Description of problem: Private.mnt and Private.sig are created initially via mktemp and then moved to their destination. This leaves them with a home_tmp_t context. The attached patch fixes it. Version-Release number of selected component (if applicable): 86-1.fc15 How reproducible: 100% Steps to Reproduce: 1. Run ecryptfs-setup-private 2. Add this to /etc/pam.d/postlogin: auth optional pam_ecryptfs.so unwrap session optional pam_ecryptfs.so unwrap 3. Logout and login. Actual results: SELinux alert regarding ~/.ecryptfs/Private.mnt. Expected results: No alert. Additional info: Patch being sent upstream.
Created attachment 481841 [details] patch to restore contexts
Package ecryptfs-utils-86-1.fc15: * should fix your issue, * was pushed to the Fedora 15 updates-testing repository, * should be available at your local mirror within two days. Update it with: # su -c 'yum update --enablerepo=updates-testing ecryptfs-utils-86-1.fc15' as soon as you are able to, then reboot. Please go to the following url: https://admin.fedoraproject.org/updates/ecryptfs-utils-86-1.fc15 then log in and leave karma (feedback).
Package ecryptfs-utils-86-1.fc14: * should fix your issue, * was pushed to the Fedora 14 updates-testing repository, * should be available at your local mirror within two days. Update it with: # su -c 'yum update --enablerepo=updates-testing ecryptfs-utils-86-1.fc14' as soon as you are able to, then reboot. Please go to the following url: https://admin.fedoraproject.org/updates/ecryptfs-utils-86-1.fc14 then log in and leave karma (feedback).
ecryptfs-utils-86-1.fc14 has been pushed to the Fedora 14 stable repository. If problems still persist, please make note of it in this bug report.
ecryptfs-utils-86-1.fc15 has been pushed to the Fedora 15 stable repository. If problems still persist, please make note of it in this bug report.