Re: Allow file access to two different domains
Orion Poplawski <[email protected]> Mon, 31 Oct 2022 21:29:32 -0600
| Newsgroups | gmane.linux.redhat.fedora.selinux |
|---|---|
| Organization | NorthWest Research Associates |
| Message-ID | <[email protected]> |
On 10/24/22 05:45, Zdenek Pytela wrote: > > > On Sat, Oct 22, 2022 at 9:16 PM Gionatan Danti <[email protected] > <mailto:[email protected]>> wrote: > > Hi all, > as one file/dir can have one and only one selinux label, I wonder > if/how > one can allow processes from different domains to access the same > files/dirs. > > I know that for specific executable and directory one can use the > appropriate bools, for example samba_enable_home_dirs enables smbd to > read/write home_root_t types. I also know that one can create and > load a > custom policy to allow the required access. > > However, I wonder if an easier approach exists to let processes with > different domains to access the same set of files or directories. > > Any clue? > Thanks. What about public_content_t and public_content_rw_t? -- Orion Poplawski he/him/his - surely the least important thing about me IT Systems Manager 720-772-5637 NWRA, Boulder/CoRA Office FAX: 303-415-9702 3380 Mitchell Lane [email protected] Boulder, CO 80301 https://www.nwra.com/ _______________________________________________ selinux mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/[email protected] Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
smime.p7s
(application/pkcs7-signature, 3.8 KB) - not displayed