Bug#1023850: do not require dbus, use default-dbus-system-bus | dbus-system-bus

2022-11-11 Thread Dominick Grift
-daemon or dbus-broker depending on what is used. -- gpg --locate-keys dominick.gr...@defensec.nl Key fingerprint = FCD2 3660 5D6B 9D27 7FC6 E0FF DA7E 521F 10F6 4098 Dominick Grift

Bug#1020213: libatk1.0 pulls in at-spi2-core

2022-09-18 Thread Dominick Grift
[amd64]) Conf libatk1.0-0 (2.46.0-1 Debian:unstable [amd64]) -- gpg --locate-keys dominick.gr...@defensec.nl Key fingerprint = FCD2 3660 5D6B 9D27 7FC6 E0FF DA7E 521F 10F6 4098 Dominick Grift

Bug#943413: sudo 1.8.28p1-1 built with wrong libexecdir

2019-10-25 Thread Dominick Grift
. Sudo functionality relying in `sesh` will not work. > > Dominick Grift writes: > > > Package: sudo > > Version: 1.8.28p1-1 > > > > The --libexecdir=/usr/lib/sudo entries in debian/rules are wrong > > > > It should be --libexecdir=/usr/lib > > The wo

Bug#943413: sudo 1.8.28p1-1 built with wrong libexecdir

2019-10-24 Thread Dominick Grift
Package: sudo Version: 1.8.28p1-1 The --libexecdir=/usr/lib/sudo entries in debian/rules are wrong It should be --libexecdir=/usr/lib -- Key fingerprint = 5F4D 3CDB D3F8 3652 FBD8 02D5 3B6C 5F1D 2C7B 6B02 https://sks-keyservers.net/pks/lookup?op=get=0x3B6C5F1D2C7B6B02 Dominick Grift

Bug#878401: [systemd] Dependency on /tmp not correctly stated for some sound.target (or /tmp/pulse-* shows up underneath my /tmp mount)

2019-09-22 Thread Dominick Grift
On Sun, Sep 22, 2019 at 05:40:14PM +0200, Dominick Grift wrote: > Setting PULSE_RUNTIME_PATH did not do it for me. > > I borrowed the following from Fedora, and did: > > 1. /etc/udev/rules.d/90-alsa-restore.rules: > > ACTION=="add", SUBSYSTEM=="sound&q

Bug#878401: [systemd] Dependency on /tmp not correctly stated for some sound.target (or /tmp/pulse-* shows up underneath my /tmp mount)

2019-09-22 Thread Dominick Grift
OME=/run/alsa -E ALSA_CONFIG_PATH=/etc/alsa/alsactl.conf --initfile=/usr/share/alsa/init/00main restore ExecStop=-/usr/sbin/alsactl -E HOME=/run/alsa -E ALSA_CONFIG_PATH=/etc/alsa/alsactl.conf store StandardOutput=syslog ... seems to work -- Key fingerprint = 5F4D 3CDB D3F8 3652 FBD8 02D5 3B6C 5

Bug#933858: (no subject)

2019-08-06 Thread Dominick Grift
ers that should never have root access should be associated with user_u: useradd -Z user_u jane -- Key fingerprint = 5F4D 3CDB D3F8 3652 FBD8 02D5 3B6C 5F1D 2C7B 6B02 https://sks-keyservers.net/pks/lookup?op=get=0x3B6C5F1D2C7B6B02 Dominick Grift

Bug#933858: (no subject)

2019-08-06 Thread Dominick Grift
r be perfect. If you so desire then you can give sysadm_u access to unconfined_r. However this was not the intended design. -- Key fingerprint = 5F4D 3CDB D3F8 3652 FBD8 02D5 3B6C 5F1D 2C7B 6B02 https://sks-keyservers.net/pks/lookup?op=get=0x3B6C5F1D2C7B6B02 Dominick Grift

Bug#933858: (no subject)

2019-08-05 Thread Dominick Grift
to tailor the policy to your personal requirements. -- Key fingerprint = 5F4D 3CDB D3F8 3652 FBD8 02D5 3B6C 5F1D 2C7B 6B02 https://sks-keyservers.net/pks/lookup?op=get=0x3B6C5F1D2C7B6B02 Dominick Grift

Bug#929063: Path of a thousand miles starts with a single step.

