Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 378615

Summary: sec-policy/selinux-nx-2.20101213 build failed
Product: Gentoo Linux Reporter: Andreis Vinogradovs ( slepnoga ) <andreis.vinogradovs>
Component: HardenedAssignee: Sven Vermeulen (RETIRED) <swift>
Severity: normal CC: selinux
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
Package list:
Runtime testing required: ---
Attachments: build log

Description Andreis Vinogradovs ( slepnoga ) 2011-08-10 09:25:28 UTC
sec-policy/selinux-nx-2.20101213 nx.te":15:ERROR 'unknown role nx_server_r' at token ';'

Reproducible: Always
Comment 1 Andreis Vinogradovs ( slepnoga ) 2011-08-10 09:26:32 UTC
Created attachment 282793 [details]
build log
Comment 2 Andreis Vinogradovs ( slepnoga ) 2011-08-10 09:27:15 UTC
make: Entering directory `/var/tmp/portage/sec-policy/selinux-nx-2.20101213/work/strict'
Compiling strict nx module
/usr/bin/checkmodule:  loading policy configuration from tmp/nx.tmp
nx.te":15:ERROR 'unknown role nx_server_r' at token ';' on line 1685:
role nx_server_r types nx_server_t;
# cjp: do we really need this?
/usr/bin/checkmodule:  error(s) encountered while parsing configuration
make: *** [tmp/nx.mod] Error 1
Comment 3 Sven Vermeulen (RETIRED) gentoo-dev 2011-08-13 17:19:26 UTC
Hmm I can't seem to reproduce this (nor does the code look invalid to me).

Which version of userspace utilities do you have (checkpolicy, policycoreutils, libsemanage, libselinux, libsepol)?
Comment 4 Sven Vermeulen (RETIRED) gentoo-dev 2011-08-13 20:25:05 UTC
Aha... just found in selinux mailinglist that the newer SELinux userspace utilities introduce some "changes" that affect the role declaration behavior. It should be fixed if you use the 20110726 policies too (currently in hardened-dev overlay).
Comment 5 Sven Vermeulen (RETIRED) gentoo-dev 2011-08-14 15:11:01 UTC
In hardened-dev overlay.
Comment 6 Sven Vermeulen (RETIRED) gentoo-dev 2011-08-29 09:19:22 UTC
in portage tree (~arch)