Research Menu

.
Skip Search Box

SELinux Mailing List

Current Reference Policy patch

From: Daniel J Walsh <dwalsh_at_redhat.com>
Date: Thu, 17 Nov 2005 10:55:03 -0500


Need to turn on rpm and not alias to unconfined_t, because the rule

rpm_t->shell_exec_t->rpm_script_t was causing all terminal windows to run in rpm_script_t in targeted.

Allow users to su to root and then suspend the session.

Pegasus policy was too loose.
/bin/ksh should be sheel_exec_t
(.*)? is the same as .* and causes python to blow up.

-- 



-- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with the words "unsubscribe selinux" without quotes as the message.

Received on Thu 17 Nov 2005 - 11:02:57 EST
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service