[DSE-Dev] Bug#690225: selinux-policy-default: dovecot cannot authenticate when selinux enforcing

Russell Coker russell at coker.com.au
Thu Oct 11 12:41:30 UTC 2012


On Thu, 11 Oct 2012, David Waring <debian.bugs at ribenakid.me.uk> wrote:
> audit.log indicated that the /usr/lib/dovecot/auth executable was denied
> access to shadow.
> 
> Added fcontext for:
> /usr/lib/dovecot/auth                              regular file      
> system_u:object_r:dovecot_auth_exec_t:s0

This is a policy bug, it currently uses the old name /usr/lib/dovecot/dovecot-
auth.

> /usr/lib/dovecot/dovecot-lda     
>                  regular file       system_u:object_r:lda_exec_t:s0

Another instance of the same.

> /usr/lib/dovecot/libdovecot.*\.so.*                regular file      
> system_u:object_r:lib_t:s0

That's the correct change.

I'll write a patch to fix this.

-- 
My Main Blog         http://etbe.coker.com.au/
My Documents Blog    http://doc.coker.com.au/



More information about the SELinux-devel mailing list