How can I create shadow_t file ?

Stephen Smalley sds at tycho.nsa.gov
Wed May 13 13:56:28 UTC 2009


On Wed, 2009-05-13 at 23:01 +0900, Shintaro Fujiwara wrote:
> Thank you.
> 
> I updated my tool's policy including 2 interfaces you guys introduced.
> 
> Still I can't add user from my tool and strangely, no AVC messages now
> even I setSELinux permissive.
> Of course when I set permissive, I can add user.
> But, I don't have any denied logs now...
> 
> No way out ?

Run "semodule -DB" to strip dontaudit rules and try again.
You'll have to wade through the irrelevant avc messages though.

-- 
Stephen Smalley
National Security Agency




More information about the fedora-selinux-list mailing list