httpd newbie / access denied, no permission to ~userid

Rahul Sundaram sundaram at redhat.com
Tue Aug 16 12:35:14 UTC 2005


Hi

>Really, how difficult would it have been for WORLD READABLE file
>permissions to be treated as such by SELinux?
>  
>
"world readable" is a DAC based permission model. SELinux is MAC based. 
see Fedora SELinux FAQ on this. The whole point of SELinux is to 
restrict operations based on the process above and top of the classic 
Linux permissions

regards
Rahul




More information about the fedora-list mailing list