fedora-selinux / selinux-policy-contrib

Fedora Policy Contributions
39 stars 66 forks source link

Allow for confined users acces to wtmp #359

Open Koncpa opened 4 years ago

Koncpa commented 4 years ago

Allow for confined users screen acess to wtmp, via interface application_exec() and auth_rw_login_records(). Macro application_exec() allow execute application executables in the caller domain. Interface auth_rw_login_records() allow read and write login records.

Bugzilla: https://bugzilla.redhat.com/show_bug.cgi?id=1767745 Fedora COPR: https://copr.fedorainfracloud.org/coprs/pkoncity/selinux-policy/build/1728304/