| Summary: | SELinux Handbook section 2.6 should be above section 2.3, or targeted install gets "Failed to set SELinux security labels." | ||
|---|---|---|---|
| Product: | Gentoo Linux | Reporter: | Andy Johnson <andyrjohnson82> |
| Component: | SELinux | Assignee: | SE Linux Bugs <selinux> |
| Status: | RESOLVED FIXED | ||
| Severity: | normal | ||
| Priority: | Normal | ||
| Version: | unspecified | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Package list: | Runtime testing required: | --- | |
|
Description
Andy Johnson
2014-02-12 18:51:52 UTC
Can you provide more information about this? Error log or build log? It seems I've hardcoded "strict" somewhere then, so I need to cover that. Well I don't have the error message specifically up at the moment. However when you proceed as directed at step 2.3, any emerge will fail as it looks for file_contexts in /etc/selinux/strict/contexts/files/file_contexts... following step 2.6 and modifying /etc/selinux/config to specify POLICY="targeted" instead of the default "strict" will allow you to keep building a targeted system. It's just an order of operations in the instructions really. Only thing that could be automated I guess would be /etc/portage/make.conf POLICY and /etc/selinux/config SELINUXTYPE to match. This has been put in place online. Thanks for reporting! |