#!/bin/sh # Test SELinux-related options. if test "$VERBOSE" = yes; then set -x chcon --version cp --version ls --version mv --version stat --version fi . $srcdir/../lang-default . $srcdir/../selinux PRIV_CHECK_ARG=require-non-root . $srcdir/../priv-check . $srcdir/../test-lib.sh # Create a regular file, dir, fifo. touch f || framework_failure mkdir d s1 s2 || framework_failure mkfifo p || framework_failure fail=0 ctx=root:object_r:tmp_t # FIXME, what if $ctx is no different from the default. Not likely. # give each a different context, via chcon chcon $ctx f d p || fail=1 # inspect that context with both ls -Z and stat. for i in d f p; do c=`ls -dogZ $i|cut -d' ' -f3`; test x$c = x$ctx || fail=1 c=`stat --printf %C $i`; test x$c = x$ctx || fail=1 done # Copy each to a new directory and ensure that context is preserved. cp -r --preserve=all d f p s1 || fail=1 for i in d f p; do c=`stat --printf %C s1/$i`; test x$c = x$ctx || fail=1 done # Now, move each to a new directory and ensure that context is preserved. mv d f p s2 || fail=1 for i in d f p; do c=`stat --printf %C s2/$i`; test x$c = x$ctx || fail=1 done (exit $fail); exit $fail