Re: selinux breaks revisor

Douglas McClendon wrote:
Jeff Spaleta wrote:
2008/1/24 Jesse Keating <jkeating redhat com>:
Maybe I missed that, but every /rpm/ is buildable by non-root.  It's
when you start talking about /composing/ releases and Live images that
root privs are needed (or enoug privs to make loopback devices).

make loopback devices....  does fuse provide a non-root way to deal
with this here?

I think there are historical threads about the security/code-quality and how it related to the decision of requiring root to add users to the fuse group. Sounded like fuse might get the job done someday, but someday wasn't quite here yet.

Still, for doing composes as non-root I like my qemu 'qfakeroot', as it handles everything nicely (but slowly). I.e. I imagine running into

What still prevents kqemu module being shipped with fedora? That speeds things tremendously!


