[packagers] Nagios + selinux

Dag Wieers dag at wieers.com
Thu Mar 13 21:13:28 CET 2008


On Thu, 8 Mar 2007, Christoph Maser wrote:

> Dag Wieers schrieb:
>> Please let me know if you have learned more and tell me what specific
>> changes are required.
>
> Sorry but no good news. I've studied RedHats documentation about
> building and deploying custom selinux rules. As i read it its quite
> monolithic and deploying custom rules would mean replacing compiled
> rule-files which are part of the base installation which i think is a
> no-go. I also read that there will be changes in the future so i will
> reevaluate this issue once Centos 5 hits the street.
>
> If anyone knows better and knows an elegant way of deploying additional
> custom rules (including modified rules for httpd) please let me know.

To come back to the SELinux issue with RPMforge. There is a huge problem 
with the differences in SELinux forcing us to either provide different 
rules-files for different distributions, or not providing SELinux support 
at all.

I know that last bit is not an option, so we probably have to work with 
macros per distribution to support SELinux in a transparant way. Can 
anyone shed some light on this ?

PS I wish I could have attended Ralph Angenendt's SELinux presentation, or 
the one from Jens Kuehnel though.

-- 
--   dag wieers,  dag at wieers.com,  http://dag.wieers.com/   --
[Any errors in spelling, tact or fact are transmission errors]


More information about the packagers mailing list