package review?

Michael Thomas wart at kobold.org
Thu Jul 20 17:38:38 UTC 2006


Daniel J Walsh wrote:
> Michael Thomas wrote:
> 
>> A few packages (game server daemons) that I maintain in Fedora Extras
>> would benefit from having a selinux security policy available.  But
>> since I'm new to writing selinux policies, I was hoping that someone
>> from f-s-l could take a peek at what I did and let me know if I've done
>> things correctly and in the 'recommended' way.
>>
>> I've already tested the policy on FC5 to make sure that it works and
>> produces no 'avc denied' messages:
>>
>> http://www.kobold.org/~wart/fedora/crossfire-1.9.1-2.src.rpm
>>
>> I wasn't sure exactly which networking rules I would need.  Most of the
>> ones there were generated by policygentool.  I also couldn't figure out
>> why some of the rules at the end of crossfire.te were necessary.
>>
>> Thanks in advance!
>>
>> --Mike
>>  
>> ------------------------------------------------------------------------
>>
>> -- 
>> fedora-selinux-list mailing list
>> fedora-selinux-list at redhat.com
>> https://www.redhat.com/mailman/listinfo/fedora-selinux-list
> 
> Please attach the te, fc and if files.

They are in the src.rpm, but I realize that's not the easiest way to
pass them around.  Here are direct links:

http://www.kobold.org/~wart/fedora/crossfire.fc
http://www.kobold.org/~wart/fedora/crossfire.if
http://www.kobold.org/~wart/fedora/crossfire.te

--Mike
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3820 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20060720/6a19e74a/attachment.bin>


More information about the fedora-selinux-list mailing list