mailman not confined

Daniel J Walsh dwalsh at redhat.com
Fri Mar 28 06:08:14 UTC 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Chad Sellers wrote:
> On F8 (as well as RHEL5 from the looks of things), it seems that mailman is
> not actually confined. The policy for it is compiled into the base module,
> but the transition never happens. So, mailmanctl and qrunner run in
> initrc_t. This looks like it is due to the fact that the default init script
> for mailman calls "/usr/bin/python /usr/lib/mailman/bin/mailmanctl" and
> "/usr/bin/python /usr/lib/mailman/bin/qrunner" rather than executing the
> scripts directly. The simple fix is to remove python from the init script.
> Anyone else noticing this problem? Any other ideas for a fix?
> 
> Thanks,
> Chad Sellers
> 
> --
> fedora-selinux-list mailing list
> fedora-selinux-list at redhat.com
> https://www.redhat.com/mailman/listinfo/fedora-selinux-list
Please open a bugzilla on it.

Looks like it is correct in rawhide


 grep MAILMANCTL mailman
MAILMANCTL=$MAILMANHOME/bin/mailmanctl
    daemon $MAILMANCTL -s -q start
    daemon $MAILMANCTL -q stop
    $MAILMANCTL -q -u status
    $MAILMANCTL -u status
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org

iEYEARECAAYFAkfsi04ACgkQrlYvE4MpobMYlgCgr7Dj/QkIGAWgsPGtcB0K3Fe5
Jy4AoMcLbM/5KrXnjIAdX59Qau3TxmY6
=h9NM
-----END PGP SIGNATURE-----




More information about the fedora-selinux-list mailing list