2019-05-22 Thread Dominick Grift
. -- Key fingerprint = 5F4D 3CDB D3F8 3652 FBD8 02D5 3B6C 5F1D 2C7B 6B02 https://sks-keyservers.net/pks/lookup?op=get=0x3B6C5F1D2C7B6B02 Dominick Grift

Bug#849637: [DSE-Dev] Bug#849637: /sys/devices/system/cpu/online SELinux context

2016-12-31 Thread Dominick Grift
On 12/31/2016 12:41 PM, Dominick Grift wrote: > On 12/31/2016 12:38 PM, Dominick Grift wrote: >> On 12/31/2016 11:34 AM, cgzones wrote: >>> Wow! >>> >>> Thank you very much, I was completely unaware of this feature. >>> I did not read

Bug#849637: [DSE-Dev] Bug#849637: /sys/devices/system/cpu/online SELinux context

2016-12-31 Thread Dominick Grift
On 12/31/2016 12:38 PM, Dominick Grift wrote: > On 12/31/2016 11:34 AM, cgzones wrote: >> Wow! >> >> Thank you very much, I was completely unaware of this feature. >> I did not read any documentation of it on selinuxproject.org or in The >> SELinux Notebook v4 abo

Bug#849637: [DSE-Dev] Bug#849637: /sys/devices/system/cpu/online SELinux context

2016-12-31 Thread Dominick Grift
ver here: > https://github.com/torvalds/linux/commit/8e01472078763ebc1eaea089a1adab75dd982ccd > (might be Linux 4.2? plenty enough for me) > > 2016-12-31 9:43 GMT+01:00 Dominick Grift <dac.overr...@gmail.com>: >> On 12/30/2016 10:51 PM, cgzones wrote: >>> B

Bug#849637: [DSE-Dev] Bug#849637: /sys/devices/system/cpu/online SELinux context

2016-12-31 Thread Dominick Grift
On 12/30/2016 10:51 PM, cgzones wrote: > But isn't genfscon with subcontexts only available on the /proc filesystem? If your kernel is not too old, then it also work for sysfs > > 2016-12-30 22:18 GMT+01:00 Dominick Grift <dac.overr...@gmail.com>: >> On Fri, 30 Dec 2016 1

Bug#849637: /sys/devices/system/cpu/online SELinux context

2016-12-30 Thread Dominick Grift
label LSB initscript is > > explicitly relabeling it during boot. > > > > Under systemd, that initscript is masked by the selinux-autorelabel.service. > > > > I was planning to add a tmpfiles for this, but apparently I forgot about it. > > > > Reassigning

Bug#849637: /sys/devices/system/cpu/online SELinux context

2016-12-30 Thread Dominick Grift
f possible > > -- Key fingerprint = 5F4D 3CDB D3F8 3652 FBD8 02D5 3B6C 5F1D 2C7B 6B02 https://sks-keyservers.net/pks/lookup?op=get=0x3B6C5F1D2C7B6B02 Dominick Grift signature.asc Description: OpenPGP digital signature

Bug#685992: /usr/sbin/update-flashplugin-nonfree: Please restore selinux context after installing files

2013-10-10 Thread Dominick Grift
Let's not compare init scripts with dpkg scripts. The issue at hand here is that dpkg, and dpkg scripts do not install files with the correct context. As a Fedora user, i am not very familiar with dpkg, but i can tell you that rpm, and the rpm script mechanism are SELinux aware. They use the

Bug#685992: /usr/sbin/update-flashplugin-nonfree: Please restore selinux context after installing files

2013-10-10 Thread Dominick Grift
On Thu, 2013-10-10 at 20:05 +0100, Adam D. Barratt wrote: On a related note, dpkg script is not a term generally used within Debian. Are you referring to what we'd call maintainer scripts? (Pre/post removal/installation scripts.) Yes i think that is what this is about. If i understand

Bug#685992: [Fwd: Re: Bug#685992: /usr/sbin/update-flashplugin-nonfree: Please restore selinux context after installing files]

2013-10-10 Thread Dominick Grift
Seems this this was not sent to the bugzilla Forwarded Message From: Dominick Grift dominick.gr...@gmail.com To: Adam D. Barratt a...@adam-barratt.org.uk Cc: 685...@bugs.debian.org Subject: Re: Bug#685992: /usr/sbin/update-flashplugin-nonfree: Please restore selinux context

Bug#722700: selinux-policy-default: Permission block_suspend in class capability2 not defined in policy.

2013-09-14 Thread Dominick Grift
Yes and you might want to build with UNK_PERMS = allow to avoid similar issues in the future -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org