<?xml version="1.0" encoding="UTF-8"?>
<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns="http://purl.org/rss/1.0/" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:syn="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/">
  <channel rdf:about="http://blog.gmane.org/gmane.linux.rsbac">
    <title>gmane.linux.rsbac</title>
    <link>http://blog.gmane.org/gmane.linux.rsbac</link>
    <description/>
    <syn:updatePeriod>hourly</syn:updatePeriod>
    <syn:updateFrequency>1</syn:updateFrequency>
    <syn:updateBase>1901-01-01T00:00+00:00</syn:updateBase>
    <items>
      <rdf:Seq>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2229"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2227"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2225"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2224"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2222"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2220"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2216"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2204"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2201"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2196"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2191"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2187"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2183"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2179"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2177"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2176"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2175"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2168"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2167"/>
        <rdf:li rdf:resource="http://comments.gmane.org/gmane.linux.rsbac/2166"/>
      </rdf:Seq>
    </items>
    <image rdf:resource="http://gmane.org/img/gmane-25t.png"/>
    <textinput rdf:resource=""/>
  </channel>
  <image rdf:about="http://gmane.org/img/gmane-25t.png">
    <title>Gmane</title>
    <url>http://gmane.org/img/gmane-25t.png</url>
    <link>http://gmane.org</link>
  </image>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2229">
    <title>daz</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2229</link>
    <description>&lt;pre&gt;Hi list,

I get tons of this entries in the logfile.

Wed Jun 19 17:59:30 2013 :70031845741|daz_reset_scanned(): pid 15593 
(rklogd), resetting scanned status!

Jens
&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2013-06-19T16:01:53</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2227">
    <title>kernel build</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2227</link>
    <description>&lt;pre&gt;Hi list,

i try the latest kernel linux-3.9.y (.6)
I got the follow compile errors.

rsbac/adf/adf_main.c: In function ‘rsbac_fake_uid’:
rsbac/adf/adf_main.c:3204:8: error: wrong type argument to unary 
exclamation mark
rsbac/adf/adf_main.c:3207:7: error: incompatible types when returning 
type ‘kuid_t’ but ‘rsbac_uid_t’ was expected
rsbac/adf/adf_main.c:3213:9: error: incompatible types when returning 
type ‘kuid_t’ but ‘rsbac_uid_t’ was expected
rsbac/adf/adf_main.c:3225:9: error: incompatible types when returning 
type ‘kuid_t’ but ‘rsbac_uid_t’ was expected
rsbac/adf/adf_main.c:3233:11: error: incompatible types when returning 
type ‘kuid_t’ but ‘rsbac_uid_t’ was expected
rsbac/adf/adf_main.c: In function ‘rsbac_fake_euid’:
rsbac/adf/adf_main.c:3243:8: error: wrong type argument to unary 
exclamation mark
rsbac/adf/adf_main.c:3246:7: error: incompatible types when returning 
type ‘kuid_t’ but ‘rsbac_uid_t’ was expected
rsbac/adf/adf_main.c:3253:9: error: in&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2013-06-18T05:35:56</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2225">
    <title>wrong load</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2225</link>
    <description>&lt;pre&gt;Hi list,

I guess that the value what is showing by top is wrong.
See attachment.

Kernel:
Linux jaschtschik 3.2.45-rsbac-3+ #4 SMP Mon Jun 3 11:26:41 CEST 2013
x86_64 AMD Athlon(tm) 64 X2 Dual Core Processor 3800+ AuthenticAMD
GNU/Linux

Grüße
Jens
_______________________________________________
rsbac mailing list
rsbac&amp;lt; at &amp;gt;rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2013-06-04T18:55:49</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2224">
    <title>nfs</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2224</link>
    <description>&lt;pre&gt;
No, is the same.
I also cannot kill this process with ctrl + c. Have on other shell kill
this process.


&lt;/pre&gt;</description>
    <dc:creator>igraltist</dc:creator>
    <dc:date>2013-06-03T09:59:33</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2222">
    <title>nfs</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2222</link>
    <description>&lt;pre&gt;Hi list,

I try on kernel 3.2.45 to get nfs working but its fail.
So far all is working but when I on client side on the mounted area a
strace touch /my/nfs/testfile its hangs on open the file. 
I get no errors in any logfile.

