[gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Cor Legmaat
Hi all: I have an Selinux enabled system running gnome 3.2 and gdm. My whole profile is mapped to staff_u as recommended by the Selinux manual. When I login true gdm I am logged in as system_u and when I login true ssh it is correct. This is what I get with gnome-terminal: > cor@k53s ~ $ id -Z >

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Sven Vermeulen
On Mon, Feb 27, 2012 at 09:36:55PM +0200, Cor Legmaat wrote: > Hi all: > > I have an Selinux enabled system running gnome 3.2 and gdm. My whole > profile is mapped to staff_u as recommended by the Selinux manual. When > I login true gdm I am logged in as system_u and when I login true ssh it > is

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Cor Legmaat
On 02/27/12 21:44, Sven Vermeulen wrote: > On Mon, Feb 27, 2012 at 09:36:55PM +0200, Cor Legmaat wrote: >> Hi all: >> >> I have an Selinux enabled system running gnome 3.2 and gdm. My whole >> profile is mapped to staff_u as recommended by the Selinux manual. When >> I login true gdm I am logged in

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Sven Vermeulen
On Mon, Feb 27, 2012 at 09:53:41PM +0200, Cor Legmaat wrote: > >> This is what I get with gnome-terminal: > >>> cor@k53s ~ $ id -Z > >>> system_u:system_r:initrc_t > >>> cor@k53s ~ $ ssh 127.0.0.1 > >>> Last login: Mon Feb 27 20:01:41 SAST 2012 from k53s.cor.za.net on pts/1 > >>> cor@k53s ~ $ id -Z

Re: [gentoo-hardened] Gnome wrong Selinux user role.

2012-02-27 Thread Hinnerk van Bruinehsen
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 27.02.2012 21:15, Sven Vermeulen wrote: > On Mon, Feb 27, 2012 at 09:53:41PM +0200, Cor Legmaat wrote: This is what I get with gnome-terminal: > cor@k53s ~ $ id -Z system_u:system_r:initrc_t cor@k53s ~ $ > ssh 127.0.0.1 Last login: Mon

[gentoo-hardened] SELinux base policy rev 3 in hardened-dev

2012-02-27 Thread Sven Vermeulen
Hi guys, Back again with the spamming "SELinux base policy rev ## in hardened-dev" mails, but now for the 2.20120215 policies. Changes since rev 2: Allow sysadm to call qemu directly to launch virtual guests from commandline Allow su to get the security file system attributes, n

[gentoo-hardened] Meeting log 2012-02-22 20:00UTC

2012-02-27 Thread Magnus Granberg
Log from the meeting /Magnus[21:10:04] 1.0 new dev [21:10:08] I am going to disappear a short moment, gotta put the TP cable differently :P [21:10:12] welcome to lejonet [21:10:24] <-* prometheanfire has kicked lejonet from #gentoo-hardened (lejonet) [21:10:32] :) [21:10:37] welcome in all th