From 4d4c74866c12c98b2834e8eff218b74cb83bb608 Mon Sep 17 00:00:00 2001 From: Lennart Poettering Date: Mon, 29 Aug 2011 23:36:10 +0200 Subject: [PATCH] selinux: retest selinux after we loaded the policy --- src/label.c | 7 ++++++- src/label.h | 2 ++ src/selinux-setup.c | 2 ++ 3 files changed, 10 insertions(+), 1 deletion(-) diff --git a/src/label.c b/src/label.c index a5994622..fb9a1b42 100644 --- a/src/label.c +++ b/src/label.c @@ -33,8 +33,9 @@ static struct selabel_handle *label_hnd = NULL; +static int use_selinux_cached = -1; + static inline bool use_selinux(void) { - static int use_selinux_cached = -1; if (use_selinux_cached < 0) use_selinux_cached = is_selinux_enabled() > 0; @@ -42,6 +43,10 @@ static inline bool use_selinux(void) { return use_selinux_cached; } +void label_retest_selinux(void) { + use_selinux_cached = -1; +} + #endif int label_init(void) { diff --git a/src/label.h b/src/label.h index 321d21f6..6e48efaa 100644 --- a/src/label.h +++ b/src/label.h @@ -43,4 +43,6 @@ int label_get_create_label_from_exe(const char *exe, char **label); int label_mkdir(const char *path, mode_t mode); +void label_retest_selinux(void); + #endif diff --git a/src/selinux-setup.c b/src/selinux-setup.c index dc101b13..2abd99e6 100644 --- a/src/selinux-setup.c +++ b/src/selinux-setup.c @@ -73,6 +73,8 @@ int selinux_setup(bool *loaded_policy) { char timespan[FORMAT_TIMESPAN_MAX]; char *label; + label_retest_selinux(); + /* Transition to the new context */ r = label_get_create_label_from_exe(SYSTEMD_BINARY_PATH, &label); if (r < 0 || label == NULL) { -- 2.39.5