On 2014-01-10, 09:46 +0800, Schaufler, Casey wrote: > > Yep, as long as the user session processes are spawned though > > [email protected], they've been set "User" label already. > > So if we started the sshd service with the User label that should be fine, > too. >
Yes exactly. I can verify that. So the problem here I see has nothing to do with systemd. It's su and ssh (and sdbd) give you the shell, and they're not SMACK aware. That's my understanding. As Casey said, we might fix this by assigning User label to sdbd (which comes from system-server.service) and sshd.service, let me verify that. Kangkai _______________________________________________ Dev mailing list [email protected] https://lists.tizen.org/listinfo/dev
