restorecond not expanding ~

Ulrich Drepper drepper at redhat.com
Tue Nov 20 20:58:56 UTC 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Forrest Taylor wrote:
> I am using RHEL5.1 selinux-policy-targeted-2.4.6-104.el5.  restorecond
> is not properly expanding the ~ or other wildcards
> in /etc/selinux/restorecond.conf.  By default, restorecond.conf
> includes:
> ~/public_html

And how would you want to expand ~ ?  This is a context-sensitive value.
 restorecond runs as root so ~/foo is /root/foo?  You cannot expect the
program to pull down the list of all accounts and expand ~/foo for all
user accounts.

There might be a case for supporting * but I think the files which have
to be handled through restorecond should remain small, so this isn't
really that important.

- --
➧ Ulrich Drepper ➧ Red Hat, Inc. ➧ 444 Castro St ➧ Mountain View, CA ❖
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)

iD8DBQFHQ0qQ2ijCOnn/RHQRAunDAKCp5hPd6zTCBlzWBD3mAbK+2HPhPwCcCkw+
b7IHoqwPTKKQ1/MucGrNIFA=
=74MW
-----END PGP SIGNATURE-----




More information about the fedora-selinux-list mailing list