Bug#888967: selinux-policy-default: Default policy breaks semanage tool

2020-06-04 Thread Maksim K.
Package: selinux-policy-default Version: 2:2.20161023.1-9 Followup-For: Bug #888967 I would like to add more information. After apply workaround: $ echo '(allow semanage_t semanage_tmp_t (file (getattr open read execute ioctl)))' > semanage_mmap_tmp.cil $ sudo semodule -i semanage_mmap_tmp.cil

Bug#888967: selinux-policy-default: Default policy breaks semanage tool

2018-01-31 Thread Mark Raynsford
Package: selinux-policy-default Version: 2:2.20161023.1-9 Severity: important Dear Maintainer, The current version of the default SELinux policy prevents the semanage tool from executing when SELinux is placed into enforcing mode. The problem appears to be that the tool tries to create a file in