Nvidia and SElinux

drago01 drago01 at gmail.com
Mon Oct 27 19:38:47 UTC 2008


On Mon, Oct 27, 2008 at 8:21 PM, Daniel J Walsh <dwalsh at redhat.com> wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Chuck Forsberg WA7KGX N2469R wrote:
>> The Nvidia X driver is a "killer application".  Can't get the
>> card fan to quiet down without it.  Cen't get compiz running
>> without it.  Some apps such as Flightgear aren't usable without it.
>>
>> Integrated motherboard graphics I've seen are too slow.
>> Not an answer except for servers people hardly look at.
>>
>> Assuming SElinux provides an important level of real world
>> protection, it needs to work in the desktop world.  If SElinux
>> is that important it shouldn't be such a hassle that only server
>> admins will put up with it.
>>
> If you want to run SELinux and NVidia libraries and propretary blobs you
> will need to turn off execstack protection.
>
> # setsebool -P allow_execstack 1

is it possible to enable it only for specific libs? if yes maybe
nvidia can fix up their installer / rpmfusion can fix their packages.




More information about the test mailing list