[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#333834: linux-2.6: Please enabled "audit" support, selinux is pretty much unuseable otherwise.



On Fri, Oct 14, 2005 at 12:37:51AM +0200, Erich Schubert wrote:
> Package: linux-2.6
> Severity: normal
> 
> While you can run SELinux just fine without audit enabled, it's next to
> impossible to write or debug SELinux policy without it. But SELinux
> hasn't reached the stage where there is a perfect policy for everything,
> so users need to have the ability to debug their policy (or write new
> for applications htere is no policy for yet)
> 
> Please enable audit in the debian kernels ASAP.
> 
> The kernels are unuseable for typical SELinux deployment otherwise.

Hi Erich,

I'm not entirely sure which kernel config option this refers to, could
you dig that up? That not withstanding, your suggestion seems fine to
me, though I would appreciate some feedback from others. I've CCed
Manoj in case he has some oppinions.

-- 
Horms



Reply to: