[redhat-lspp] newrole error

Stephen Smalley sds at tycho.nsa.gov
Wed Jan 17 12:10:16 UTC 2007


On Tue, 2007-01-16 at 14:38 -0600, Ted X Toth wrote:
> Daniel J Walsh wrote:
> > Stephen Smalley wrote:
> >> On Tue, 2007-01-16 at 13:43 -0600, Ted X Toth wrote:
> >>  
> >>> I added staff_devpts_t and  sysadm_devpts_t to 
> >>> /etc/selinux/mls/contexts/securetty_types and even rebooted but 
> >>> still am getting the same error.
> >>>     
> >>
> >> libselinux and policycoreutils version number?
> >>
> >> The upstream version of the libselinux and policycoreutils code diverged
> >> from the original patch by Dan Walsh (change in file name and
> >> interface).  Dan's original patch called the file securetty_contexts, so
> >> you could try renaming or copying the file to that name.  Upstream it
> >> was renamed to securetty_types for clarity since it only contains types.
> >>
> >>   
> > I have changed latest version to match upstream.
> >
> > policycoreutils-1.33.12-2.el5 and later
> > libselinux-1.33.4-2.el5 and later
> >
> >
> > Should use the new interface and securetty_types
> >
> > You should not be using X-Windows though since this is an unsupported 
> > configuration.  I have no idea what will happen with a windows 
> > environment.
> >
> But I'm working on trusted X in an MLS environment :(

Are you trying to use XACE/XSELinux?  XACE has gone into Xorg for the
next release (7.2), and XSELinux should follow for 7.3.  Eamon Walsh is
working on that.

-- 
Stephen Smalley
National Security Agency




More information about the redhat-lspp mailing list