On Fri, Aug 26, 2011 at 2:49 PM, Todd Lyons <tlyons_at_ivenue.com> wrote:
> On Fri, Aug 26, 2011 at 7:47 AM, Steve Jenkins <stevejenkins_at_gmail.com> wrote:
>>>> Might also watch this for selinux ideas.
>>>> https://bugzilla.redhat.com/show_bug.cgi?id=718219
>>> Ah, yeah, we need to handle selinux scenarios too. I hate SELinux. :-(
>> "I maintain in Fedora spamass-milter and milter-regex, and I also have
>> local packages for smf-spf and smf-sav. I have SELinux policy for all
>> of these, and wrote the milter policy in SELinux reference policy,
>> which is what Fedora's SELinux policy is based on.
>
> I hadn't looked in a few months, but googling with renewed vigor
> today, I found this:
>
> http://wiki.centos.org/HowTos/SELinux
>
> It is surprisingly good and easy to read. Things make a LOT of sense.
> Read it and I bet the things that Paul does will clear up all our
> fuzziness on this.
Wow. That WAS good and easy to read. Made me want to turn all my
systems back on to permissive to start, and then see what's logging. I
am optimistic about getting a working policy for opendkim.
SteveJ
Received on Sat Aug 27 2011 - 07:59:01 PST
This archive was generated by hypermail 2.2.0+W3C-0.50 : Sat Aug 27 2011 - 13:50:05 PST