From: cpebenito@tresys.com (Christopher J. PeBenito) Date: Wed, 03 Dec 2008 15:30:45 -0500 Subject: [refpolicy] new svn refpolicy difficuties: In-Reply-To: References: <1228112352.3841.13.camel@unix> <1228223603.9691.19.camel@gorn> <1228233441.2973.17.camel@unix> <1228244012.9691.22.camel@gorn> <1228246875.2928.1.camel@unix> <1228310523.9691.387.camel@gorn> Message-ID: <1228336248.903.1.camel@gorn> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com On Wed, 2008-12-03 at 08:49 -0800, Justin Mattock wrote: > with the newrole mechanism, If > I log in as sysadm_r, then change roles to > user_r, I see the: > allow newrole user_r process transition > (but can never be put into the policy?) > With the older policies I would > initialialy login as syadm_r, then > login to staff_t for starting the internet, > then user_r for entertainment needs > but with this new mechanism, seems to > be something different!! I fixed a mistake in the role change constraint. svn up and it should work again. -- Chris PeBenito Tresys Technology, LLC (410) 290-1411 x150