Correct SELinux & AppArmor rules for TokuBackup

Description

ps_tokudb_admin, when SELinux is found to be in enforcing/active state, should implement correct SELinux and AppArmor rules which will allow TokuBackup to work without having to disable SELinux etc. altogether.

Environment

None

has to be done before

Smart Checklist

Activity

Show:

Evgeniy Patlan May 3, 2024 at 8:21 AM

tokudb is deprecated

David Bennett December 29, 2018 at 7:30 PM

 

Should we close this ticket and/or reopen for ps-admin?

roel.vandepaar May 16, 2016 at 12:05 AM

Good thing is that the package is already there, i.e. it can evaluated to see if it suffices. It should likely also be checked by David Busby from a security POV.

Tomislav Plavcic May 13, 2016 at 11:23 AM

There was some discussion in the mails about how it currently works so this needs to be finished at least for selinux since we already have something there. The proposal would be to have the selinux packages (they need to be re-checked) and the change is needed for ps_tokudb_admin to check if the system is centos and with enabled selinux and instruct user to install the selinux package in that case (currently it says that selinux needs to be disabled).

roel.vandepaar October 5, 2015 at 8:51 AM

Discussed w/ on slack. Ack on both points.

Won't Do

Details

Assignee

Reporter

Time tracking

1m logged

Components

Priority

Smart Checklist

Created September 26, 2015 at 3:37 AM
Updated May 3, 2024 at 8:21 AM
Resolved May 3, 2024 at 8:21 AM