Username and groupname formats
Posted: Thu Aug 04, 2005 11:44 am
It seems that grsec (or at least gradm) doesn't like a "." (or "-" or "_" or possibly others) in usernames and I assume groupnames. These are legal Unix names.
eg
Much the same happens if I put a user as a member of a user domain although the message is slightly different:
I guess it is actually gradm that is the problem.
(I posted this on the mailing list but that is rather less busy than this it seems nowadays!)
eg
- Code: Select all
role adm.jl u
subject /
/ rwcdmlxi
+CAP_ALL
for user adm.jl which BTW is correctly interpreted by the gradm learning.No role type specified for adm on line 102 of /etc/grsec/policy.
The RBAC system will not be allowed to be enabled until this error is fixed.
Much the same happens if I put a user as a member of a user domain although the message is slightly different:
Is there a simple fix?User adm on line 102 of /etc/grsec/policy does not exist.
I guess it is actually gradm that is the problem.
(I posted this on the mailing list but that is rather less busy than this it seems nowadays!)