On Tue, 07 Dec 2004 11:50:27 EST, Valdis.Kletnieks@vt.edu said:
I'm wondering if it would make more sense to push a patch upstream to the kernel-utils crew. Reading the smartd manpage in more detail, it looks like feeding it a '-M exec /usr/sbin/sendmail' (or building with that as the default) would let us only have to add sendmail_exec_t rather than all those.
Or that *would* work, if the smartd code didn't use popen() to actually run it, giving us a gratuitous '/bin/sh -c'. Looks like some fairly hefty reworking to make it do the whole pipe()/fork()/exec() thing itself.
Blech. ;)