All of lore.kernel.org
 help / color / mirror / Atom feed
* I think this might be a bug.
@ 2010-03-04 18:40 Daniel J Walsh
  2010-03-04 20:24 ` Stephen Smalley
  0 siblings, 1 reply; 4+ messages in thread
From: Daniel J Walsh @ 2010-03-04 18:40 UTC (permalink / raw)
  To: SELinux

If I have a program that calls setfscreatecon on a directory that has a 
transition, the transition rule wins.  I think the setfscreatecon should 
win.

Sandbox creates a .sandboxRANDOM directory in the current working 
directory with setfscreatecon, If I do this in ~dwalsh  It does not 
work.  If I do it in ~dwalsh/.sandbox or /tmp or any directory other 
then my homedir toplevel it works.

Here is a python script that shows the behaviour

#!/usr/bin/python
from tempfile import mkdtemp
import selinux, os
selinux.setfscreatecon("staff_u:object_r:sandbox_x_file_t:s0:c1")
homedir = mkdtemp(dir="~/.sandbox", prefix=".sandbox")
print selinux.getfscreatecon()
print homedir



--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2010-03-05  4:34 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2010-03-04 18:40 I think this might be a bug Daniel J Walsh
2010-03-04 20:24 ` Stephen Smalley
2010-03-04 20:38   ` Stephen Smalley
2010-03-05  4:34     ` Eric Paris

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.