Gentoo Archives: gentoo-hardened

From: Sven Vermeulen <swift@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] SELinux base policy r2 in hardened-dev overlay
Date: Fri, 19 Aug 2011 21:15:21
Message-Id: 20110819211448.GB29497@gentoo.org
In Reply to: [gentoo-hardened] SELinux base policy r2 in hardened-dev overlay by Sven Vermeulen
1 On Fri, Aug 19, 2011 at 08:51:48PM +0000, Sven Vermeulen wrote:
2 > Okay, but what is this "in-depth" change that I was talking about. Well,
3 > SELinux policies support labeled init scripts. For instance,
4 > "slapd_initrc_exec_t" which allows the init script to run in an init script
5 > domain specific for slapd (splad_initrc_t). This allows for slapd-specific
6 > allow statements (for instance PID file management) from within the init
7 > script.
8
9 Ah, all wrong here, there's no slapd_initrc_t domain. *sigh*
10
11 Anyways, there's still work. You get the picture ;-)
12
13 Wkr,
14 Sven Vermeulen