Research
.
Skip Search Box

SELinux Mailing List

Re: I am attempting to add a secadm_r

From: Russell Coker <russell_at_coker.com.au>
Date: Tue, 19 Apr 2005 14:43:37 +1000


On Friday 08 April 2005 03:45, Luke Kenneth Casson Leighton <lkcl@lkcl.net> wrote:
> > What prevents you from doing what you describe via two usernames
> > in /etc/passwd that both map to uid 0 but have different role
> > authorizations in policy/users?
>
> prevents... nothing ... i remember something appearing to go
> wrong when i did that last - something to do with samba, it
> ended up at the username "root" even though i'd logged in as
> "root2".

It's annoying that $USER and $LOGNAME have the first entry in the passwd file that has the right UID. Maybe the best thing to do would be to have ~/.bashrc or /etc/profile set $USER and $LOGNAME based on $HOME. There's nothing we can do about "id -un" though.

-- 
http://www.coker.com.au/selinux/   My NSA Security Enhanced Linux packages
http://www.coker.com.au/bonnie++/  Bonnie++ hard drive benchmark
http://www.coker.com.au/postal/    Postal SMTP/POP benchmark
http://www.coker.com.au/~russell/  My home page

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Tue 19 Apr 2005 - 00:48:48 EDT
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service