Grüße
Jens  



_______________________________________________
rsbac mailing list
rsbac&amp;lt; at &amp;gt;rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2013-06-03T07:21:53</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2220">
    <title>linux-3.9.y</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2220</link>
    <description>&lt;pre&gt;Hi,

latest pull on linux-3.9.y(3.9.3) produce this error.
 
rsbac/data_structures/gen_lists.c: In Funktion »rsbac_list_ta_commit«:
rsbac/data_structures/gen_lists.c:8166:29: Fehler: Ungültige Operanden
für binäres != (haben »rsbac_uid_t« und »kuid_t«)
rsbac/data_structures/gen_lists.c: In Funktion »rsbac_list_ta_forget«:
rsbac/data_structures/gen_lists.c:8276:29: Fehler: Ungültige Operanden
für binäres != (haben »rsbac_uid_t« und »kuid_t«)
rsbac/data_structures/gen_lists.c: In Funktion »rsbac_list_ta_refresh«:
rsbac/data_structures/gen_lists.c:8381:29: Fehler: Ungültige Operanden
für binäres != (haben »rsbac_uid_t« und »kuid_t«)
rsbac/adf/adf_main.c: In Funktion »rsbac_fake_uid«:
rsbac/adf/adf_main.c:3204:8: Fehler: Argument falschen Typs für unäres
Ausrufungszeichen
rsbac/adf/adf_main.c:3207:7: Fehler: unverträgliche Typen bei Rückgabe
von Typ »kuid_t«, aber »rsbac_uid_t« wurde erwartet
rsbac/adf/adf_main.c:3213:9: Fehler: unverträgliche Typen bei Rückgabe
von Typ »k&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2013-05-22T21:42:30</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2216">
    <title>CVE-2013-2094: Linux privilege escalation</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2216</link>
    <description>&lt;pre&gt;Hi,

few days ago a quite serious linux kernel vulnerability was announced that
goes all the way from 2.6.37 to 3.8.9;

-
https://isc.sans.edu/diary/CVE-2013-2094%3A+Linux+privilege+escalation/15803

Has this been fixed in RSBAC enabled kernels?
&lt;/pre&gt;</description>
    <dc:creator>Mikko Rinne</dc:creator>
    <dc:date>2013-05-18T01:25:14</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2204">
    <title>A problem when pulling linux-3.8.y</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2204</link>
    <description>&lt;pre&gt;Hey,

I just ran in to a small problem when trying to clone linux-3.8.y;

# git clone git://rsbac.org/linux-3.8.y linux-3.8
Cloning into 'linux-3.8'...
remote: fatal: Out of memory, realloc failed
remote: aborting due to possible repository corruption on the remote side.
fatal: early EOF
fatal: index-pack failed

I tried cloning with two different comps, both saying that.

But when pulling down linux-3.7.y, that one works. Still thought to mention
this,

Regards,
Mikko Rinne
&lt;/pre&gt;</description>
    <dc:creator>Mikko Rinne</dc:creator>
    <dc:date>2013-05-13T12:23:08</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2201">
    <title>PaX options required by clamav</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2201</link>
    <description>&lt;pre&gt;







After almost being crazy because of this question I finished with my
Dazuko problems related, CONFIG_PAX_USERCOPY and
CONFIG_PAX_MEMORY_UDEREF must be disabled in the kernel config.

I think this point should be introduced in the handbook in DAZ module,
until this will be truth, I expect this could serve as a substitution if
someone search info related about this.

Thanks a lot Amon for your points I got disoriented at all before this.

PD: I think that PaX Softmode should be put in the handbook too, at
least a point that it does only permit anyone to set/read PaX Flags
until my Known without disabling any functionality (one softmode
approach could be for example setting all flags to permxs, but others as
uderef, usercopy etc etc got free to kill whatever they want)

Another question useful to the handbook (I will not finish until our
beloved "handbook" would need 300 kg of paper to print....at least) is
some tips about configuration of su, removing for example pam_rootok
(incompatible with the follo&lt;/pre&gt;</description>
    <dc:creator>Javier Juan Martínez Cabezón</dc:creator>
    <dc:date>2013-04-23T22:25:27</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2196">
    <title>(no subject)</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2196</link>
    <description>&lt;pre&gt;
http://ceramiccoatingsfl.com/www.google.searchnew.addnewlife3.php
&lt;/pre&gt;</description>
    <dc:creator>somayeh razeghi</dc:creator>
    <dc:date>2013-03-21T21:54:39</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2191">
    <title>Invitation to connect on LinkedIn</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2191</link>
    <description>&lt;pre&gt;LinkedIn
------------



RSBAC,

I'd like to add you to my professional network on LinkedIn.

