Well pam_namespace is just mounting on top of /tmp and /var/tmp, I
believe. While I think pulseaudio uses just
/dev/shm.
Since pulseaudio runs in the users space, I have no idea why it would
not work.
On 11/05/2014 06:42 AM, george karakou wrote:
On 11/04/2014 11:07 PM, Daniel J Walsh wrote:
>
> On 11/02/2014 06:19 AM, george karakou wrote:
>> So i enabled polyinstatiation and everything seems to run smoothly
>> except from pulseaudio. The weird thing is i dont get any denials from
>> selinux at all. And everything seems to be working. The pulseaudio
>> daemon is running but i dont get the cards to be recognized. Tried all
>> the troubleshooting from fedoraproject wiki to no avail. I guess it
>> has something to do with /tmp-inst and .esd permissions.
>> --
>> selinux mailing list
>> selinux(a)lists.fedoraproject.org
>>
https://admin.fedoraproject.org/mailman/listinfo/selinux
> Does it work in permissive mode?
>
>
>
No it doesnt.
It only works if i polyinstantiate only the $HOME dirs for my 2
users(a staff_u and an xguest_u one) and to make it work i have to
manually kill and start pulseaudio from a terminal atfer the DE has
finished loading and i am represented with a kde or gnome session.
I dont know if it has anything to do with /tmp mounted as tmpfs from
systemd's tmp.mount unit. I tried to disable and mask it but system
became unbootable and i reverted back to tmp as tmpfs. I really have
no other hints either from audit logs or from dmesg/syslog output.
--
selinux mailing list
selinux(a)lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/selinux