siderolabs / pkgs

Mozilla Public License 2.0
35 stars 118 forks source link

Minimize SELinux libraries, drop unneeded binaries #1067

Closed dsseng closed 1 week ago

dsseng commented 3 weeks ago

We should likely drop all these binaries likely being installed together with libsepol or libselinux.

#288 0.200 Relabeled /rootfs/usr/sbin/avcstat from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/compute_av from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/compute_create from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/compute_member from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/compute_relabel from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getconlist from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getdefaultcon from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getenforce from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getfilecon from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getpidcon from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getpidprevcon from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getpolicyload from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getsebool from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/getseuser from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/matchpathcon from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/policyvers from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/sefcontext_compile from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selabel_digest from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selabel_get_digests_all_partial_matches from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selabel_lookup from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selabel_lookup_best_match from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selabel_partial_match from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selinux_check_access from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selinux_check_securetty_context from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selinuxenabled from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/selinuxexeccon from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/setenforce from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/setfilecon from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/togglesebool from <no context> to system_u:object_r:bin_t:s0
#288 0.200 Relabeled /rootfs/usr/sbin/validatetrans from <no context> to system_u:object_r:bin_t:s0