Gentoo Archives: gentoo-hardened

From: Robert Sharp <selinux@×××××××××××××××.org>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Portage-related AVCs
Date: Wed, 23 Nov 2016 15:16:56
Message-Id: ee7847d1-2047-95c8-d370-90dce5e8f3f9@sharp.homelinux.org
In Reply to: Re: [gentoo-hardened] Portage-related AVCs by Jason Zaman
1 On 23/11/16 14:37, Jason Zaman wrote:
2 > Are you on ~arch or stable? did you just upgrade to the 2.6 userland?
3 > What versions do you have installed of these:
4 > sys-libs/libsepol
5 > sys-libs/libselinux
6 > sys-libs/libsemanage
7 > sys-apps/checkpolicy
8 > sys-apps/policycoreutils
9 > dev-python/sepolgen
10 > app-admin/setools
11 Looks like I am stable - 2.5 for all of the above.
12 >
13 > what does this return?
14 > ls -al/etc/selinux/*/policy/policy.*
15 -rw-r--r--. 1 root root 433338 Apr 6 2016
16 /etc/selinux/strict/policy/policy.29
17 -rw-r--r--. 1 root root 445097 Nov 23 11:43
18 /etc/selinux/strict/policy/policy.30
19 -rw-r--r--. 1 root root 450378 Apr 6 2016
20 /etc/selinux/targeted/policy/policy.29
21 -rw-r--r--. 1 root root 462377 Nov 23 11:43
22 /etc/selinux/targeted/policy/policy.30
23 > and in /etc/selinux/semanage.conf, do you have policy-version = set to anything?
24 module-store = direct
25 save-linked=false
26 expand-check=1
27 bzip-blocksize=0
28 bzip-small=true
29
30 so no for the last one!
31
32 Should I move to ~arch then, and is there a guide for that or is it
33 fairly simple?
34
35 Thanks,
36 Robert

Replies

Subject Author
Re: [gentoo-hardened] Portage-related AVCs Jason Zaman <jason@×××××××××.com>