Bug 3145 - create a SELinux profile to properly lock down our services
Summary: create a SELinux profile to properly lock down our services
Status: NEW
Alias: None
Product: ThinLinc
Classification: Unclassified
Component: Other (show other bugs)
Version: 3.0.0
Hardware: PC Unknown
: P2 Enhancement
Target Milestone: LowPrio
Assignee: Peter Åstrand
URL:
Keywords:
Depends on: 7065
Blocks:
  Show dependency treegraph
 
Reported: 2009-05-13 13:25 CEST by Peter Åstrand
Modified: 2017-10-11 12:44 CEST (History)
0 users

See Also:
Acceptance Criteria:


Attachments

Description Peter Åstrand cendio 2009-05-13 13:25:03 CEST
In the Red Hat ISV database, one has to "Indicate if the application has SELinux profiles defined.". We have no such profile, but I guess it would be nice to have one.
Comment 1 Pierre Ossman cendio 2011-03-23 16:03:19 CET
It seems we might need this to get the new tl-session working properly. We're having problems with the selinux context switch on some systems (RHEL 6).
Comment 2 Pierre Ossman cendio 2011-03-29 11:11:27 CEST
For now, we're doing a minimal profile to solve this specific problem. See bug 3791.
Comment 3 Pierre Ossman cendio 2013-12-18 11:03:55 CET
Bug 4780 did some minimal work towards this effort. Might be worth checking out that patch for a starting point.

Note You need to log in before you can comment on or make changes to this bug.