[prev in list] [next in list] [prev in thread] [next in thread] 

List:       selinux
Subject:    Re: logging in using sereference policy
From:       Ivan Gyurdiev <ivg2 () cornell ! edu>
Date:       2005-12-30 21:31:09
Message-ID: 43B5A71D.4060205 () cornell ! edu
[Download RAW message or body]


> Kind of obvious in retrospect :)  And I sort of knew that must be what
> was going on, but wasn't sure how to find the real problem if there was
> no audit msg about it.  In the future I may just have to start by adding
> a debug make target which removes all dontaudits.
>   
It used to be called "make enableaudit".  Not sure what it's called 
nowdays, since I haven't looked at policy sources in a while, but I see 
Dan Walsh shipping a policy base module that removes all dontaudits - if 
you can switch to it (with semodule), it will probably do what you want.


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic