Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-29 Thread Cor Legemaat
On 02/28/12 20:48, Sven Vermeulen wrote: > On Tue, Feb 28, 2012 at 06:47:02PM +0200, Cor Legmaat wrote: >> ~ #ls -Z /usr/sbin/gdm >> system_u:object_r:bin_t /usr/sbin/gdm >> >> selinux-xserver wasn't installed, I installed it now. > Explains why it is mislabeled; the xdm_exec_t label can only be us

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-28 Thread Sven Vermeulen
On Tue, Feb 28, 2012 at 06:47:02PM +0200, Cor Legmaat wrote: > ~ #ls -Z /usr/sbin/gdm > system_u:object_r:bin_t /usr/sbin/gdm > > selinux-xserver wasn't installed, I installed it now. Explains why it is mislabeled; the xdm_exec_t label can only be used (and set) when that module is loaded. > ~ #

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-28 Thread Cor Legmaat
On 02/27/12 23:57, Hinnerk van Bruinehsen wrote: > On 27.02.2012 21:15, Sven Vermeulen wrote: > > On Mon, Feb 27, 2012 at 09:53:41PM +0200, Cor Legmaat wrote: > This is what I get with gnome-terminal: > > cor@k53s ~ $ id -Z system_u:system_r:initrc_t cor@k53s ~ $ > > ssh 127.0.0.1 Last

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Hinnerk van Bruinehsen
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 27.02.2012 21:15, Sven Vermeulen wrote: > On Mon, Feb 27, 2012 at 09:53:41PM +0200, Cor Legmaat wrote: This is what I get with gnome-terminal: > cor@k53s ~ $ id -Z system_u:system_r:initrc_t cor@k53s ~ $ > ssh 127.0.0.1 Last login: Mon

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Sven Vermeulen
On Mon, Feb 27, 2012 at 09:53:41PM +0200, Cor Legmaat wrote: > >> This is what I get with gnome-terminal: > >>> cor@k53s ~ $ id -Z > >>> system_u:system_r:initrc_t > >>> cor@k53s ~ $ ssh 127.0.0.1 > >>> Last login: Mon Feb 27 20:01:41 SAST 2012 from k53s.cor.za.net on pts/1 > >>> cor@k53s ~ $ id -Z

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Cor Legmaat
On 02/27/12 21:44, Sven Vermeulen wrote: > On Mon, Feb 27, 2012 at 09:36:55PM +0200, Cor Legmaat wrote: >> Hi all: >> >> I have an Selinux enabled system running gnome 3.2 and gdm. My whole >> profile is mapped to staff_u as recommended by the Selinux manual. When >> I login true gdm I am logged in

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Sven Vermeulen
On Mon, Feb 27, 2012 at 09:36:55PM +0200, Cor Legmaat wrote: > Hi all: > > I have an Selinux enabled system running gnome 3.2 and gdm. My whole > profile is mapped to staff_u as recommended by the Selinux manual. When > I login true gdm I am logged in as system_u and when I login true ssh it > is