-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,

My system: Debian 6.0.1 amd64 kernel 2.6.32-5 with tomoyo-tools version
2.2.0-20100225-1.

I may have found a bug in Tomoyo. I have a policy file where i cannot
update a domain from learning mode to enforcing mode. It doesn't work
even after a full reboot.

The particular domain looks like this (i was testing Tomoyo with this
binary):

<kernel> /usr/bin/wget
use_profile 1

When i change 1 to 3, then run:
tomoyo-loadpolicy fa
tomoyo-savepolicy

Then it stays in profile 1 showing the same as above.

Domain policy file contains 4954 lines.

My profile.conf is:

0-COMMENT=-----Disabled Mode-----
0-MAC_FOR_FILE=disabled
0-MAX_ACCEPT_ENTRY=10000
0-TOMOYO_VERBOSE=disabled
1-COMMENT=-----Learning Mode-----
1-MAC_FOR_FILE=learning
1-MAX_ACCEPT_ENTRY=10000
1-TOMOYO_VERBOSE=disabled
2-COMMENT=-----Permissive Mode-----
2-MAC_FOR_FILE=permissive
2-MAX_ACCEPT_ENTRY=10000
2-TOMOYO_VERBOSE=enabled
3-COMMENT=-----Enforcing Mode-----
3-MAC_FOR_FILE=enforcing
3-MAX_ACCEPT_ENTRY=10000
3-TOMOYO_VERBOSE=enabled


I gladly send my full domain and exception config files to anybody in
private if i get respond.


Thanks!

Andras
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAk2iyXAACgkQAx9+mHylNBg6KgCgouj7lrkfVKguCSgPz5RrfwtF
3xAAoMKghQUvxceaXMBtGiF1hhZD7HIX
=6JZK
-----END PGP SIGNATURE-----
_______________________________________________
tomoyo-users-en mailing list
[email protected]
http://lists.sourceforge.jp/mailman/listinfo/tomoyo-users-en

Reply via email to