Hi,

On Thu, Apr 13, 2006 at 09:34:25PM +0200, Mivz wrote:
> Hello,
> 
> I was curious if the new SELinux reference policy is ready for Gentoo?

no, it's not yet ready. not every policy present in the old sample policy has 
been translated yet into modules of the new system. plus the selinux toolchain 
is still a moving target and will need time to mature.

> I have been working for my graduation project on a SELinux system that uses 
> kerberos 
> and ldap for user management.
> Bug #129795 shows some of the problems I have discovered with the current 
> policy.

well, the policy is ment to be minimal and to enable basic functionality to a 
system. it is expected that exotic setups will need on-site policy-related 
customizations.

> Now I would like to run the new policy so I won't have to rewrite everything, 
> but I am 
> afraid it will screw up my system.

use what we have now in the stable branch please.

> Could someone inform me on the current compatibility with Gentoo and what I 
> could 
> expect if I start using it?
> Also I would like to know if there is a estimated time on when it will be 
> integrated in 
> to Gentoo.

as I said it is not yet ready. the good part is that the upstream policy 
maintainer is Chris, so we might end up with a much more gentoo-friendly policy 
then what we had until now ;)

cheers,
peter

-- 
petre rodan
<[EMAIL PROTECTED]>
Developer,
Hardened Gentoo Linux 

Attachment: pgpPPwg3IB1PE.pgp
Description: PGP signature

Reply via email to