canna .... still wants to access /tmp

Akira TAGOH tagoh at redhat.com
Thu Jun 10 09:05:09 UTC 2004


>>>>> On Thu, 10 Jun 2004 15:16:38 +1000,
>>>>> "RC" == Russell Coker <russell at coker.com.au> wrote:

RC> On Thu, 10 Jun 2004 04:04, Tom London <selinux at comcast.net> wrote:
>> Looks like the new policy (selinux-strict-policy-1.13.4-2) removes
>> access to tmp files in canna.te.  But canna (Canna-0.3.7p3-2) still
>> wants to access /tmp/.
>> 
>> Are there new versions of the canna stuff coming that move the files
>> from /tmp elsewhere?

RC> The plan is that canna will be modified to put it's unix domain socket files 
RC> under /var/run.  The current situation is a grave security hole for non-SE 
RC> systems and systems running the targetted policy.

I'm ready to go change the socket files under /var/run.
Russell, could you change the policy about it?

Regards,
--
Akira TAGOH



More information about the fedora-selinux-list mailing list