On Saturday, February 12, 2011 @12:46 zulu, Tim <ignored_mailbox@xxxxxxxxxxxx> scribed: > Well, it /could/ stop either threat, however we don't run SELinux > as tightly as it could be run. I'm not sure who "we" is, but I run it in restricted mode and rarely even get told something has mislabeled files... and when I do get such a message, an autorelabel and reboot nearly-always fixes it (I don't mind rebooting once a month or so... else I would SU - and change their context manually). I don't remember the last time I got an actual denial. More than a year ago, for sure. For as many complaints as I see about SElinux in this list, I wonder why those posters don't step up over in the SELinux list and tell their woes... because I've never seen anyone there not get their problems fixed when they simply followed the steps given (even if the step was eventually where to file the bugzilla... then either the app got fixed or a new policy 'fixed' it). -- users mailing list users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe or change subscription options: https://admin.fedoraproject.org/mailman/listinfo/users Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines