No description
Find a file
Russell Coker d784fd71b5 libsemanage: patch for MCS/MLS in user files
The attached patch makes the
/etc/selinux/default/contexts/files/file_contexts.homedirs generation process
include the MCS/MLS level.

This means that if you have a user with a MCS/MLS level that isn't SystemLow
then their home directory will be labeled such that they can have read/write
access to it by default.

Unless anyone has any better ideas for how to solve this problem I will upload
this to Debian shortly.

What do the MLS users do in this situation?  Just relabel home directories
manually?

Finally it seems that when you run "semanage user -m" the
file_contexts.homedirs doesn't get updated, it's only when you run
"semanage login -m" that it takes affect.

Signed-off-by: Eric Paris <eparis@redhat.com>
Acked-by: Russell Coker <russell@coker.com.au>
Acked-by: Dan Walsh <dwalsh@redhat.com>
2011-08-11 23:35:52 -04:00
checkpolicy checkpolicy: add missing ; to attribute_role_def 2011-08-11 13:21:44 -04:00
libselinux libselinux: mapping fix for invalid class/perms after selinux_set_mapping call 2011-08-11 23:35:52 -04:00
libsemanage libsemanage: patch for MCS/MLS in user files 2011-08-11 23:35:52 -04:00
libsepol update repo for 2011-08-03 with version and changelog updates 2011-08-03 18:09:02 -04:00
policycoreutils update repo for 2011-08-03 with version and changelog updates 2011-08-03 18:09:02 -04:00
scripts release script 2009-03-12 01:23:32 -04:00
sepolgen Minor version bump for release 2011-07-27 15:32:54 -04:00
.gitignore Repo: update .gitignore 2011-08-02 13:31:51 -04:00
Makefile initial import from svn trunk revision 2950 2008-08-19 15:30:36 -04:00