SSSD Local Auth and SELinux support

Daniel J Walsh dwalsh at redhat.com
Tue Jul 5 16:23:09 UTC 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 06/30/2011 06:47 PM, Matthew Ife wrote:
> Heres a patch I built in main policy for F15 that removes macros using
> except_shadow and replaces them with except_auth_file.
> 
> It adds a new attribute declared in authlogin.te called
> "authentication_file_type" and a new macro in files.te called
> "files_authentication_file" to add the attribute for the file.
> 
> shadow_t has an authentication_file_type.
> 
> Dont *think* I broke anything with this patch.
> 
> My git skills are poor but this diff produces the changes I had made.
> 
> 
> 
> --
> selinux mailing list
> selinux at lists.fedoraproject.org
> https://admin.fedoraproject.org/mailman/listinfo/selinux
Please send this patch to upstream refpolicy.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org/

iEYEARECAAYFAk4TOm0ACgkQrlYvE4MpobNBXACg1LL+RejIfhFyjU9VTJO7t+/O
rtQAoMuLRjQ5yr2m+I0BS8gz7ROo073x
=Z3Mm
-----END PGP SIGNATURE-----


More information about the selinux mailing list