Package: libsemanage1 Version: 2.0.45-1 Severity: normal If you use semanage to create a user with a low level that is not equal to "s0" then that user will by default have their home directory labeled with "s0" as the sensitivity label and thus they won't be able to write to any files in it.
s0 should be replaced with the low level of the user's range when generating /etc/selinux/default/modules/active/file_contexts.homedirs . This requires changes to libsemanage/src/genhomedircon.c . -- System Information: Debian Release: squeeze/sid APT prefers unstable APT policy: (500, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux 2.6.32-5-amd64 (SMP w/2 CPU cores) Locale: LANG=en_AU.UTF-8, LC_CTYPE=en_AU.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/bash Versions of packages libsemanage1 depends on: ii libbz2-1.0 1.0.5-4 high-quality block-sorting file co ii libc6 2.11.2-2 Embedded GNU C Library: Shared lib ii libselinux1 2.0.94-1 SELinux runtime shared libraries ii libsemanage-common 2.0.45-1 Common files for SELinux policy ma ii libsepol1 2.0.41-1 SELinux library for manipulating b ii libustr-1.0-1 1.0.4-2 Micro string library: shared libra libsemanage1 recommends no packages. libsemanage1 suggests no packages. -- no debconf information -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org