cryptohomed should migrate selinux context from unlabeled (or old labels) after decrypting |
||
Issue descriptionRestoring context for homefs is not possible until the home directory is mounted decrypted by cryptohomed. Cryptohomed should restore selinux context if a context upgrade is needed upon MountEx.
,
Jan 10
The following revision refers to this bug: https://chromium.googlesource.com/chromiumos/overlays/chromiumos-overlay/+/b657e6da54d0b42892dc9fc8bf37cf51370e82be commit b657e6da54d0b42892dc9fc8bf37cf51370e82be Author: Qijiang Fan <fqj@chromium.org> Date: Thu Jan 10 21:58:33 2019 cryptohome: add selinux to IUSE to pass to platform2.py This will pass selinux use flag to use.selinux for platform2.py --action=compile for package chromeos-base/cryptohome BUG= chromium:916927 ,b:116072767 TEST=FEATURES=test USE="$USE selinux" emerge-$BOARD cryptohome Change-Id: I70bb8da5601ddc4fc811a4ac283c9c22074e912c Reviewed-on: https://chromium-review.googlesource.com/1404778 Commit-Ready: Qijiang Fan <fqj@google.com> Tested-by: Qijiang Fan <fqj@google.com> Reviewed-by: Mike Frysinger <vapier@chromium.org> [modify] https://crrev.com/b657e6da54d0b42892dc9fc8bf37cf51370e82be/chromeos-base/cryptohome/cryptohome-9999.ebuild
,
Jan 10
The following revision refers to this bug: https://chromium.googlesource.com/chromiumos/overlays/chromiumos-overlay/+/f46703c0d74d7ef8b2b71adbc3b3c413e5b7f6c6 commit f46703c0d74d7ef8b2b71adbc3b3c413e5b7f6c6 Author: Qijiang Fan <fqj@chromium.org> Date: Thu Jan 10 21:58:34 2019 features/selinux: add selinux use flag for cryptohome BUG= chromium:916927 ,b:116072767 TEST=build_packages CQ-DEPEND=CL:1401966,CL:1404778 Change-Id: Iad2ad7bebc4b44d6d2823ae91da0650c77bc4a9d Reviewed-on: https://chromium-review.googlesource.com/1404779 Commit-Ready: Qijiang Fan <fqj@google.com> Tested-by: Qijiang Fan <fqj@google.com> Reviewed-by: Mike Frysinger <vapier@chromium.org> [modify] https://crrev.com/f46703c0d74d7ef8b2b71adbc3b3c413e5b7f6c6/profiles/features/selinux/package.use
,
Jan 10
The following revision refers to this bug: https://chromium.googlesource.com/chromiumos/platform2/+/723561faf594cbce1bbddf8a5ea11c6c313a266d commit 723561faf594cbce1bbddf8a5ea11c6c313a266d Author: Qijiang Fan <fqj@chromium.org> Date: Thu Jan 10 21:58:33 2019 cryptohome: restore selinux context upon mount. BUG= chromium:916927 ,b:116072767 TEST=rm -rf /home/root/android-data && chcon u:object_r:unlabeled:s0 .shadow/uid/mount/ -R && re-login Change-Id: Ic5e435270a816893af9e93fcdfbc2d57d2f092db Reviewed-on: https://chromium-review.googlesource.com/1401966 Commit-Ready: Qijiang Fan <fqj@google.com> Tested-by: Qijiang Fan <fqj@google.com> Reviewed-by: Mike Frysinger <vapier@chromium.org> [modify] https://crrev.com/723561faf594cbce1bbddf8a5ea11c6c313a266d/cryptohome/mount.cc [modify] https://crrev.com/723561faf594cbce1bbddf8a5ea11c6c313a266d/cryptohome/libs/BUILD.gn [modify] https://crrev.com/723561faf594cbce1bbddf8a5ea11c6c313a266d/cryptohome/mount_unittest.cc [modify] https://crrev.com/723561faf594cbce1bbddf8a5ea11c6c313a266d/cryptohome/mock_platform.h [modify] https://crrev.com/723561faf594cbce1bbddf8a5ea11c6c313a266d/cryptohome/platform.cc [modify] https://crrev.com/723561faf594cbce1bbddf8a5ea11c6c313a266d/cryptohome/platform.h
,
Jan 15
|
||
►
Sign in to add a comment |
||
Comment 1 by bugdroid1@chromium.org
, Dec 27