Update readme.md

Signed-off-by: AnErrupTion <anerruption+codeberg@disroot.org>
This commit is contained in:
AnErrupTion 2026-07-05 20:58:42 +02:00
commit cb71302441

View file

@ -44,34 +44,32 @@ Join us on Matrix over at [#ly-dm:matrix.org](https://matrix.to/#/#ly-dm:matrix.
```
> [!WARNING]
> Distributions using SELinux such as Fedora and openSUSE Tumbleweed may encounter issues. It is recommended to add a rule for Ly as it currently does not ship one.
If encountering session launch failures:
```
sudo ausearch -m avc -ts recent
```
If SELinux is denying process context transition, you will see this output.
```
denied { transition } for pid=XXXX comm="ly" path="/usr/bin/bash"
scontext=system_u:system_r:unconfined_service_t:s0
tcontext=unconfined_u:unconfined_r:unconfined_t:s0
tclass=process permissive=0
```
Pipe this output into `audit2allow` to generate a security module package. This will persist regardless of changes to filesystem permissions.
```
sudo ausearch -m avc -ts recent | audit2allow -M ly-local
```
```
sudo semodule -i ly-local.pp
```
*This fix has been confirmed on Fedora 39 and 44 and openSUSE Tumbleweed. (#494)*
> Distributions using SELinux such as Fedora and openSUSE Tumbleweed may encounter issues. If you encounter such issues, such as session launch failures, proceed with the following steps:
>
> ```
> # ausearch -m avc -ts recent
> ```
>
> If SELinux is denying process context transition, you will see this output:
>
> ```
> denied { transition } for pid=XXXX comm="ly" path="/usr/bin/bash"
> scontext=system_u:system_r:unconfined_service_t:s0
> tcontext=unconfined_u:unconfined_r:unconfined_t:s0
> tclass=process permissive=0
> ```
>
> Pipe this output into `audit2allow` to generate a security module package. This will persist regardless of changes to filesystem permissions:
>
> ```
> # ausearch -m avc -ts recent | audit2allow -M ly-local
> ```
>
> ```
> # semodule -i ly-local.pp
> ```
>
> *This fix has been confirmed on Fedora 39 and 44 and openSUSE Tumbleweed. (#494)*
### FreeBSD