Package: selinux-policy-refpolicy-targeted
Version: 0.0.20061018-1
Severity: normal


Tried the targeted refpolicy on dcc-client/dcc-common tonight.  Many of the
files in these packages are overlooked when labelling files, because
refpolicy's dcc module stipulates paths not consistent with the Debian FHS
layout.  The files go unlabelled and dcc-client (at least) stops working.

The two major problems I can see in policy/modules/services/dcc.fc are the
references to /usr/libexec/dcc (damons, placed in /usr/sbin by the Debian
packages) and to /var/dcc (all sorts of things, placed under /var/lib/dcc).  A
side effect of the latter is that dccifd_t and probably domains need search on
var_lib_t, through which it must pass to get to /var/lib/dcc.



-- System Information:
Debian Release: 4.0
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: amd64 (x86_64)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-3-amd64
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)

Versions of packages selinux-policy-refpolicy-targeted depends on:
ii  libpam-modules                0.79-4     Pluggable Authentication Modules f
ii  libselinux1                   1.32-3     SELinux shared libraries
ii  policycoreutils               1.32-1     SELinux core policy utilities
ii  python                        2.4.4-1    An interactive high-level object-o

Versions of packages selinux-policy-refpolicy-targeted recommends:
ii  checkpolicy                   1.32-1     SELinux policy compiler
pn  setools                       <none>     (no description available)

-- debconf-show failed


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to