All of lore.kernel.org
 help / color / mirror / Atom feed
* Is there strict policy for fedora 10?
@ 2009-04-07 15:24 sixiaolin0
  2009-04-07 16:24 ` Dominick Grift
  2009-04-07 16:32 ` Daniel J Walsh
  0 siblings, 2 replies; 3+ messages in thread
From: sixiaolin0 @ 2009-04-07 15:24 UTC (permalink / raw)
  To: selinux

[-- Attachment #1: Type: text/plain, Size: 196 bytes --]



hello everyone!
  I want to ask  if there is strict policy for FC10.
  
 
  And could you tell me where and  how I can see the policy file without using a policy tools?
 
thank you very much!
  

[-- Attachment #2: Type: text/html, Size: 489 bytes --]

^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: Is there strict policy for fedora 10?
  2009-04-07 15:24 Is there strict policy for fedora 10? sixiaolin0
@ 2009-04-07 16:24 ` Dominick Grift
  2009-04-07 16:32 ` Daniel J Walsh
  1 sibling, 0 replies; 3+ messages in thread
From: Dominick Grift @ 2009-04-07 16:24 UTC (permalink / raw)
  To: sixiaolin0; +Cc: selinux

On Tue, 2009-04-07 at 23:24 +0800, sixiaolin0 wrote:
> 
> 
> hello everyone!
>   I want to ask  if there is strict policy for FC10.

The strict policy module and the targeted policy module merged.
You can now enjoy the strict functionality in Fedoras'
selinux-policy-targeted.

>  
>   And could you tell me where and  how I can see the policy file
> without using a policy tools?

You can download the source RPM, prepare it and view it with your
favorite editor

wget
http://kojipkgs.fedoraproject.org/packages/selinux-policy/3.5.13/55.fc10/src/selinux-policy-3.5.13-55.fc10.src.rpm

tar -xzvf selinux-policy-3.5.13-55.fc10.src.rpm

cp selinux-policy-3.5.13-55.fc10.src/*patch .; cp
selinux-policy-3.5.13-55.fc10.src/*.tgz .

tar -xzvf seref*.tgz

patch -p0 <*.patch

cd serefpolicy*


> thank you very much!
>   
> 
> 
> 
> ______________________________________________________________________
> 网易邮箱,中国第一大电子邮件服务商


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: Is there strict policy for fedora 10?
  2009-04-07 15:24 Is there strict policy for fedora 10? sixiaolin0
  2009-04-07 16:24 ` Dominick Grift
@ 2009-04-07 16:32 ` Daniel J Walsh
  1 sibling, 0 replies; 3+ messages in thread
From: Daniel J Walsh @ 2009-04-07 16:32 UTC (permalink / raw)
  To: sixiaolin0; +Cc: selinux

[-- Warning: decoded text below may be mangled, UTF-8 assumed --]
[-- Attachment #1: Type: text/plain; charset=x-gbk; format=flowed, Size: 693 bytes --]

On 04/07/2009 11:24 AM, sixiaolin0 wrote:
>
> hello everyone!
>    I want to ask  if there is strict policy for FC10.
>
>
>    And could you tell me where and  how I can see the policy file without using a policy tools?
>
> thank you very much!
>
F10 has Strict/Targeted policy combined so, you can use confined users 
on a targeted f10 machine.

If you remove the unconfined.pp you can get the equivalent of strict.

But what exactly are you looking for with Strict policy.

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2009-04-07 16:33 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-04-07 15:24 Is there strict policy for fedora 10? sixiaolin0
2009-04-07 16:24 ` Dominick Grift
2009-04-07 16:32 ` Daniel J Walsh

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.