firefox targeted policy

Valdis.Kletnieks at vt.edu Valdis.Kletnieks at vt.edu
Sat Jul 1 15:45:12 UTC 2006


On Sat, 01 Jul 2006 17:16:37 +0200, netpython said:
> I have made a custom policy for the firefox www-browser.
> To adchieve this i did the following:
> 
> # cd /usr/share/selinux/devel
> # policygentool firefox /usr/bin/firefox
> # make -f /usr/share/selinux/devel/Makefile
> # semodule -i firefox.pp
> # restorecon -R -v  /usr/bin/firefox
> 
> When i enter: semodule -l i see the firefox module has been loaded
> however i expected too see some action though in /var/log/messages.

OK.. I'll bite... what specifically did you try that *should* have generated
an AVC?

Also, note that if auditd is running, it will be logged in /var/log/audit/
rather than via syslogd.  'man ausearch'
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 226 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20060701/c755c3ea/attachment.sig>


More information about the fedora-selinux-list mailing list