[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: file_type_auto_trans is not sufficient
> Problem is that they both want to create directly in /tmp. It would be
> preferable if they had a dedicated subtree, e.g. /tmp/gconfd
> and /tmp/orbit, with all per-user subdirectories underneath, so that the
> top-level directory could be typed separately and set up a priori (at
> boot if truly under /tmp, as they might otherwise have been deleted).
So you're saying that the directories should be created ahead of time by
a startup script, and restorecon executed on them... something
like tmpskel? Maybe that can be used for libICE, which I want to
label /tmp/.ICE-unix as ice_tmp_t.
What about /home, which has the same problem, but directories can't be
created ahead of time (adding to /skel doesn't work - if an application
is installed, the users created prior to installation have no folder).
What about file conflicts - then you can't create directories ahead of
time...
> BTW, what will per-user /tmp directories due to these conventions
> anyway, even aside from any possible SELinux-related change?
What's the question again?
--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.
This mailing list archive is a service of Copilot Consulting.