Gentoo Archives: gentoo-hardened

From: Chris PeBenito <pebenito@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] New selinux-policy ebuild don't install anything ??
Date: Wed, 25 Oct 2006 11:34:24
Message-Id: 1161775825.31008.2.camel@gorn.pebenito.net
In Reply to: Re: [gentoo-hardened] New selinux-policy ebuild don't install anything ?? by kakou
1 On Wed, 2006-10-25 at 10:04 +0200, kakou wrote:
2 > Le mardi 24 octobre 2006 à 23:03 -0400, Chris PeBenito a écrit :
3 > > On Tue, 2006-10-24 at 17:12 +0200, kakou wrote:
4 > > > Le dimanche 22 octobre 2006 à 01:04 -0400, Chris PeBenito a écrit :
5 > > > > On Fri, 2006-10-20 at 20:01 +0200, kakou wrote:
6 > > > > > I try to update my selinux system but all new selinux-policy ebuild
7 > > > > > install any files (or not interresting files):
8 > > > > >
9 > > > > > >>> Emerging (1 of 1) sec-policy/selinux-base-policy-20061015 to /
10 > > > >
11 > > > > > >>> Merging sec-policy/selinux-base-policy-20061015 to /
12 > > > > > - --- /etc/
13 > > > > > - --- /etc/selinux/
14 > > > > > >>> /etc/selinux/config
15 > > > > > - --- /usr/
16 > > > > > - --- /usr/share/
17 > > > > > - --- /usr/share/doc/
18 > > > > > - --- /usr/share/doc/selinux-base-policy-20061015/
19 > > > > > >>> /usr/share/doc/selinux-base-policy-20061015/example.fc.gz
20 > > > > > >>> /usr/share/doc/selinux-base-policy-20061015/example.if.gz
21 > > > > > >>> /usr/share/doc/selinux-base-policy-20061015/example.te.gz
22 > > > > > >>> /usr/share/doc/selinux-base-policy-20061015/Makefile.example.gz
23 > > > >
24 > > > > It certainly installs more than this. I can't reproduce this, and the
25 > > > > other testers haven't either :x
26 > > > >
27 > > > It's maybe because I'm on a no selinux system (not hardened and without
28 > > > selinux useflag)?
29 > > > I have a similar problem with setools-3 that need a selinuxfs and so
30 > > > crash during compilation.
31 > >
32 > > Thats it. Your system should be using the SELinux profile, as described
33 > > in the SELinux conversion guide.
34 > >
35 >
36 > Yes, but on my laptop, I just need the selinux-policy in order to build
37 > the binary policy. I am not using and I want not to use real selinux
38 > system on this machine, I just need the binrary computed with lasted
39 > policy source.
40 > They are not a means to bypass this problem ?
41
42 Since this is a reasonable thing to do, I fixed the ebuild to work on
43 non SELinux profiles.
44
45 --
46 Chris PeBenito
47 <pebenito@g.o>
48 Developer,
49 Hardened Gentoo Linux
50
51 Public Key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xE6AF9243
52 Key fingerprint = B0E6 877A 883F A57A 8E6A CB00 BC8E E42D E6AF 9243

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies