Re: [RFC] files: Make files_{relabel,manage}_non_security_types work on all file types

Henrik Grindal Bakken <[email protected]>
Newsgroups org.kernel.vger.selinux-refpolicy
Organization Sierra Fan Club
Message-ID <[email protected]>
Henrik Grindal Bakken <[email protected]> writes:

> From: Henrik Grindal Bakken <[email protected]>
>
> This is the same behavious as files_*_non_auth_types have.

The rationale for changing this is that the systemd-tmpfiles rules use
files_manage_non_security_files() (and ..._relabel_...), which doesn't
work well if you use tmpfiles for somewhat more exotic paths that the
standard setup.

An alternative to this approach is to change the rules in systemd.te for
systemd_tmpfiles_t, but it seems to me like this change would be more in
line with what's done for the similar interfaces.

-- 
Henrik Grindal Bakken <[email protected]>
PGP ID: 8D436E52
Fingerprint: 131D 9590 F0CF 47EF 7963  02AF 9236 D25A 8D43 6E52
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.