2009-11-12 21:18:52

by Daniel Walsh

[permalink] [raw]
Subject: [refpolicy] services_clogd.patch

http://people.fedoraproject.org/~dwalsh/SELinux/F12/services_clogd.patch

new policy for clogd from Miroslav Grepl


2010-02-16 14:58:47

by cpebenito

[permalink] [raw]
Subject: [refpolicy] services_clogd.patch

On Thu, 2009-11-12 at 16:18 -0500, Daniel J Walsh wrote:
> http://people.fedoraproject.org/~dwalsh/SELinux/F12/services_clogd.patch
>
> new policy for clogd from Miroslav Grepl

Why does this have raw disk access?

I suspect that the tmpfs should go with the shm access. If that is the
case, clogd_manage_tmpfs_files() should be merged into clogd_rw_shm().


--
Chris PeBenito
Tresys Technology, LLC
(410) 290-1411 x150

2010-02-16 17:28:25

by Daniel Walsh

[permalink] [raw]
Subject: [refpolicy] services_clogd.patch

On 02/16/2010 09:58 AM, Christopher J. PeBenito wrote:
> On Thu, 2009-11-12 at 16:18 -0500, Daniel J Walsh wrote:
>> http://people.fedoraproject.org/~dwalsh/SELinux/F12/services_clogd.patch
>>
>> new policy for clogd from Miroslav Grepl
>
> Why does this have raw disk access?
>
> I suspect that the tmpfs should go with the shm access. If that is the
> case, clogd_manage_tmpfs_files() should be merged into clogd_rw_shm().
>
>

I will let Miroslav work this one.