mirror of
https://codeberg.org/fairyglade/ly.git
synced 2026-08-09 15:19:13 +02:00
Update readme.md
Signed-off-by: AnErrupTion <anerruption+codeberg@disroot.org>
This commit is contained in:
parent
396e8b6536
commit
cb71302441
1 changed files with 26 additions and 28 deletions
54
readme.md
54
readme.md
|
|
@ -44,34 +44,32 @@ Join us on Matrix over at [#ly-dm:matrix.org](https://matrix.to/#/#ly-dm:matrix.
|
|||
```
|
||||
|
||||
> [!WARNING]
|
||||
> Distributions using SELinux such as Fedora and openSUSE Tumbleweed may encounter issues. It is recommended to add a rule for Ly as it currently does not ship one.
|
||||
|
||||
If encountering session launch failures:
|
||||
|
||||
```
|
||||
sudo ausearch -m avc -ts recent
|
||||
```
|
||||
|
||||
If SELinux is denying process context transition, you will see this output.
|
||||
|
||||
```
|
||||
denied { transition } for pid=XXXX comm="ly" path="/usr/bin/bash"
|
||||
scontext=system_u:system_r:unconfined_service_t:s0
|
||||
tcontext=unconfined_u:unconfined_r:unconfined_t:s0
|
||||
tclass=process permissive=0
|
||||
```
|
||||
|
||||
Pipe this output into `audit2allow` to generate a security module package. This will persist regardless of changes to filesystem permissions.
|
||||
|
||||
```
|
||||
sudo ausearch -m avc -ts recent | audit2allow -M ly-local
|
||||
```
|
||||
|
||||
```
|
||||
sudo semodule -i ly-local.pp
|
||||
```
|
||||
|
||||
*This fix has been confirmed on Fedora 39 and 44 and openSUSE Tumbleweed. (#494)*
|
||||
> Distributions using SELinux such as Fedora and openSUSE Tumbleweed may encounter issues. If you encounter such issues, such as session launch failures, proceed with the following steps:
|
||||
>
|
||||
> ```
|
||||
> # ausearch -m avc -ts recent
|
||||
> ```
|
||||
>
|
||||
> If SELinux is denying process context transition, you will see this output:
|
||||
>
|
||||
> ```
|
||||
> denied { transition } for pid=XXXX comm="ly" path="/usr/bin/bash"
|
||||
> scontext=system_u:system_r:unconfined_service_t:s0
|
||||
> tcontext=unconfined_u:unconfined_r:unconfined_t:s0
|
||||
> tclass=process permissive=0
|
||||
> ```
|
||||
>
|
||||
> Pipe this output into `audit2allow` to generate a security module package. This will persist regardless of changes to filesystem permissions:
|
||||
>
|
||||
> ```
|
||||
> # ausearch -m avc -ts recent | audit2allow -M ly-local
|
||||
> ```
|
||||
>
|
||||
> ```
|
||||
> # semodule -i ly-local.pp
|
||||
> ```
|
||||
>
|
||||
> *This fix has been confirmed on Fedora 39 and 44 and openSUSE Tumbleweed. (#494)*
|
||||
|
||||
### FreeBSD
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue