[Dev] Cynara + DBUS

Patrick Ohly patrick.ohly at intel.com
Wed Apr 16 16:44:41 GMT 2014

On Wed, 2014-04-16 at 15:30 +0000, Schaufler, Casey wrote:
> > > Good question. Applications will need mutual write access with
> > > dbus to talk to it. Yes, this introduces additional Smack rules.
> > 
> > So in other words, full access to anything that is on the session D-Bus,
> > including all other apps. Anything talking on the session D-Bus will
> > have to be prepared to get potentially malicious messages.
> No, that's not what I said, I don't think. It's one thing to talk to
> dbus, it's another to talk to services using dbus.

So there will be a D-Bus configuration which controls who is allowed to
talk to whom? Unprivileged apps only get very selective access to some
services and not to other apps or services which are not prepared to do
Cynara checks?

Best Regards, Patrick Ohly

