getpwnam and SELinux

Brian Ginn BGinn at symark.com
Wed Jul 1 23:15:36 UTC 2009


I have an app that I'm trying to confine.

In enforcing mode, getpwnam() returns "X" for the pw_passwd field.

Is there SELinux policy to allow this app to get the shadow passwd?
I've tried the following without success:

auth_can_read_shadow_passwords(  )

auth_read_shadow(  )

auth_tunable_read_shadow(  )

auth_use_nsswitch(  )

Thanks,
Brian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20090701/54a146e8/attachment.htm>


More information about the fedora-selinux-list mailing list