Research
.
Skip Search Box

SELinux Mailing List

Re: Audit log denials for strict policy

From: Daniel J Walsh <dwalsh_at_redhat.com>
Date: Mon, 20 Feb 2006 14:00:49 -0500


Ivan Gyurdiev wrote:
>
>> No I think this is a sorting problem in file_contexts file.
>>
>> Does var_log_t come after wtmp_t?
>>
> Yes, but that shouldn't mean anything, this file should get sorted in
> matchpathcon (so I've been told..)
>
> The two specs are:
>
> /var/log/wtmp.* -- system_u:object_r:wtmp_t:s0
> /var/log/.* system_u:object_r:var_log_t:s0
We seem to have a sorting problem within matchpathcon on strict policy.

Strict policy labels wtmp file in a loadable module, but the sorting algorithm is using var_log_t????

Dan

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Mon 20 Feb 2006 - 14:01:14 EST
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service