[DSE-Dev] Bug#752245: selinux-basics: An USB 3.0 disk does not work with SELinux

2014-06-21 Thread Victor Porton
Package: selinux-basics Version: 0.5.2 Severity: important Dear Maintainer, With SELINUX=permissive it does not work. However it works with SELINUX=disabled This happens when SELINUX=permissive and I attach an USB 3.0 disk: [ 25.728703] SELinux: initialized (dev fuse, type fuse), uses

[DSE-Dev] Bug#752245: Bug#752245: selinux-basics: An USB 3.0 disk does not work with SELinux

2014-06-21 Thread Victor Porton
With SELINUX=disabled it works well: [ 51.602810] usb 3-2: new SuperSpeed USB device number 2 using xhci_hcd [ 51.620112] usb 3-2: Parent hub missing LPM exit latency info. Power management will be impacted. [ 51.622444] usb 3-2: New USB device found, idVendor=1058, idProduct=0730 [

Re: [DSE-Dev] Again about managing CIL modules in Debian

2014-06-03 Thread Victor Porton
...@mikapflueger.de: Hi Victor, Victor Porton por...@narod.ru wrote:  I have said in this list that we have plenty of time to decide on  this issue, because upstream cilcilc is not yet ready for production  use. But this does not mean that we should refrain from solving this  issue. Why nobody answers

[DSE-Dev] Again about managing CIL modules in Debian

2014-05-27 Thread Victor Porton
sophisticated, such as an additional field in package description file or whatever. Please discuss. I hope we will have stable upstream secilc soon and we will need to solve how to manage it in Debian. -- Victor Porton - http://portonvictor.org ___ SELinux-devel

[DSE-Dev] We need to decide how to install CIL modules

2014-05-14 Thread Victor Porton
of time to decide on this: The secilc binary is yet too unstable for a production system. See my earlier emails for my suggestions. -- Victor Porton - http://portonvictor.org ___ SELinux-devel mailing list SELinux-devel@lists.alioth.debian.org http

[DSE-Dev] On structure and installation of CIL modules

2014-05-12 Thread Victor Porton
that a module is active only when a compatible base policy is active. The simplest way to resolve this issue is to put the burden to activate only compatible additional modules on the system administrator. Any other ideas? -- Victor Porton - http://portonvictor.org

Re: [DSE-Dev] I've created secilc package, please sponsor

2014-05-11 Thread Victor Porton
package to go into unstable. 11.05.2014, 16:05, Mika Pflüger deb...@mikapflueger.de: Hi Victor, Victor Porton por...@narod.ru wrote:  I've created CIL compiler for Debian:  http://mentors.debian.net/package/secilc  Please sponsor this my package. Thanks for your work on secilc, it would

[DSE-Dev] I've created secilc package, please sponsor

2014-05-10 Thread Victor Porton
I've created CIL compiler for Debian: http://mentors.debian.net/package/secilc Please sponsor this my package. Note: It was tested only on x86. -- Victor Porton - http://portonvictor.org ___ SELinux-devel mailing list SELinux-devel

[DSE-Dev] Bug#747106: selinux-policy-default: Unistalling selinux-policy-default is buggy

2014-05-05 Thread Victor Porton
Package: selinux-policy-default Version: 2:2.20140421-1 Severity: important Dear Maintainer, First I ran: # apt-get remove selinux-policy-default After reboot the policy was not removed and X11 hasn't started. That it was not removed by `apt-get remove` is the first bug. The second bug: I

[DSE-Dev] Bug#747106: Ammendment on what I mean in the bug report

2014-05-05 Thread Victor Porton
I've said After reboot the policy was not removed. I mean files in /etc/selinux/default/ which should be removed by `apt-get remove selinux-policy-default` were not removed. -- Victor Porton - http://portonvictor.org ___ SELinux-devel mailing list

[DSE-Dev] Bug#747111: selinux-basics: MCS mode is missing in /etc/selinux/config

2014-05-05 Thread Victor Porton
Package: selinux-basics Version: 0.5.2 Severity: normal Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? * What exactly did you do (or not do) that was effective (or ineffective)? * What was the outcome

[DSE-Dev] Bug#747106: I disagree with closing

2014-05-05 Thread Victor Porton
installed. The system should not cease to work only because there are no currently installed policy. It is a bug (of Debian or of kernel, I don't know). I don't propose to disable selinux when uninstalling selinux-policy-default but to work with an empty policy. -- Victor Porton - http