All of lore.kernel.org
 help / color / mirror / Atom feed
* transition policy/logic for shell-, perl- and python-scripts
@ 2008-12-27  9:34 Stefan Schulze Frielinghaus
  2008-12-27 11:19 ` Daniel J Walsh
       [not found] ` <5aebb9fb0812270301n5dacfe0dr73a71650e1a3c3a0@mail.gmail.com>
  0 siblings, 2 replies; 4+ messages in thread
From: Stefan Schulze Frielinghaus @ 2008-12-27  9:34 UTC (permalink / raw)
  To: selinux

Hello everyone,

I would like to know the policy/logic for transition of e.g. a
Perl-Script. If I write a daemon in Perl, label the file as
daemon_exec_t and execute it using the initrc_t, then the daemon runs
under the daemon_t domain. This SELinux behavior is very convenient.

I would like to know when and how does a transition for such a script
occur?

For example, create a /tmp/test.pl and run it. The file is labeled as 

unconfined_u:object_r:user_tmp_t:s0

but runs as

unconfined_u:unconfined_r:unconfined_t:s0

Therefore, no type transition occurred. Can someone give me a hind?

cheers,
Stefan


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2009-01-05 15:47 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2008-12-27  9:34 transition policy/logic for shell-, perl- and python-scripts Stefan Schulze Frielinghaus
2008-12-27 11:19 ` Daniel J Walsh
     [not found] ` <5aebb9fb0812270301n5dacfe0dr73a71650e1a3c3a0@mail.gmail.com>
2008-12-27 19:04   ` Stefan Schulze Frielinghaus
2009-01-05 15:47     ` Stephen Smalley

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.