Gentoo Archives: gentoo-hardened

From: Sven Vermeulen <sven.vermeulen@××××××.be>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] SeLinux system_u:system_r:initrc_t inside KDE
Date: Sun, 14 Aug 2011 09:26:03
Message-Id: CAPzO=Nz_kqVtr_WFTRRXwYdkWAX_hk0NjZWoquQy=TFnuyLgBg@mail.gmail.com
In Reply to: Re: [gentoo-hardened] SeLinux system_u:system_r:initrc_t inside KDE by Mike Edenfield
1 On Sat, Aug 13, 2011 at 8:33 PM, Mike Edenfield <kutulu@××××××.org> wrote:
2
3 > My system-auth doesn't have anything about SELinux in it. The
4 > pam_selinux.so
5 > calls are in system-login. This looks like what pambase is supposed to be
6 > doing. system-login.in has these:
7 >
8 > #if HAVE_SELINUX
9 > session required pam_selinux.so close
10 > #endif
11 >
12 > and system-auth.in doesn't.
13 >
14 > Which one should kdm/gdm be using? Right now /etc/pam.d/kde pulls in
15 > system-
16 > auth. Can I just move the pam_selinux calls?
17 >
18 >
19 If you do, does it break things (like logon through terminals)?
20 If not, does it fix the KDM logons?
21
22 Wkr,
23 Sven Vermeulen

Replies

Subject Author
Re: [gentoo-hardened] SeLinux system_u:system_r:initrc_t inside KDE Udo Siewert <algenib@×××××××.com>
Re: [gentoo-hardened] SeLinux system_u:system_r:initrc_t inside KDE Mike Edenfield <kutulu@××××××.org>