- Asaf

Asaf Gery
Consultant at My own business
Israel

Confirm that you know Asaf Gery:
https://www.linkedin.com/e/-2xixxg-hdmb1u6n-5m/isd/11294769667/eBlYdvLF/?hs=false&amp;amp;tok=3ZPu5aEmhgllE1

--
You are receiving Invitation to Connect emails. Click to unsubscribe:
http://www.linkedin.com/e/-2xixxg-hdmb1u6n-5m/XL-ahFm3iL_xijDWcV-GJPBJCJ/goo/rsbac%40rsbac%2Eorg/20061/I3736010279_1/?hs=false&amp;amp;tok=0C90nlhZxgllE1

(c) 2012 LinkedIn Corporation. 2029 Stierlin Ct, Mountain View, CA 94043, USA.
&lt;/pre&gt;</description>
    <dc:creator>Asaf Gery</dc:creator>
    <dc:date>2013-02-26T00:16:17</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2187">
    <title>git pull has conflicts</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2187</link>
    <description>&lt;pre&gt;Hi list,

I did a git pull and got this

remote: Counting objects: 2016, done.
remote: Compressing objects: 100% (435/435), done.
remote: Total 1519 (delta 1156), reused 1437 (delta 1077)
Empfange Objekte: 100% (1519/1519), 850.72 KiB | 942 KiB/s, done.
Löse Unterschiede auf: 100% (1156/1156), completed with 481 local
objects.
Von git://rsbac.org/linux-3.7.y
 + 193c6fb...fd76b0f master     -&amp;gt; origin/master  (Aktualisierung
erzwungen)
 * [neue Markierung] v3.7.3     -&amp;gt; v3.7.3
Von git://rsbac.org/linux-3.7.y
 * [neue Markierung] v3.7.4     -&amp;gt; v3.7.4
 * [neue Markierung] v3.7.5     -&amp;gt; v3.7.5
automatische Zusammenführung von kernel/signal.c
automatische Zusammenführung von kernel/sched/core.c
automatische Zusammenführung von kernel/ptrace.c
automatische Zusammenführung von kernel/module.c
automatische Zusammenführung von init/main.c
automatische Zusammenführung von include/linux/sched.h
automatische Zusammenführung von fs/namei.c
KONFLIKT (Inhalt): Zusammenführungskonflikt in fs/namei.c
automatische Zus&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2013-02-10T18:40:23</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2183">
    <title>3.1.5 kernel crashes when using CAP policy module</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2183</link>
    <description>&lt;pre&gt;Description
For a few years now I've been running 2.6.35.1-rsbac without a problem with
FF, CAP, AUTH and ACL policies, but I think it's time to start using kernel
3.x series.

I'm currently installing an RSBAC development server as VMware virtual
server, hoping that after I've installed it, I'm going to port it to
physical server that's currently running 2.6.35.1-rsbac. Probelm is, that
whenever I've tried to run latest 3.1.5 prepatch rsbac-kernel using CAP
policy module, the kernel crashes after first login. I've tried several
different policy settings, and whenever I use CAP, same error occurs. I also
tried to use just CAP policy enabled, and it still crashes. Without a CAP I
haven't got problems, but CAP is a module I really need.

Unfortunatly I don't have a slighest idea how to output kernel crash to
text, so I took a screenshot from VMware console. I've tried this same
kernel over two different ESXi platforms; VMware ESXi 4.1.0, 260247 and
VMware ESXi 5.0.0, 768111. Same error occurs on both platforms&lt;/pre&gt;</description>
    <dc:creator>Mikko Rinne</dc:creator>
    <dc:date>2013-02-05T22:15:00</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2179">
    <title>hi Amon</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2179</link>
    <description>&lt;pre&gt;hey have a look http://bit.ly/W1EUhW

ali
&lt;/pre&gt;</description>
    <dc:creator>ali valizadeh</dc:creator>
    <dc:date>2013-02-01T00:48:20</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2177">
    <title>X</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2177</link>
    <description>&lt;pre&gt;Hi list,

somehow the gdm or xdm freeze the system on restart or shutdown.

I test the linux-3.7.y (3.7.4)

Grüße
Jens

_______________________________________________
rsbac mailing list
rsbac&amp;lt; at &amp;gt;rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2013-01-24T22:19:11</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2176">
    <title>Happy New Year!</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2176</link>
    <description>&lt;pre&gt;Hi list,

i wish all a Happy New Year and a successfully year.

