On Tue, 2012-01-10 at 10:59 -0500, Dmitri Pal wrote: > As there any SELinux implication with this feature?
I guess you mean the whole work not the email you quoted. In that case the answer is yes, clients must be allowed to access the files we create, but that is similar to the requirement to allow clients to access the sssd_nss pipes so adjusting the selinux policies should be easy. Simo. -- Simo Sorce * Red Hat, Inc * New York _______________________________________________ sssd-devel mailing list sssd-devel@lists.fedorahosted.org https://fedorahosted.org/mailman/listinfo/sssd-devel