Re: logind shadow access

Topi Miettinen <[email protected]>
Newsgroups org.kernel.vger.selinux-refpolicy
Message-ID <[email protected]>
On 8.4.2020 5.25, Russell Coker wrote:
> # audit2allow -l < /var/log/audit/audit.log |tail -1
> allow systemd_logind_t shadow_t:file read;
> 
> Is there any good reason why systemd_logind might need to access /etc/shadow?
> 

For account enable/disable state and so on: 
https://github.com/systemd/systemd/issues/15105.

-Topi
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.