one-script policy

m.roth at 5-cent.us m.roth at 5-cent.us
Tue Nov 12 22:07:06 UTC 2013


Dominick Grift wrote:
> On Tue, 2013-11-12 at 16:47 -0500, m.roth at 5-cent.us wrote:
>>
>> Anyway, it wasn't instantly clear to me that I needed to create a .te -
>> I thought it was coming out of that first step. Also, if I create it using
>> grep avc /var/log/audit/audit.log | grep sudo | audit2allow, what I see
>> is for httpd_sys_script_t, and I *don't* want *all* scripts with that type
>> to have the same rights. Do I make a new name there?
>
> My instructions should have just worked. I suggest you try again.
>
*sigh*
vi <myapp.te>

No, nothing here wrong...
 apache_content_template(myapp>
No, no, ( matches > ... no typos.... <g>

Thanks, and that worked, once I'd made a minor edit....

      mark





More information about the selinux mailing list