well; I
> >> don't know offhand whether it is truly required (Steve or Jim?).
> >>
> >
> > This is the name of the collection. It is required so that all the
> > members of a collection can be grouped together. This is needed because
> > all SELinux policy must be installed before applications and files that
> > the policy is for.
> 
> I wonder if we can then have a generic init hook for the plugin (as
> above) and then
> a separate hook to initialize the collection (that could have
> collection name and
> any other needed variables). The plugins that need to use collection
> (like SELinux)
> will use this hook, others just ignore it. Would it be reasonable?
> 

I think so.

-- 
James Carter <jwcart2@xxxxxxxxxxxxx>
National Security Agency


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.


[Index of Archives]     [Selinux Refpolicy]     [Linux SGX]     [Fedora Users]     [Fedora Desktop]     [Yosemite Photos]     [Yosemite Camping]     [Yosemite Campsites]     [KDE Users]     [Gnome Users]

  Powered by Linux