Re: Fedora Core 4

On Sat, 2005-01-15 at 17:29 +0530, Rahul Sundaram wrote:
> Hi
> > 
> > - SELinux Episode III: Revenge of the AVC
> how about gui integration with gnome by letting nautllus show security
> contexts and manipulate them using chcon, fixfiles etc as the backend.

That sounds like a pretty bad idea in general, actually - the last thing
you need is for the state of your file contexts to ever get out of sync
with your configuration files.  Besides, you'd need to have some pretty
highly elevated privileges to even perform those tasks, and SELinux
eventually should probably make sure no GUI tool can ever even have
those privileges, except for the ones specifically designed for SELinux
administration (like you say below).

> Good GUI tools for analysing existing policies or customising/creating
> policies would be a good step forward in the perceived user
> friendliness

