First Last Prev Next    No search results available      Search page      Enter new bug
Bug#: 199404
Alias:
Product:
Component:
Status: RESOLVED
Resolution: INVALID
Assigned To: SE Linux Bugs <selinux@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Julien Thomas <julien.thomas.1@gmail.com>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 199404 depends on: Show dependency tree
Bug 199404 blocks:
Votes: 0    Show votes for this bug    Vote for this bug

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2007-11-16 21:44 0000
The current version of the SELinux security module can be reinforced to perform
better security control and customization.

Modifications concerned
- network access customization
- files configuration control
- selinux access desactivation (but customizable)

------- Comment #1 From Julien Thomas 2007-11-16 21:47:35 0000 -------
-- previously forgotten informations ---

see patch description http://aispirit.tuxfamily.org/bugs/pdf/updateSASL_en.pdf
full selinux modules are available at
http://aispirit.tuxfamily.org/bugs/patches/sasl-1.4.3-lo_netif_t.rar

Please, 
Note that these patches are only draft that have not been approved by the
hardened-gentoo comunity.

> The current version of the SELinux security module can be reinforced to perform
> better security control and customization.
> 
> Modifications concerned
> - network access customization
> - files configuration control
> - selinux access desactivation (but customizable)
> 

------- Comment #2 From Chris PeBenito 2009-12-16 15:03:00 0000 -------
closing stale bugs.  reference URLs are invalid anyway.

------- Comment #3 From Julien Thomas 2009-12-16 15:22:21 0000 -------
(In reply to comment #2)
> closing stale bugs.  reference URLs are invalid anyway.
> 

Same closing remark, as for previous bug 199298

The URL have been changed to http://www.julienthomas.eu/bugs/pdf/ and
http://www.julienthomas.eu/bugs/patches/.

However, the proposed upgrades were valid for
- Linux 2.6.20-hardened-r5 (2007 !)
- ndev-libs/cyrus-sasl 2.1.22-r2
(as stated on the PDFs).

I will, if I have time, look at the new policies to see if the updates are
still valid.

Best Regards,
Julien Thomas

First Last Prev Next    No search results available      Search page      Enter new bug