From: cpebenito@tresys.com (Christopher J. PeBenito) Date: Wed, 11 Mar 2009 10:53:42 -0400 Subject: [refpolicy] roles_secadm.patch In-Reply-To: <49AFFCD4.9030506@redhat.com> References: <49AFFCD4.9030506@redhat.com> Message-ID: <1236783224.17032.255.camel@gorn> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com On Thu, 2009-03-05 at 11:24 -0500, Daniel J Walsh wrote: > http://people.fedoraproject.org/~dwalsh/SELinux/F11/roles_secadm.patch > > secadm should not have access to all these roles. Merged, except I kept screen, su, and sudo, which I feel are reasonable apps for secadm to use. -- Chris PeBenito Tresys Technology, LLC (410) 290-1411 x150