All of lore.kernel.org
 help / color / mirror / Atom feed
* Fedora Targeted List grows on Rawhide.
@ 2004-12-20 20:09 Daniel J Walsh
  0 siblings, 0 replies; only message in thread
From: Daniel J Walsh @ 2004-12-20 20:09 UTC (permalink / raw)
  To: Fedora SELinux support list for users & developers., SE Linux

I have added several targets to Targeted Policy as of 
selinux-policy-targeted-1.19.14-2. 
I am attempting to add most of the network daemons to targeted.  In 
order to experiment with this new
policy file, you will need to relabel.  Or you can just relabel the 
target you are interested in.

The best way to do this is install the policy and then execute

rpm -q -l TARGETRPM | restorecon -R -f -

Current targets

amanda.te apache.te cups.te dhcpd.te dictd.te dovecot.te fingerd.te 
ftpd.te howl.te i18n_input.te inetd.te innd.te kerberos.te ktalkd.te 
ldconfig.te lpd.te mailman.te modutil.te mta.te mysqld.te named.te 
nscd.te ntpd.te portmap.te postgresql.te privoxy.te radius.te radvd.te 
rpcd.te rshd.te rsync.te samba.te slapd.te snmpd.te spamd.te squid.te 
stunnel.te syslogd.te tftpd.te winbind.te ypbind.te ypserv.te zebra.te

This is not a commitment for this list in FC4, some could be pulled if 
they don't work well :*).

The goal of targeted policy is to protect all network daemons and to 
allow userspace to run with normal privs.    You still need strict 
policy to confine userspace.

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2004-12-20 20:09 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-12-20 20:09 Fedora Targeted List grows on Rawhide Daniel J Walsh

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.