From: Daniel J Walsh <dwalsh@redhat.com>
To: "Christopher J. PeBenito" <cpebenito@tresys.com>,
SE Linux <selinux@tycho.nsa.gov>
Subject: Latest updates
Date: Thu, 31 Aug 2006 15:16:30 -0400 [thread overview]
Message-ID: <44F7358E.4010101@redhat.com> (raw)
[-- Attachment #1: Type: text/plain, Size: 1467 bytes --]
Amanda changes, not sure why you didn't take them last time
Fixing some labels to march what actually ends up on disk see /boot/grub
Change firstboot to create etc_runtime_t instead of firstboot_rw_t.
Please change /opt java line to match what IBM ships
mono apps want to create files in homedirs so they need to transition
(beagle)
In corecommands prelink also creates lnk_file, when it recreates
executables.
/dev/adsp can have numbers
/etc/reader.conf gets created in install with etc_runtime_t
gfs supports xattr
/dev/xvc is a new kind of tty for xen
Lots of domains need term_dontaudit_use_unallocated_ttys for startup
from a tty.
Apache uses ldap
bluetooth_helper started for startx needs some more privs
crontab changes for setting MLS values.
dovecot wants to read some files labeled var_t.
ldap uses a socket to communicate
NetworkManager wants to ptrace itself
setroubleshootd should be added.
spamassasin neess to be able to create a directory in the users homedir
Need a transition for keygen for anaconda to create keys with the
correct context.
stunnel reads route table
and connects to smtp
X No longer needs execstack, execheap, execmem
hotplug needs setpgid
auditd_sock changed names to audit_events
Added loopback_t to allow you to define loopback devices and have mount
read them
Changes to semanage
/usr/lib/ia32el/ia32x_loader needs to run unconfined_execmem_t if we
have any hope of turning off allow_execmem
[-- Attachment #2: diff.bz2 --]
[-- Type: application/x-bzip, Size: 13908 bytes --]
next reply other threads:[~2006-08-31 19:16 UTC|newest]
Thread overview: 11+ messages / expand[flat|nested] mbox.gz Atom feed top
2006-08-31 19:16 Daniel J Walsh [this message]
2006-09-01 15:51 ` Latest updates Christopher J. PeBenito
2006-09-01 17:32 ` Eric Paris
2006-09-01 19:45 ` Daniel J Walsh
2006-09-04 15:15 ` Christopher J. PeBenito
2006-09-04 22:59 ` Russell Coker
2006-09-05 20:57 ` Daniel J Walsh
2006-09-11 9:49 ` Erich Schubert
2006-09-11 14:11 ` Christopher J. PeBenito
-- strict thread matches above, loose matches on Subject: below --
2006-04-11 13:25 Latest Updates Daniel J Walsh
2006-04-12 17:01 ` Christopher J. PeBenito
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=44F7358E.4010101@redhat.com \
--to=dwalsh@redhat.com \
--cc=cpebenito@tresys.com \
--cc=selinux@tycho.nsa.gov \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.