ReiserFS chicken and egg

Stephen Smalley sds at tycho.nsa.gov
Wed Mar 29 12:43:04 UTC 2006


On Wed, 2006-03-29 at 06:27 -0600, Ian Pilcher wrote:
> Stephen Smalley wrote:
> > Sorry, reiserfs xattrs are known to be broken with SELinux at present,
> > because reiserfs doesn't yet implement the inode_init_security method
> > for labeling new inodes atomically at creation time.  As a workaround,
> > mount it with a context= mount to override the use of xattrs.
> 
> I tried context=system_u:object_r:file_t:s0 and got the same error.  Is
> there something else I should be using?

By the "same error", you mean another avc denial for search access to
unlabeled_t:dir by mount_t?  Did you get a SELinux:  initialized (dev
xxx, type reiserfs), uses mountpoint labeling message
in /var/log/messages?

-- 
Stephen Smalley
National Security Agency




More information about the selinux mailing list