SELinux and Shorewall with IPSets (FC14)

Mr Dash Four mr.dash.four at googlemail.com
Mon Jan 17 13:22:44 UTC 2011


> I think its probably best to just report this issue to
> bugzilla.redhat.com/f14/selinux-policy so that it can be fixed.
>   
Submitted a bug report: https://bugzilla.redhat.com/show_bug.cgi?id=670180.

On a separate note, I was (finally) able to build the new kernel (after 
much arguing with some of the kernel devs on that mailing list) and I 
now have a hybrid: FC13 core system with FC14 kernel.

I plan to add the new version of iptables with the latest (FC15-rawhide) 
fixes in the coming days. That iptables version would be extremely 
useful to me as it adds some very important features (incorporating 
ipset kernel modules within the kernel space, introducing new AUDIT 
target - just to name a few), so I am hoping to make full use of this 
until FC15 comes around, hopefully in the summer.



More information about the selinux mailing list