[tomoyo-users-en 311] Re: Probable Tomoyo bug on Debian 6.0.1

アーカイブの一覧に戻る
Tetsuo Handa from-****@I-lov*****
Mon Apr 11 20:13:00 JST 2011


Horvath Andras wrote:
> When i change 1 to 3, then run:
> tomoyo-loadpolicy fa
> tomoyo-savepolicy
> 
> Then it stays in profile 1 showing the same as above.

Excuse me, how did you change from 1 to 3?

Using tomoyo-editpolicy ? (If so, you don't need to run tomoyo-loadpolicy .)

Editing /etc/tomoyo/domain_policy.conf and loading it via tomoyo-loadpolicy ?
(If so, you don't need to run tomoyo-savepolicy after tomoyo-loadpolicy .)

> I may have found a bug in Tomoyo. I have a policy file where i cannot
> update a domain from learning mode to enforcing mode. It doesn't work
> even after a full reboot.

Please make sure that "cat /sys/kernel/security/tomoyo/manager" shows
programs which update policy via /sys/kernel/security/tomoyo/ interface.
You can also check "dmesg" output. If "dmesg" is complaining,
add the program to /etc/tomoyo/manager.conf and reboot.




More information about the tomoyo-users-en mailing list
アーカイブの一覧に戻る