libgpod HAL callout and SELinux denials

Todd Zullinger tmz at pobox.com
Mon Jan 5 03:03:32 UTC 2009


Daniel J Walsh wrote:
> Use /var/run/hald instead of /tmp.

Will do.

> And I will add rules to allow this in F10 and F11.

Thanks Dan!

> Are you planning on putting this in F9?

Yes.  (Actually, the callout is already there, but due to a hal path
issue, it wasn't ever being called.  Once that issue is fixed, users
would start to notice the SELinux denials.  I'll wait until I see the
policy package updates before pushing any libgpod updates though.  And
no one will be the wiser, hopefully.)

> RHEL5.4?

Not that I'm aware of.  In RHEL, libgpod is a core package, and I
don't have any part of the maintenance there.  But it would appear
unlikely to see an update, as currently RHEL has 0.4.0, while Fedora
has 0.6.0 (which first added the callout).  The library soname changed
between 0.4.0 and 0.6.0, which makes me doubt that RHEL will bump it
during a point release.

Thanks again for the quick response!  May it rain the beverage of your
choice. ;)

-- 
Todd        OpenPGP -> KeyID: 0xBEAF0CE3 | URL: www.pobox.com/~tmz/pgp
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Religion. A daughter of Hope and Fear, explaining to Ignorance the
nature of the Unknowable.
    -- Ambrose Bierce, The Enlarged Devil's Dictionary, 1906

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 542 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20090104/0fb35d54/attachment.sig>


More information about the fedora-selinux-list mailing list