Research
.
Skip Search Box

SELinux Mailing List

Re: [PATCH -trunk] newrole: enable use of alternate pam configurations for running applications in a different context (Was: Re: launching apps at level (MLS) and polyinstantiation)

From: Karl MacMillan <kmacmillan_at_mentalrootkit.com>
Date: Fri, 11 May 2007 14:42:26 -0400


On Tue, 2007-05-08 at 15:11 -0400, Stephen Smalley wrote:
> From: Ted X Toth <txtoth@gmail.com>
>
> With some modifications by Stephen Smalley <sds@tycho.nsa.gov>.
>
> Extend newrole to enable use of alternate pam configurations when
> running an application in a different context. Introduces
> /etc/selinux/newrole_pam.conf as a config file mapping application
> pathnames to pam service names when the application is invoked via
> newrole. In the absence of the config file or the absence of a
> matching entry, falls back to the standard newrole pam configuration.
>
> Signed-off-by: Stephen Smalley <sds@tycho.nsa.gov>
>

Merged into trunk and policyrep.

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Fri 11 May 2007 - 14:42:38 EDT
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service