Fedora SELinux FAQ

Paul Nasrat pauln at truemesh.com
Tue Mar 16 07:35:16 UTC 2004


On Mon, Mar 15, 2004 at 05:36:06PM -0800, Karsten Wade wrote:
> These last two weeks I've been working on the SELinux pieces of the
> Fedora Core 2 test2 release notes.  The current incarnation is available
> at:
> 
> http://people.redhat.com/kwade/selinux/selinux-faq/selinux-faq-en/
> http://people.redhat.com/kwade/selinux/selinux-faq/selinux-faq-en.xml


> 
> As described below, this content will start to be released Real Soon
> Now(TM), and I am interested in your input.  Consider content quality
> (clarity, ease of use, clear to non-native English readers), ability to
> translate well, and of course the XML.  In addition, I want to add this
> to CVS soonest, therefore I'll need Tammy's input.

OK - you don't mention some things which might get people:

1) Setting up an administrative user as sysadm_r
2) role identification (id/id -Z)
3) identifying context a process is running using ps --context (useful for debugging)
4) using run_init to start init scripts
5) context transition using newrole, sudo -r 
6) rpm --filecontext /--recontext queries
7) userhelper/consolehelper will prompt for own password

Paul





More information about the fedora-docs-list mailing list