|
From: richard -r. w. <ric...@gm...> - 2012-02-11 12:03:28
|
On Thu, Feb 9, 2012 at 4:11 PM, Nicolas Greneche
<nic...@un...> wrote:
> Hi,
>
> I would like to create a SELinux aware UML. I compiled a ARCH=um kernel
> with SELinux activated.
Are you sure?
> The UML starts but SELinux seems to be disabled. Libselinux is installed
> so I have userspace tools to check selinux availability and mode
> (permissive, targeted or strict).
>
> Does somebody have a positive feedback about putting SELinux inside a UML ?
>
Just built a SELinux enabled UML kernel and booted FC16.
SELinux seems to work.
At least it stops me from doing anything as usual. ;-)
type=1400 audit(1328961679.588:10): avc: denied { entrypoint } for
pid=666 comm="login" path="/bin/bash" dev="ubda" ino=3539
scontext=unconfined_u:system_r:abrt_helper_t:s0-s0:c0.c1023
tcontext=system_u:object_r:unlabeled_t:s0 tclass=file
--
Thanks,
//richard
|