Research
.
Skip Search Box

SELinux Mailing List

Re: USER_AVC vs USER_MAC_POLICY_LOAD ?

From: Steve Grubb <sgrubb_at_redhat.com>
Date: Wed, 26 Mar 2008 10:05:30 -0400


On Wednesday 26 March 2008 09:26:48 Stephen Smalley wrote:
> Using a separate type makes sense to me.

OK, in the next audit release, there will be a new type:

#define AUDIT_USER_MAC_POLICY_LOAD 2310

> But it may require a change/extension to the libselinux callback
> interface - there isn't a way to convey such type information presently
> I think.

Hmm...I haven't checked lately either.

> However, isn't there a separate issue with regard to the above dbus
> message - the "Can't send to audit system" part?

Right, I thought about altering the message so we didn't go down that path. :)

-Steve

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Wed 26 Mar 2008 - 11:04:43 EDT
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service