[RFC] Adding --force option to semodule

Shintaro Fujiwara shintaro.fujiwara at gmail.com
Sat Mar 15 02:07:57 UTC 2014


Hi, I was updating a policy because I had to add some permissions.

So, I added number in .te file and successfully upgraded mypolicy.

semodule -u mypolicy.pp

5 minutes later, I found another permission should have been added to
mypolicy.pp so I added it and .te number remains the same.

Yes, I should have added permissions at one time and make no haste.

But, isn't it convenient to add --force option to semodule ?
Now, if the number is the same, I get this error.

[root at localhost xx]# semodule -u mypolicy.pp
libsemanage.get_direct_upgrade_filename: Previous module mypolicy is same
or newer. (No such file or directory).






-- 
日本にヘヴィメタル・ハードロックを根付かせるページ
http://heavymetalhardrock.no-ip.info/ <http://www.heavymetalhardrock.tk/>

世界中でセキュアOSのSELinuxを使いやすくするフリーソフト
http://sourceforge.net/projects/segatex/

CMS(PHPとPostgreSQLを使ったフリーソフト)
http://sourceforge.net/projects/webon/
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.fedoraproject.org/pipermail/selinux/attachments/20140315/3dfafa0e/attachment.html>


More information about the selinux mailing list