Forums

Skip to content

Advanced search
  • Quick links
    • Unanswered topics
    • Active topics
    • Search
  • FAQ
  • Login
  • Register
  • Board index Assistance Installing Gentoo
  • Search

Selinux installation

Having problems with the Gentoo Handbook? If you're still working your way through it, or just need some info before you start your install, this is the place. All other questions go elsewhere.
Post Reply
Advanced search
8 posts • Page 1 of 1
Author
Message
flipper203
n00b
n00b
Posts: 32
Joined: Sun Aug 07, 2005 8:24 pm
Location: Paris

Selinux installation

  • Quote

Post by flipper203 » Sun Nov 05, 2006 5:35 pm

Hello, I tryed to install SElinux, following the handbook. I have some questions about this handbook:

Which is the SELinux profile for gentoo 2006.1 ? in the handbook they say to link to the profile /usr/portage/profiles/selinux/2005.1/x86 which is a 2005 profile.

When the hardened sources is installed, do we have to change the link of /usr/src/linux to take the hardened sources when recompiling the kernel ?
Top
nixnut
Bodhisattva
Bodhisattva
User avatar
Posts: 10974
Joined: Fri Apr 09, 2004 1:43 pm
Location: the dutch mountains

  • Quote

Post by nixnut » Sun Nov 05, 2006 5:37 pm

The 2006.1 selinux profile is for the new reference policy. But you can't use that profile yet if you want to harden your system with pie/ssp. The new profile needs gcc-4.1 and glibc-2.4
Please add [solved] to the initial post's subject line if you feel your problem is resolved. Help answer the unanswered

talk is cheap. supply exceeds demand
Top
flipper203
n00b
n00b
Posts: 32
Joined: Sun Aug 07, 2005 8:24 pm
Location: Paris

  • Quote

Post by flipper203 » Sun Nov 05, 2006 5:41 pm

so for the moment I have to use the 2005 profile? (Sorry but I m trying to install SElinux since some days and I ll try to do a full reinstall, so I want to be sure that it will work!!)
Top
nixnut
Bodhisattva
Bodhisattva
User avatar
Posts: 10974
Joined: Fri Apr 09, 2004 1:43 pm
Location: the dutch mountains

  • Quote

Post by nixnut » Sun Nov 05, 2006 6:23 pm

Yeah, best to stick with the 2005.1 profile for now. That way you can follow the guide.
Please add [solved] to the initial post's subject line if you feel your problem is resolved. Help answer the unanswered

talk is cheap. supply exceeds demand
Top
flipper203
n00b
n00b
Posts: 32
Joined: Sun Aug 07, 2005 8:24 pm
Location: Paris

  • Quote

Post by flipper203 » Mon Nov 13, 2006 8:27 pm

So, I tried to do a clean install of gentoo, then SELinux, following the handbook but I still have an issue, when I execute the sestatus command, I get the following error:

Code: Select all

SELinux status:                 enabled
SELinuxfs mount:                /selinux
Current mode:                   permissive
Mode from config file:          error (No such file or directory)
Policy version:                 20
Policy from config file:        security
But the selinux-base-policy is installed

Code: Select all

([ebuild   R   ] sec-policy/selinux-base-policy-20051022-r1  USE="-build" 0 kB)
The directory /etc/selinux is missing in my installation. I don't understand what I did wrong. Could anybody give me a clue about this problem, I m really anoyed about this.

And I can't emerge pam, I get an error.

my kernel version is 2.6.17-hardened-r1, and it is pam-0.78-r3 that doesn't emerge

Thanks
Last edited by flipper203 on Tue Nov 14, 2006 8:50 pm, edited 1 time in total.
Top
flipper203
n00b
n00b
Posts: 32
Joined: Sun Aug 07, 2005 8:24 pm
Location: Paris

  • Quote

Post by flipper203 » Tue Nov 14, 2006 8:48 pm

up, nobody has any clue for me?
Top
ovaron_gen
n00b
n00b
Posts: 4
Joined: Sun Aug 06, 2006 7:07 pm

  • Quote

Post by ovaron_gen » Sun Nov 19, 2006 12:44 am

flipper203 wrote:up, nobody has any clue for me?
i dont think the "Mode from config file: error (No such file or directory) " is a problem.
Top
nixnut
Bodhisattva
Bodhisattva
User avatar
Posts: 10974
Joined: Fri Apr 09, 2004 1:43 pm
Location: the dutch mountains

  • Quote

Post by nixnut » Sun Nov 19, 2006 2:11 pm

Try asking on the gentoo-hardened mailling list or on irc in #gentoo-hardened on the freenode network
Please add [solved] to the initial post's subject line if you feel your problem is resolved. Help answer the unanswered

talk is cheap. supply exceeds demand
Top
Post Reply

8 posts • Page 1 of 1

Return to “Installing Gentoo”

Jump to
  • Assistance
  • ↳   News & Announcements
  • ↳   Frequently Asked Questions
  • ↳   Installing Gentoo
  • ↳   Multimedia
  • ↳   Desktop Environments
  • ↳   Networking & Security
  • ↳   Kernel & Hardware
  • ↳   Portage & Programming
  • ↳   Gamers & Players
  • ↳   Other Things Gentoo
  • ↳   Unsupported Software
  • Discussion & Documentation
  • ↳   Documentation, Tips & Tricks
  • ↳   Gentoo Chat
  • ↳   Gentoo Forums Feedback
  • ↳   Duplicate Threads
  • International Gentoo Users
  • ↳   中文 (Chinese)
  • ↳   Dutch
  • ↳   Finnish
  • ↳   French
  • ↳   Deutsches Forum (German)
  • ↳   Diskussionsforum
  • ↳   Deutsche Dokumentation
  • ↳   Greek
  • ↳   Forum italiano (Italian)
  • ↳   Forum di discussione italiano
  • ↳   Risorse italiane (documentazione e tools)
  • ↳   Polskie forum (Polish)
  • ↳   Instalacja i sprzęt
  • ↳   Polish OTW
  • ↳   Portuguese
  • ↳   Documentação, Ferramentas e Dicas
  • ↳   Russian
  • ↳   Scandinavian
  • ↳   Spanish
  • ↳   Other Languages
  • Architectures & Platforms
  • ↳   Gentoo on ARM
  • ↳   Gentoo on PPC
  • ↳   Gentoo on Sparc
  • ↳   Gentoo on Alternative Architectures
  • ↳   Gentoo on AMD64
  • ↳   Gentoo for Mac OS X (Portage for Mac OS X)
  • Board index
  • All times are UTC
  • Delete cookies

© 2001–2026 Gentoo Foundation, Inc.

Powered by phpBB® Forum Software © phpBB Limited

Privacy Policy

 

 

magic