--- /dev/null
+diff --git a/policycoreutils/newrole/Makefile b/policycoreutils/newrole/Makefile
+index bdefbb8..9cff135 100644
+--- a/policycoreutils/newrole/Makefile
++++ b/policycoreutils/newrole/Makefile
+@@ -49,7 +49,7 @@ ifeq ($(NAMESPACE_PRIV),y)
+ IS_SUID=y
+ endif
+ ifeq ($(IS_SUID),y)
+- MODE := 4555
++ MODE := 0555
+ LDLIBS += -lcap-ng
+ else
+ MODE := 0555
cd "${S}" || die "Failed to switch to ${S}"
if [[ ${PV} != 9999 ]] ; then
# If needed for live ebuilds please use /etc/portage/patches
- eapply "${FILESDIR}/0010-remove-sesandbox-support.patch"
- eapply "${FILESDIR}/0020-disable-autodetection-of-pam-and-audit.patch"
- eapply "${FILESDIR}/0030-make-inotify-check-use-flag-triggered.patch"
- eapply "${FILESDIR}/0070-remove-symlink-attempt-fails-with-gentoo-sandbox-approach.patch"
- eapply "${FILESDIR}/0110-build-mcstrans-bug-472912.patch"
- eapply "${FILESDIR}/0120-build-failure-for-mcscolor-for-CONTEXT__CONTAINS.patch"
+ eapply "${FILESDIR}/policycoreutils-2.7-0001-newrole-not-suid.patch"
fi
# rlpkg is more useful than fixfiles
building() {
emake -C "${BUILD_DIR}" \
AUDIT_LOG_PRIVS="y" \
- AUDITH="$(usex audit)" \
- PAMH="$(usex pam)" \
- INOTIFYH="$(usex dbus)" \
+ AUDITH="$(usex audit y n)" \
+ PAMH="$(usex pam y n)" \
+ INOTIFYH="$(usex dbus y n)" \
SESANDBOX="n" \
CC="$(tc-getCC)" \
PYLIBVER="${EPYTHON}" \
installation-policycoreutils() {
einfo "Installing policycoreutils"
emake -C "${BUILD_DIR}" DESTDIR="${D}" \
- AUDITH="$(usex audit)" \
- PAMH="$(usex pam)" \
- INOTIFYH="$(usex dbus)" \
+ AUDITH="$(usex audit y n)" \
+ PAMH="$(usex pam y n)" \
+ INOTIFYH="$(usex dbus y n)" \
SESANDBOX="n" \
AUDIT_LOG_PRIV="y" \
LIBDIR="\$(PREFIX)/$(get_libdir)" \