1 |
Well... Don't I feel stupid. It really helps when I say "gentoo=nodevfs" |
2 |
instead of "gentoo-nodevfs". |
3 |
|
4 |
seinit works great. |
5 |
|
6 |
Thanks, |
7 |
-Tad |
8 |
|
9 |
> -----Original Message----- |
10 |
> From: Chris PeBenito [mailto:pebenito@g.o] |
11 |
> Sent: Monday, November 24, 2003 4:20 PM |
12 |
> To: Tad |
13 |
> Cc: 'Hardened Gentoo Mail List' |
14 |
> Subject: RE: [gentoo-hardened] Non-initrd SELinux initial policy loading |
15 |
> |
16 |
> On Mon, 2003-11-24 at 17:25, Tad wrote: |
17 |
> > First let me say that seinit is a great idea. It'll make working on the |
18 |
> > policy a little more convenient. |
19 |
> |
20 |
> > Is there a policy change needed for this to work? |
21 |
> |
22 |
> There are no required policy changes for this. seinit would be running |
23 |
> in kernel_t as soon as the policy is loaded, and thus should be able to |
24 |
> exec /sbin/init. I need more information about the messages you got to |
25 |
> say more. |
26 |
> |
27 |
> -- |
28 |
> Chris PeBenito |
29 |
> <pebenito@g.o> |
30 |
> Developer, |
31 |
> Hardened Gentoo Linux |
32 |
> Embedded Gentoo Linux |
33 |
> |
34 |
> Public Key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xE6AF9243 |
35 |
> Key fingerprint = B0E6 877A 883F A57A 8E6A CB00 BC8E E42D E6AF 9243 |
36 |
|
37 |
|
38 |
-- |
39 |
gentoo-hardened@g.o mailing list |