[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: file_type_auto_trans is not sufficient


> Problem is that they both want to create directly in /tmp.  It would be
> preferable if they had a dedicated subtree, e.g. /tmp/gconfd
> and /tmp/orbit, with all per-user subdirectories underneath, so that the
> top-level directory could be typed separately and set up a priori (at
> boot if truly under /tmp, as they might otherwise have been deleted).

So you're saying that the directories should be created ahead of time by
a startup script, and restorecon executed on them... something 
like tmpskel? Maybe that can be used for libICE, which I want to
label /tmp/.ICE-unix as ice_tmp_t.

What about /home, which has the same problem, but directories can't be
created ahead of time (adding to /skel doesn't work - if an application
is installed, the users created prior to installation have no folder).

What about file conflicts - then you can't create directories ahead of
time... 

> BTW, what will per-user /tmp directories due to these conventions
> anyway, even aside from any possible SELinux-related change?

What's the question again?


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.


This mailing list archive is a service of Copilot Consulting.