Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.bugs.dist > #1035857 > unrolled thread

Bug#906729: Please fix SELinux labels of /vmlinuz symlink after kernel update

Started bybauen1 <j2468h@googlemail.com>
First post2020-12-05 13:50 +0100
Last post2020-12-05 13:50 +0100
Articles 1 — 1 participant

Back to article view | Back to linux.debian.bugs.dist

This discussion starts older than the indexed window; earlier articles aren't shown. The article labeled Started by below is the oldest one visible, not the original post.


Contents

  Bug#906729: Please fix SELinux labels of /vmlinuz symlink after kernel update bauen1 <j2468h@googlemail.com> - 2020-12-05 13:50 +0100

#1035857 — Bug#906729: Please fix SELinux labels of /vmlinuz symlink after kernel update

Frombauen1 <j2468h@googlemail.com>
Date2020-12-05 13:50 +0100
SubjectBug#906729: Please fix SELinux labels of /vmlinuz symlink after kernel update
Message-ID<BiFaF-3TC-1@gated-at.bofh.it>
On Sat, 25 Jan 2020 19:42:53 +0100 =?UTF-8?Q?Christian_G=C3=B6ttsche?= <cgzones@googlemail.com> wrote:
> It is not needed for anything to work correctly; it is just that
> objects should have the context defined by the SELinux policy. The
> root_t context should only be used by the root path directory,
> anything else is suspicious and should be avoided. Also if one sets up
> an alert for incorrect labeled objects (e.g. via repeatedly running
> restorecon -v -R -n /) this mislabeling would trigger.

Even better would be if the linux-update-symlinks perl script fixed the symlinks label before replacing it in an atomic operation in https://salsa.debian.org/kernel-team/linux-base/-/blob/master/bin/linux-update-symlinks#L49-76

-- 

bauen1
https://dn42.bauen1.xyz/

[toc] | [standalone]


Back to top | Article view | linux.debian.bugs.dist


csiph-web