[ubuntu-hardened] SELinux Policy Update for Ubuntu Lucid Lynx

Steve Lawrence slawrence at tresys.com
Fri Apr 23 00:22:06 BST 2010


Attached are two patches to update the SELinux policy for Ubuntu Lucid
Lynx.

The first patch applies to the repolicy-ubuntu package. This updates the
policy to the latest reference policy (2.20091117) and updates the
debian/patches to fix ubunutu specific policy issues. The majority of
the issues revolved around dbus starting various processes and ensuring
they transition to the correct domain.

The second patch applies to the selinux package. This adds two upstart
scripts to ensure that /var/run and /var/lock are relabeled once they
are mounted so they get the correct labels (var_run_t and var_lock_t
instead of tmpfs_t).

- Steve
-------------- next part --------------
A non-text attachment was scrubbed...
Name: refpolicy-ubuntu-update.patch
Type: text/x-patch
Size: 1302120 bytes
Desc: not available
Url : https://lists.ubuntu.com/archives/ubuntu-hardened/attachments/20100422/23ec571e/attachment-0002.bin 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: selinux-labels.patch
Type: text/x-patch
Size: 1824 bytes
Desc: not available
Url : https://lists.ubuntu.com/archives/ubuntu-hardened/attachments/20100422/23ec571e/attachment-0003.bin 


More information about the ubuntu-hardened mailing list