daemons running as initrc_t

Tom London selinux at gmail.com
Fri Jul 20 13:52:58 UTC 2007


On 7/19/07, Ken YANG <spng.yang at gmail.com> wrote:
> Daniel J Walsh wrote:
> > Tom London wrote:
> >> [root at localhost ~]# ps agxZ | grep initrc_t
> >> system_u:system_r:initrc_t       2818 ?        S      0:00 nasd -b -local
> >> system_u:system_r:initrc_t       3174 ?        Ss     0:00
> >> NetworkManagerDispatcher
> >> --pid-file=/var/run/NetworkManager/NetworkManagerDispatcher.pid
> >> system_u:system_r:unconfined_t   3802 pts/0    S+     0:00 grep initrc_t
> >> [root at localhost ~]#
> >>
> >> So, nasd and Network run in initrc_t.
> >>
> >> Should nasd have its own domain (e.g., nasd_exec_t -> nasd_t)?
> > Yes anyone out there looking to get their feet wet in writing policy,
> > this is probably a good one to start on.
>
> i don't know whether tom has worked on this. if not, i will try, but
> i am not familiar with network audio system :-)
>
I won't be able to get to this until late weekend, so if you can, please start!

tom
-- 
Tom London




More information about the fedora-selinux-list mailing list