On Saturday, February 12, 2011 @12:46 zulu, Tim 
<ignored_mail...@yahoo.com.au> scribed:

> Well, it /could/ stop either threat, however we don't run SELinux
> as tightly as it could be run.

I'm not sure who "we" is, but I run it in restricted mode and rarely even 
get told something has mislabeled files... and when I do get such a message, 
an autorelabel and reboot nearly-always fixes it (I don't mind rebooting 
once a month or so... else I would SU - and change their context manually). 
I don't remember the last time I got an actual denial. More than a year ago, 
for sure.

For as many complaints as I see about SElinux in this list, I wonder why 
those posters don't step up over in the SELinux list and tell their woes... 
because I've never seen anyone there not get their problems fixed when they 
simply followed the steps given (even if the step was eventually where to 
file the bugzilla... then either the app got fixed or a new policy 'fixed' 
it). 

-- 
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines

Reply via email to