Gentoo Archives: gentoo-hardened

From: Chris PeBenito <pebenito@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Status new selinux reference policy
Date: Fri, 14 Apr 2006 12:32:38
Message-Id: 1145017838.24323.32.camel@gorn.pebenito.net
In Reply to: Re: [gentoo-hardened] Status new selinux reference policy by Petre Rodan
1 On Fri, 2006-04-14 at 13:42 +0300, Petre Rodan wrote:
2 > hi,
3 >
4 > On Thu, Apr 13, 2006 at 02:43:36PM -0700, Stephen Fromm wrote:
5 > > On Thu, 2006-04-13 at 22:56 +0300, Petre Rodan wrote:
6 > > > Hi,
7 > > >
8 > > > On Thu, Apr 13, 2006 at 09:34:25PM +0200, Mivz wrote:
9 > > > > Hello,
10 > > > >
11 > > > > I was curious if the new SELinux reference policy is ready for Gentoo?
12 > > >
13 > > > no, it's not yet ready. not every policy present in the old sample
14 > > > policy has been translated yet into modules of the new system. plus
15 > > > the selinux toolchain is still a moving target and will need time to
16 > > > mature.
17 > >
18 > > How far along is the work to migrate to the reference policy? I recall
19 > > a message to this list in December that the migration work had begun and
20 > > suggested more information would follow. I poked at bugzilla and didn't
21 > > find a bugid tracking the status of the reference policy for gentoo.
22 >
23 > the following policies are not yet in the current upstream CVS:
24 >
25 > asterisk
26 > clockspeed
27 > courier-imap
28 > dante
29 > jabber-server
30 > ntop
31 > openvpn
32 > qmail
33 > snort
34 >
35 > qmail policy is ready and has been sent upstream. clockspeed, dante,
36 > courier-imap, jabber-server, openvpn, snort will be translated once I
37 > get one or two extra servers migrated.
38 >
39 > asterisk and ntop should be handled by someone else, since I do not
40 > use them.
41
42 Courier, dante, jabber and snort are done. Sourceforge had some
43 hardware failures on the CVS server, so the developer CVS isn't
44 synchronizing with the public pserver, which is why you can't see it
45 yet. I believe a debian guy is doing a openvpn policy. I'll see if I
46 can get the remaining policies converted over this weekend.
47
48 --
49 Chris PeBenito
50 <pebenito@g.o>
51 Developer,
52 Hardened Gentoo Linux
53 Embedded Gentoo Linux
54
55 Public Key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xE6AF9243
56 Key fingerprint = B0E6 877A 883F A57A 8E6A CB00 BC8E E42D E6AF 9243

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-hardened] Status new selinux reference policy Petre Rodan <kaiowas@g.o>