Gentoo Archives: gentoo-security

From: Bill McCarty <bmccarty@××××××.net>
To: Chris PeBenito <pebenito@g.o>
Cc: gentoo security <gentoo-security@l.g.o>
Subject: Re: [gentoo-security] Learning to write SELinux policies
Date: Sun, 18 Jan 2004 00:44:27
Message-Id: 234737534.1074357695@[192.168.0.100]
In Reply to: Re: [gentoo-security] Learning to write SELinux policies by Chris PeBenito
Hi Chris,

--On Saturday, January 17, 2004 6:36 PM -0600 Chris PeBenito 
<pebenito@g.o> wrote:

> The TE rules only describes the ways to transition to the samhain_t > domain, but the role also has to be allowed to exist in the samhain_t > domain. Adding this will probably fix it: > > role sysadm_r types samhain_t;
> I'm not sure why this type of problem doesn't generate any messages.
Thanks, that IS the problem! I'll soon have a policy. Now, all we need is a Gentoo ebuild for Smahain <g>. I'll see if I can whomp one up.
> BTW, this type of question goes better on the hardened ml.
Okey doke, will do. This wasn't super clear from the brief mailing list descriptions. Thanks all the more for having answered an off-topic question! Cheers, --------------------------------------------------- Bill McCarty -- gentoo-security@g.o mailing list