Why can not user_t link var_lib_t files?

Göran Uddeborg goeran at uddeborg.se
Mon May 18 18:11:08 UTC 2009


Daniel J Walsh writes:
> Yes user_u is not that restrictive, but the idea is a managed user.  I 
> would tend to think of  user who does few commands with the shell.

Ok.  The typical GUI user would probably not trigger this, I agree.

> But please attach the avc's you are seeing?

I retriggered it, and attach the mail setroubleshoot sent me.

> The directory in question might need a different label.

Yes, I was planning to add some fcontext rule for it.  A custom rule
for a custom directory.

-------------- next part --------------
An embedded message was scrubbed...
From: unknown sender
Subject: no subject
Date: no date
Size: 17650
Url: http://lists.fedoraproject.org/pipermail/selinux/attachments/20090518/061060cf/attachment.mht 


More information about the selinux mailing list