All of lore.kernel.org
 help / color / mirror / Atom feed
* [refpolicy] roles_xguest.patch
@ 2009-03-04 21:42 Daniel J Walsh
  2009-03-31 14:07 ` Christopher J. PeBenito
  0 siblings, 1 reply; 9+ messages in thread
From: Daniel J Walsh @ 2009-03-04 21:42 UTC (permalink / raw)
  To: refpolicy

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://people.fedoraproject.org/~dwalsh/SELinux/F11/roles_xguest.patch


Policy for the xguest user.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org

iEYEARECAAYFAkmu9cYACgkQrlYvE4MpobM9tACgtEpVbYs4Z6ejDS579B9tOFTg
lpQAoLI3RdVr7ZNQLJbxd4XGsZPe9a2l
=T+qR
-----END PGP SIGNATURE-----

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
  2009-03-04 21:42 [refpolicy] roles_xguest.patch Daniel J Walsh
@ 2009-03-31 14:07 ` Christopher J. PeBenito
  0 siblings, 0 replies; 9+ messages in thread
From: Christopher J. PeBenito @ 2009-03-31 14:07 UTC (permalink / raw)
  To: refpolicy

On Wed, 2009-03-04 at 17:42 -0400, Daniel J Walsh wrote:
> http://people.fedoraproject.org/~dwalsh/SELinux/F11/roles_xguest.patch
> 
> 
> Policy for the xguest user.

Merged.

-- 
Chris PeBenito
Tresys Technology, LLC
(410) 290-1411 x150

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
@ 2010-08-26 22:33 Daniel J Walsh
  0 siblings, 0 replies; 9+ messages in thread
From: Daniel J Walsh @ 2010-08-26 22:33 UTC (permalink / raw)
  To: refpolicy

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://people.fedoraproject.org/~dwalsh/SELinux/F14/roles_xguest.patch

I want to allow guest user full access to apache ports
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.16 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org/

iEYEARECAAYFAkx268IACgkQrlYvE4MpobO0RwCfYJwaEswcbzLJxR+hInAWrVOL
98wAoNJNwmhDuDo/oOwl6wPzck78uPUl
=iBEQ
-----END PGP SIGNATURE-----

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
@ 2010-06-02 20:34 Daniel J Walsh
  0 siblings, 0 replies; 9+ messages in thread
From: Daniel J Walsh @ 2010-06-02 20:34 UTC (permalink / raw)
  To: refpolicy

http://people.fedoraproject.org/~dwalsh/SELinux/F14/roles_xguest.patch

Allow xguest to connect to dns and apache ports.

desktop now does to much connecting to these ports to only allow firefox.

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
  2010-02-23 19:42 Daniel J Walsh
@ 2010-03-08 15:36 ` Christopher J. PeBenito
  0 siblings, 0 replies; 9+ messages in thread
From: Christopher J. PeBenito @ 2010-03-08 15:36 UTC (permalink / raw)
  To: refpolicy

On Tue, 2010-02-23 at 14:42 -0500, Daniel J Walsh wrote:
> http://people.fedoraproject.org/~dwalsh/SELinux/F13/roles_xguest.patch
> 
> I am changing xguest to allow it to use the http network ports since 
> much of the desktop is moving this way.

Can you clarify this?  I don't understand what you mean by much of the
desktop moving to use httpd network ports.

-- 
Chris PeBenito
Tresys Technology, LLC
(410) 290-1411 x150

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
@ 2010-02-23 19:42 Daniel J Walsh
  2010-03-08 15:36 ` Christopher J. PeBenito
  0 siblings, 1 reply; 9+ messages in thread
From: Daniel J Walsh @ 2010-02-23 19:42 UTC (permalink / raw)
  To: refpolicy

http://people.fedoraproject.org/~dwalsh/SELinux/F13/roles_xguest.patch

I am changing xguest to allow it to use the http network ports since 
much of the desktop is moving this way.

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
  2009-11-12 21:10 Daniel J Walsh
@ 2010-02-17 15:17 ` Christopher J. PeBenito
  0 siblings, 0 replies; 9+ messages in thread
From: Christopher J. PeBenito @ 2010-02-17 15:17 UTC (permalink / raw)
  To: refpolicy

On Thu, 2009-11-12 at 16:10 -0500, Daniel J Walsh wrote:
> http://people.fedoraproject.org/~dwalsh/SELinux/F12/roles_xguest.patch
> 
> Fixes for xguest/kiosk mode.

Adding sys_admin to xguest_t for fusermount?  A restricted mount domain
sounds like a better idea.  Otherwise merged.

-- 
Chris PeBenito
Tresys Technology, LLC
(410) 290-1411 x150

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
@ 2009-11-12 21:10 Daniel J Walsh
  2010-02-17 15:17 ` Christopher J. PeBenito
  0 siblings, 1 reply; 9+ messages in thread
From: Daniel J Walsh @ 2009-11-12 21:10 UTC (permalink / raw)
  To: refpolicy

http://people.fedoraproject.org/~dwalsh/SELinux/F12/roles_xguest.patch

Fixes for xguest/kiosk mode.

^ permalink raw reply	[flat|nested] 9+ messages in thread

* [refpolicy] roles_xguest.patch
@ 2009-05-21 15:38 Daniel J Walsh
  0 siblings, 0 replies; 9+ messages in thread
From: Daniel J Walsh @ 2009-05-21 15:38 UTC (permalink / raw)
  To: refpolicy

http://people.fedoraproject.org/~dwalsh/SELinux/F11/roles_xguest.patch

Use java and mono with user_type so it has same privs.

Use nsplugin.

^ permalink raw reply	[flat|nested] 9+ messages in thread

end of thread, other threads:[~2010-08-26 22:33 UTC | newest]

Thread overview: 9+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2009-03-04 21:42 [refpolicy] roles_xguest.patch Daniel J Walsh
2009-03-31 14:07 ` Christopher J. PeBenito
2009-05-21 15:38 Daniel J Walsh
2009-11-12 21:10 Daniel J Walsh
2010-02-17 15:17 ` Christopher J. PeBenito
2010-02-23 19:42 Daniel J Walsh
2010-03-08 15:36 ` Christopher J. PeBenito
2010-06-02 20:34 Daniel J Walsh
2010-08-26 22:33 Daniel J Walsh

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.