[rsbac] MAC module

Fix 4d876b82 at gmail.com
Wed Sep 5 09:19:02 CEST 2007


Hello!
I thought MAC module is not supposed to control access to SCD objects. (?)
I can set MAC seclevel for FILE, DIR, USER and PROCESS, but syslog says that
"Sep  3 15:45:03 localhost kernel: 0000000286|rsbac_adf_request(): request MODIFY_SYSTEM_DATA, pid 2203, ppid 1512, prog_name mysqld, prog_file /usr/sbin/mysqld, uid 26, 
target_type SCD, tid priority, attr none, value none, result NOT_GRANTED (Softmode) by MAC"
Is there any way to get/set MAC seclevel of SCD objects, or maybe I missed something?
Kernel 2.6.22.5/x86_64/pax/rsbac 1.3.5
// wbr
Fix
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://www.rsbac.org/pipermail/rsbac/attachments/20070905/5d6d4648/attachment.pgp 


More information about the rsbac mailing list