Gentoo Archives: gentoo-hardened

From: Sven Vermeulen <sven.vermeulen@××××××.be>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] SeLinux system_u:system_r:initrc_t inside KDE
Date: Thu, 11 Aug 2011 14:53:59
Message-Id: CAPzO=NxCz+jsAkQVX_yvVt2+dgDSKBKHNtaDUjucvV1G8NxKpQ@mail.gmail.com
In Reply to: Re: [gentoo-hardened] SeLinux system_u:system_r:initrc_t inside KDE by Udo Siewert
1 On Thu, Aug 11, 2011 at 2:38 PM, Udo Siewert <algenib@×××××××.com> wrote:
2
3 > don't use /etc/init.d/xdm to start KDE but start it by the 'startx'
4 > command with an .xinitrc file in /home/user which should contain 'exec
5 > startkde'.
6 >
7 >
8 SELinux-wise, it is fine to use xdm, gdm, kdm or whatever. However, it is
9 possible that our policies are not correct yet to handle this. So we'll need
10 to figure that out first ;-)
11
12 What context does the gdm/xdm/kdm binary have on your system? Where is the
13 binary located?
14
15 It looks like the context should be xdm_exec_t, offered through the xserver
16 module. Is sec-policy/selinux-xserver installed on your system?
17
18 Wkr,
19 Sven Vermeulen

Replies

Subject Author
Re: [gentoo-hardened] SeLinux system_u:system_r:initrc_t inside KDE Udo Siewert <algenib@×××××××.com>