[redhat-lspp] RBAC Roles

Karl MacMillan kmacmillan at tresys.com
Tue Sep 20 14:25:10 UTC 2005


> -----Original Message-----
> From: Stephen Smalley [mailto:sds at tycho.nsa.gov]
> Sent: Tuesday, September 20, 2005 8:56 AM
> To: Karl MacMillan
> Cc: 'Daniel J Walsh'; 'Steve Grubb'; 'lspp-list'
> Subject: RE: [redhat-lspp] RBAC Roles
> 
> On Tue, 2005-09-20 at 08:47 -0400, Karl MacMillan wrote:
> > I'd really like to see 2.1.2 in rawhide soon - Dan, we can get you an
> > updated rpm if you would like. Just let me know. Steve, there is no
> error
> > when you run this on rawhide, just a silent failure?
> 
> There is no output from the program, but the exit status is 1 (versus 0
> when successfully running it explicitly against policy.19).  What more
> does one need to tell that there is an error? ;)
> 
> > I agree - and this tool should probably be based off of libselinux
> rather
> > than libapol.
> 
> Hmmm...I'm not sure libselinux would have access to the right
> information normally; libsemanage/libsepol seems a more likely candidate
> (but only using the support for reading the user config files, not the
> binary policy).
> 

I didn't really think it through - I more meant core libraries instead of
libapol.

Karl
------
Karl MacMillan
Tresys Technology
http://www.tresys.com

> --
> Stephen Smalley
> National Security Agency





More information about the redhat-lspp mailing list