From: Tracy R Reed <treed@ultraviolet.org>
To: selinux@tycho.nsa.gov
Subject: SE Linux on Debian
Date: Tue, 1 Oct 2002 15:36:38 -0700 [thread overview]
Message-ID: <20021001153638.J5416@ultraviolet.org> (raw)
[-- Attachment #1: Type: text/plain, Size: 2134 bytes --]
I am trying to get SE Linux working on my debian system. I've been running
RedHat for years and I'm somewhat new to debian. :) I am running testing.
I installed 2.4.19 and the lsm-new-2002082308-2.4.19.patch.12.gz with
apt-get also. The kernel is running just fine. But I am having trouble
with the policy and utils.
I installed the debs with apt-get from:
deb http://www.microcomaustralia.com.au/debian/ stable selinux
because that is what is in the topic on the IRC channel. Is it ok to
install these from stable even though my distro is actually testing?
Here are the debs:
libselinux-dev
selinux
selinux-policy-default
But the new ps, ls, sshd, etc. do not seem to be included here. Where do I
get those? Are they not in a deb?
When I installed the new policy it asked a lot of questions such as:
Setting up selinux-policy-default (2002082308-4.bam.1) ...
File "domains/program/apache.te" changed.
Copy/Ignore/Always ignore/view Diff [c/I/a/d]?
I said Copy to all of them. I'm not running all of that but I will be
playing with various different things so I want the latest policies
installed. When it was done asking questions I got this error:
/usr/sbin/checkpolicy: loading policy configuration from /etc/security/selinux/src/policy.conf
ERROR 'parse error' at token 'run_program' on line 71322:
run_program(sysadm_t, sysadm_r, deb, dpkg_exec_t, dpkg_t)
#
/usr/sbin/checkpolicy: error(s) encountered while parsing configuration
make: *** [/etc/security/selinux/policy.12] Error 1
dpkg: error processing selinux-policy-default (--configure):
subprocess post-installation script returned error exit status 2
Errors were encountered while processing:
selinux-policy-default
E: Sub-process /usr/bin/dpkg returned an error code (1)
Whenever I install a new package apt-get tries to recompile the policy
(why?) and I get the same error.
Any help is greatly appreciated!
--
Tracy Reed http://www.ultraviolet.org
"Our products just aren't engineered for security." - Brian Valentine,
senior VP in charge of Microsoft's Windows development 5 Sept 2002
[-- Attachment #2: Type: application/pgp-signature, Size: 240 bytes --]
next reply other threads:[~2002-10-01 22:37 UTC|newest]
Thread overview: 19+ messages / expand[flat|nested] mbox.gz Atom feed top
2002-10-01 22:36 Tracy R Reed [this message]
2002-10-02 0:01 ` SE Linux on Debian Russell Coker
2002-10-02 0:54 ` Tracy R Reed
2002-10-02 8:36 ` Russell Coker
2002-10-02 1:48 ` Brian May
2002-10-02 5:10 ` Tracy R Reed
2002-10-02 5:42 ` Tom
2002-10-02 6:17 ` Brian May
2002-10-02 6:27 ` Tracy R Reed
2002-10-02 7:20 ` Tom
2002-10-02 7:30 ` Tracy R Reed
2002-10-02 8:50 ` Russell Coker
2002-10-02 8:52 ` Russell Coker
2002-10-02 6:50 ` Tracy R Reed
2002-10-02 7:24 ` Tom
2002-10-02 8:54 ` Russell Coker
2002-10-02 21:31 ` Brian May
2002-10-02 21:42 ` Russell Coker
2002-10-02 22:10 ` Brian May
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20021001153638.J5416@ultraviolet.org \
--to=treed@ultraviolet.org \
--cc=selinux@tycho.nsa.gov \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.