Grüße
Jens

_______________________________________________
rsbac mailing list
rsbac&amp;lt; at &amp;gt;rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2012-12-31T02:56:43</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2175">
    <title>Xorg restart</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2175</link>
    <description>&lt;pre&gt;Hi list,

its seems that on latest git linux-3.6.y the problem that the xorg does
not proper shutdown is solved.

Grüße
Jens

_______________________________________________
rsbac mailing list
rsbac&amp;lt; at &amp;gt;rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2012-12-12T23:02:58</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2168">
    <title>reset internal list</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2168</link>
    <description>&lt;pre&gt;Hi list,

How can I reset the interal list.
I see this in the logfile.

Wed Nov 28 17:31:23 2012 :&amp;lt;4&amp;gt;0000000061|o_read_list(): desc or data size
mismatch on list fd_gen!
Wed Nov 28 17:31:23 2012 :&amp;lt;4&amp;gt;0000000062|estoring list fd_gen from device
254:05 failed with error RSBAC_EINVALIDLIST, unregistering list.
Wed Nov 28 17:31:23 2012 :&amp;lt;4&amp;gt;0000000063|egister_fd_lists(): registering
general list fd_gen for device 254:05 failed with error
RSBAC_EINVALIDLIST!
Wed Nov 28 17:31:23 2012 :&amp;lt;4&amp;gt;0000000064|sbac_mount(): File/Dir ACI
registration failed for dev 254:05, err RSBAC_EINVALIDLIST!


Grüße
Jens


_______________________________________________
rsbac mailing list
rsbac&amp;lt; at &amp;gt;rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2012-11-28T17:37:23</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2167">
    <title>rsbac_cap_learn not work</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2167</link>
    <description>&lt;pre&gt;Hi list,


kernel: 
Linux jaschtschik-pc 3.6.7-rsbac-2 #7 SMP Mon Nov 26 16:39:13 CET 2012
x86_64 Intel(R) Core(TM)2 Quad CPU Q9550 &amp;lt; at &amp;gt; 2.83GHz GenuineIntel
GNU/Linux

rsbac_version:
Tools: 1.4.6, Kernel: 1.4.6, Tools-String: 1.4.6


I add this to boot parameter.

rsbac_cap_learn  

Its looks that is not working the cap learn.
The rsbac-debug show:

cat /proc/rsbac-info/debug | grep cap
rsbac_cap_process_hiding is 1
rsbac_cap_log_missing is 0
rsbac_cap_learn is 1


But the log show:

Mon Nov 26 11:18:24 2012 :&amp;lt;6&amp;gt;0000000208|sbac_adf_request(): request
MODIFY_SYSTEM_DATA, pid 3235, ppid 1, prog_name rtkit-daemon,
prog_file /usr/libexec/rtkit-daemon, uid 104, audit uid 101, target_type
PROCESS, tid 3292(pulseaudio,parent=3291(pulseaudio)), attr none, value
none, result NOT_GRANTED (Softmode) by CAP

Also the in the log on the name rsbac the "r" is missing.
Mon Nov 26 11:18:45 2012 :&amp;lt;6&amp;gt;0000000222|sbac_list_auto_rehash(): 1 lists
rehashed



On workstation randomly the gdm freeze the system while shutdown.

Grüße&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2012-11-26T10:31:50</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2166">
    <title>user audit</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2166</link>
    <description>&lt;pre&gt;Hi list,

Could someone please explain the use of audit, thanks.

Grüße
Jens

_______________________________________________
rsbac mailing list
rsbac&amp;lt; at &amp;gt;rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2012-11-25T15:52:19</dc:date>
  </item>
  <item rdf:about="http://comments.gmane.org/gmane.linux.rsbac/2165">
    <title>Convert user from PAM to UM not import groups for user</title>
    <link>http://comments.gmane.org/gmane.linux.rsbac/2165</link>
    <description>&lt;pre&gt;Hi list,

I user the latest git kernel linux-3.2.y.

rsbac_version: Tools: 1.4.6, Kernel: 1.4.6, Tools-String: 1.4.6

When I convert the users and groups from PAM to UM then my user don't 
have for example the group audio which was befor added to group audio,



&lt;/pre&gt;</description>
    <dc:creator>Jens Kasten</dc:creator>
    <dc:date>2012-11-25T05:22:07</dc:date>
  </item>
  <textinput rdf:about="http://search.gmane.org/?group=$group=gmane.linux.rsbac">
    <title>Search Engine</title>
    <description>Search the mailing list at Gmane</description>
    <name>query</name>
    <link>http://search.gmane.org/?group=$group=gmane.linux.rsbac</link>
  </textinput>
</rdf:RDF>
