FC2T2, Selinux, and VMware

Russell Coker russell at coker.com.au
Sun Apr 4 12:15:38 UTC 2004


On Sun, 4 Apr 2004 04:04, Gene Czarcinski <gene at czarc.net> wrote:
> I noticed that there are lots of "vmware" references in the SELinux policy
> files.  Anyone have some tips or other perls of wisdon to say about running
> FC2T2 as a vmware guest or running vmware on a FC2T2 host?

SE Linux has no relevance when running as a guest inside VMware.  Whether SE 
Linux is running or not won't even be known by VMware, and SE Linux isn't at 
the level that is concerned about hardware.

For running VMware on a SE Linux host there is policy for doing so, but it has 
all users running VMware sessions in the same context.  I will probably 
re-write the VMware policy to give different domains for running VMware from 
different roles, so we'll have a staff_vmware_t, a user_vmware_t, etc.

-- 
http://www.coker.com.au/selinux/   My NSA Security Enhanced Linux packages
http://www.coker.com.au/bonnie++/  Bonnie++ hard drive benchmark
http://www.coker.com.au/postal/    Postal SMTP/POP benchmark
http://www.coker.com.au/~russell/  My home page



More information about the fedora-selinux-list mailing list