Package: selinux-policy-default
Version: 2:0.0.20080702-4
Severity: normal
Tags: patch

Currend refpolicy
- don't activate nagios module (i think because doesn't have nagios* =>
  nagis map)
- don't support nagios2/3 debian packages because different paths

I think we neeed something like this(untested):
--- /opt2/sel/selinux-policy-src/policy/modules/services/nagios.fc      
2008-07-22 10:44:25.000000000 +0400
+++ nagios3.fc  2008-08-06 14:37:40.000000000 +0400
@@ -12,5 +12,12 @@

 ifdef(`distro_debian',`
 /usr/sbin/nagios               --      
gen_context(system_u:object_r:nagios_exec_t,s0)
+/usr/sbin/nagios2               --      
gen_context(system_u:object_r:nagios_exec_t,s0)
+/usr/sbin/nagios3               --      
gen_context(system_u:object_r:nagios_exec_t,s0)
 /usr/lib/cgi-bin/nagios/.+     --      
gen_context(system_u:object_r:nagios_cgi_exec_t,s0)
+/usr/lib/cgi-bin/nagios2/.+     --      
gen_context(system_u:object_r:nagios_cgi_exec_t,s0)
+/usr/lib/cgi-bin/nagios3/.+     --      
gen_context(system_u:object_r:nagios_cgi_exec_t,s0)
+/var/log/nagios2(/.*)?                  
gen_context(system_u:object_r:nagios_log_t,s0)
+/var/log/nagios3(/.*)?                  
gen_context(system_u:object_r:nagios_log_t,s0)
+/usr/lib(64)?/nagios3/cgi/.+     --      
gen_context(system_u:object_r:nagios_cgi_exec_t,s0)
 ')

and add 'nagios' => 'nagios*' to policy module map

-- System Information:
Debian Release: lenny/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)

Kernel: Linux 2.6.26-1-686 (SMP w/1 CPU core)
Locale: LANG=ru_RU.UTF-8, LC_CTYPE=ru_RU.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages selinux-policy-default depends on:
ii  libpam-modules                1.0.1-1    Pluggable Authentication Modules f
ii  libselinux1                   2.0.65-4   SELinux shared libraries
ii  libsepol1                     2.0.30-2   Security Enhanced Linux policy lib
ii  policycoreutils               2.0.49-5   SELinux core policy utilities
ii  python                        2.5.2-2    An interactive high-level object-o

Versions of packages selinux-policy-default recommends:
ii  checkpolicy                   2.0.12-1   SELinux policy compiler
ii  setools                       3.3.4.ds-4 tools for Security Enhanced Linux 

Versions of packages selinux-policy-default suggests:
ii  logcheck                      1.2.68     mails anomalies in the system logf
ii  syslog-summary                1.13-1     summarize the contents of a syslog

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to