All of lore.kernel.org
 help / color / mirror / Atom feed
* "new" SELinux 2.4.22 UML kernel patch + sample Debian filesystem
@ 2003-12-02  6:50 Colin Walters
  2003-12-03 23:21 ` Colin Walters
  2003-12-05 10:05 ` samwun
  0 siblings, 2 replies; 5+ messages in thread
From: Colin Walters @ 2003-12-02  6:50 UTC (permalink / raw)
  To: selinux

[-- Attachment #1: Type: text/plain, Size: 931 bytes --]

Hi,

I've merged the 2.4.22 LSM patch in Russell's Debian kernel patches with
the latest 2.4.22 UML bits, and placed the result here:

http://web.verbum.org/selinux/uml/

Additionally, I've created a roomy 350MB Debian sid image (which gzipped
into just 370kb), set up with the latest Debian sid SELinux packages. 
It seems to work fine even in enforcing mode.  I had to disable bootlogd
though.

It's a great way to play around with SELinux, especially if you use
UML's copy-on-write filesystem bits.  That way if you mess something up,
you can just delete your COW file and restart from the base image.

One tip: you will likely want to give your UML at least 64MB of ram;
setfiles seems to be summarily executed by the OOM killer with less. 
Here's how I'm booting the UML:

walters@nexus> ./linux enforcing=1 mem=64M ubd0=/build/uml/debian-se-work.img,/build/uml/debian-se.img eth0=tuntap,tap0

Enjoy!


[-- Attachment #2: This is a digitally signed message part --]
[-- Type: application/pgp-signature, Size: 189 bytes --]

^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2003-12-05 14:30 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-12-02  6:50 "new" SELinux 2.4.22 UML kernel patch + sample Debian filesystem Colin Walters
2003-12-03 23:21 ` Colin Walters
2003-12-04  2:47   ` Tom
2003-12-05 10:05 ` samwun
2003-12-05 12:53   ` Colin Walters

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.