From: Daniel J Walsh <dwalsh@redhat.com>
To: SE Linux <selinux@tycho.nsa.gov>, Todd Miller <tmiller@tresys.com>
Subject: One more problem with genhomedircon replacement.
Date: Thu, 04 Oct 2007 09:39:04 -0400 [thread overview]
Message-ID: <4704ECF8.8050708@redhat.com> (raw)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Shadow-utils and perhaps others execute genhomedircon when adding users
or modifying the homedir. They are blowing up because the executable
genhomedircon no longer exists. I would like to just put out a script
that would call semanage to tell it to run the semanage_genhomedircon().
I also think it is useful to have the ability to execute this without a
rebuild/reload of policy for when the admin executes vipw or any other
way of adding a user to the system
But there are no Python bindings and no way to call this via semodule.
I can call semanage -Bn, but this is slow and cumberson.
I looked into why semanage_genhomedircon is not in a python binding, but
it uses sepol_policydb_t * policydb, which we would need to build.
So what is the best way to do this?
Dan
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org
iD8DBQFHBOz4rlYvE4MpobMRAhPkAKCO4WCyQYQyxkSyfOOufo77HtgaCgCeMatS
f6pmBcQoObZevpjtTdCFMHo=
=wCF/
-----END PGP SIGNATURE-----
--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
next reply other threads:[~2007-10-04 13:39 UTC|newest]
Thread overview: 2+ messages / expand[flat|nested] mbox.gz Atom feed top
2007-10-04 13:39 Daniel J Walsh [this message]
2007-10-04 21:45 ` One more problem with genhomedircon replacement Todd Miller
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=4704ECF8.8050708@redhat.com \
--to=dwalsh@redhat.com \
--cc=selinux@tycho.nsa.gov \
--cc=tmiller@tresys.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.