[gentoo-hardened] Update on SELinux eclass to support different git repo or branch

2014-08-06 Thread Sven Vermeulen
Hi all Our live sec-policy/selinux-* packages (the ones with the - version) have been using our git repository for some time. Although users could always override these with packagename_LIVE_REPO, it meant that they had to generate such variables for each and every sec-policy/ package out ther

Re: [gentoo-hardened] Update on SELinux eclass to support different git repo or branch

2014-08-06 Thread Jason Zaman
On 6 Aug 2014 12:30, "Sven Vermeulen" wrote: > > Hi all > > Our live sec-policy/selinux-* packages (the ones with the - version) > have been using our git repository for some time. Although users could > always override these with packagename_LIVE_REPO, it meant that they had to > generate suc

Re: [gentoo-hardened] Update on SELinux eclass to support different git repo or branch

2014-08-06 Thread Sven Vermeulen
On Wed, Aug 06, 2014 at 12:42:50PM +0400, Jason Zaman wrote: > > As that is a big nuisance (and you should also not forget to substitute "-" > > with "_" in that case) I added two more variables in the SELinux eclass to > > make this a lot simpler: > > > > SELINUX_GIT_REPO can now point to a differ

Re: [gentoo-hardened] Help testing full end-to-end xattr support in portage

2014-08-06 Thread Jason Zaman
On Tue, Aug 05, 2014 at 05:48:23AM +0300, Alex Efros wrote: > Hi! > > On Thu, Jun 26, 2014 at 08:57:12AM -0400, Anthony G. Basile wrote: > > Thanks Alex, perfinion hit this bug and fixed it. Can you test with > > install-xattr-. I don't want to push out a minor bump just for one > > patch

Re: [gentoo-hardened] Update on SELinux eclass to support different git repo or branch

2014-08-06 Thread Luis Ressel
That sounds great! Up to now, I compiled and loaded my patched policy manually, but I think I'll switch over to using the -'s and configuring them to use my own repo. Regards, Luis signature.asc Description: PGP signature

Re: [gentoo-hardened] Help testing full end-to-end xattr support in portage

2014-08-06 Thread Alex Efros
Hi! On Wed, Aug 06, 2014 at 01:21:56PM +0400, Jason Zaman wrote: > install-xattr-0.3 has all the fixes in it and is stable on most arches > already. Portage 2.2.11 has the patch to use it too and is ~ still so > you do not need to patch anything manually anymore. > > It has been working for me th

Re: [gentoo-hardened] SELinux userspace patches in hardened-dev?

2014-08-06 Thread Amadeusz Sławiński
On Tue, 5 Aug 2014 12:47:32 + Sven Vermeulen wrote: > Hi all > > Is it ok if I create a branch in the hardened-dev repo (called > "selinux-userland") which contains the patches for the various SELinux > userland packages we maintain? > > Or would you prefer a different way to centrally mana

Re: [gentoo-hardened] SELinux userspace patches in hardened-dev?

2014-08-06 Thread Luis Ressel
On Wed, 6 Aug 2014 11:50:35 +0200 Amadeusz Sławiński wrote: > On Tue, 5 Aug 2014 12:47:32 + > Sven Vermeulen wrote: > > > Hi all > > > > Is it ok if I create a branch in the hardened-dev repo (called > > "selinux-userland") which contains the patches for the various > > SELinux userland pa