applying SELinux policy for httpd
Stephen Smalley
sds at tycho.nsa.gov
Thu Nov 3 14:00:04 UTC 2005
On Thu, 2005-11-03 at 10:15 +0000, Joe Orton wrote:
> I'd also like to mention again that the new FC4 policy of only applying
> SELinux policy if httpd is started from the init script is confusing the
> hell out of people. It breaks the principle of least astonishment. I'd
> much rather live with the fact that SELinux policy is *always* applied,
> and the fallout from that, than see this confusion of people hitting
> SELinux policy issues, get confused, restart httpd, see them disappear,
> etc.
>
> I'd really like to see this change reverted for FC5.
Previously discussed in this thread:
http://marc.theaimsgroup.com/?t=112089638800001&r=1&w=2
--
Stephen Smalley
National Security Agency
More information about the fedora-selinux-list
mailing list