preventing unconfined users exec in home and tmp

Murray McAllister mmcallis at redhat.com
Wed Nov 26 01:11:48 UTC 2008


Hi,

I have turned "allow_unconfined_exec_content" off, but unconfined users 
(unconfined_u) can still execute files in their home directories and /tmp/.

I tried adding a user with "useradd -Z unconfined_u". This user can 
still execute. I could not find any dontaudit rules.

Am I missing something?

Thanks.




More information about the fedora-selinux-list mailing list