[tomoyo-users-en 709] Re: Set profile in a child process

Back to archive index
Pannbacker, Ole Ole.P****@igefa*****
Wed Jun 5 21:21:43 JST 2019


Okay I've set profile 1 to the sshd process, started by the init system and rebooted after saving the policys. however the problem remains.  


________________________________________
Von: Tetsuo Handa <pengu****@i-lov*****>
Gesendet: Mittwoch, 5. Juni 2019 13:57
An: Pannbacker, Ole
Cc: tomoy****@lists*****
Betreff: Re: [tomoyo-users-en 707] Set profile in a child process

Hello.

Thank you for using TOMOYO.

On 2019/06/05 20:47, Pannbacker, Ole wrote:
>
>
> I recently started using TOMOYO and tried to set sshd to learning mode, however the child processes stayed on mode 0.

Profile number of current domain is inherited to a child domain
only when that child domain was newly created by current domain.

That is, if you changed profile number of domain for sshd process
when domains for child processes already exist, profile number of
domains for child processes does not change.

In this case, please explicitly change profile number of domains
for child processes.

>
>
> 5: 1 +- sshd (4093) <kernel> /usr/sbin/sshd
> 6: 0 +- bash (4101) <kernel> /usr/sbin/sshd /bin/bash
> 7: 0 +- tomoyo-editpoli (4125) <kernel> /usr/sbin/sshd /bin/bash /usr/sbin/tomoyo-editpolicy
> 8: 1 +- sshd (4171) <kernel> /usr/sbin/sshd
> 9: 0 +- bash (4176) <kernel> /usr/sbin/sshd /bin/bash
>
>
> Kind regards
>
> Ole Pannbacker
>
>
> _______________________________________________
> tomoyo-users-en mailing list
> tomoy****@lists*****
> https://lists.osdn.me/mailman/listinfo/tomoyo-users-en
>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: Screenshot_20190605_141940.png
Type: image/png
Size: 378168 bytes
Desc: Screenshot_20190605_141940.png
URL: <https://lists.osdn.me/mailman/archives/tomoyo-users-en/attachments/20190605/a47a0d0b/attachment.png>


More information about the tomoyo-users-en mailing list
Back to archive index