[tomoyo-dev-en 287] kernel 2.6.38 (ubuntu 11.04) + allow_ioctl, mksock and chmod not working

Back to archive index

Horvath Andras han****@log69*****
Thu Jun 23 21:10:05 JST 2011


Hi,

I'd like to ask some help again.

I create rules with allow_ioctl, allow_mksock and allow_chmod, and i
cannot load it back to kernel with "tomoyo-loadpolicy fa" command.

Some of my specific rules are:

allow_chmod /home/\*/.config/ibus/\*/
allow_ioctl /dev/urandom
allow_ioctl anon_inode:inotify
allow_ioctl socket:[\*]
allow_mksock /tmp/orbit-andras/\*

and they simply don't get reloaded into the domain_policy, it doesn't
get updated under /sys/kernel/security/.

Can it be that the Ubuntu packaged kernel is rather buggy? Tomoyo
wasn't even working with it at all in their RC before release, i had to
report the bug.

It comes with kernel 2.6.38.

This may be a rather too little information on the misbehave, but i
don't have any other info. Everything else seems to work as expected
(anything for example that works on kernel 2.6.32 too).


Thanks in advance!

Andras




More information about the tomoyo-dev-en mailing list
Back to archive index