我正在运行 Arch Linux [测试] x86_64
由于某些原因,我无法使用 SELinux(自定义内核编译,使用 refpolicy)重新标记我的根文件系统 (F2FS)
内核版本
$ uname -a ⏎
Linux PenArch 3.16.3.201409282025-1-grsec #1 ZEN SMP PREEMPT x86_64 GNU/Linux
Chcon错误:
# chcon -t mozilla_exec_t /usr/lib/nightly/nightly
chcon: failed to change context of ‘/usr/lib/nightly/nightly’ to ‘system_u:object_r:mozilla_exec_t’: Operation not supported
这是我的配置片段:
CONFIG_F2FS_FS=m
CONFIG_F2FS_STAT_FS=y
CONFIG_F2FS_FS_XATTR=y
CONFIG_F2FS_FS_POSIX_ACL=y
CONFIG_F2FS_FS_SECURITY=y
CONFIG_F2FS_CHECK_FS=y
CONFIG_SECURITY_SELINUX=y
CONFIG_SECURITY_SELINUX_BOOTPARAM=y
CONFIG_SECURITY_SELINUX_BOOTPARAM_VALUE=0
CONFIG_SECURITY_SELINUX_DISABLE=y
CONFIG_SECURITY_SELINUX_DEVELOP=y
CONFIG_SECURITY_SELINUX_AVC_STATS=y
CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE=1
# CONFIG_SECURITY_SELINUX_POLICYDB_VERSION_MAX is not set
CONFIG_DEFAULT_SECURITY_SELINUX=y