View Full Version : Fedora SELinux Support
- svnsync
- I need to add "pass though" for milter-greylist on F8
- SELinux and Shorewall with IPSets
- selinux bugzilla?
- avc: denied { ptrace } messages
- sound within sandbox_web_t type and permissive type sandbox_web_client_t
- Cannot turn off port forwarding for sshd
- sound within sandbox_web_t type and permissive type sandbox_web_client_t
- Fwd: Linux Security Summit 2010 - Schedule Published
- Linux Security Summit 2010 - Schedule Published
- Kernel error avc F13
- Kernel error avc F13
- Problem with aiccu and radvd in /etc/NetworkManager/dispatcher.d/*
- Selinux - Clamav
- sandbox window size
- SELinux is preventing /bin/cp "relabelfrom" access on /var/lib/dhclient/yp.conf.predhclient.br0
- SELinux is preventing /bin/cp "relabelfrom" access on /var/lib/dhclient/yp.conf.predhclient.br0
- SELinux and XEN
- dmesg entries Rawhide
- dmesg entries Rawhide
- selinux and kickstart
- Why boolean didn't work?
- sandbox complaint
- Fedora 13 autorelabel
- MLS X on Fedora 13
- userhelper consolehelper role
- Fedora13 breaks nagios
- Device nodes have no type when booting a 2.6.32.*.fc12 kernel
- Linux Security Summit 2010 - Announcement and CFP
- Make patch SELinux compatible
- Make patch SELinux compatible
- Set context for NFS mounted homes
- xdm fixes
- Update libcgroup/cgroup policy.
- New to SELinux: 2nd Edition of The SELinux Notebook released (fwd)
- rhel6 beta mls enforcing seeing lots of these ...
- Fwd: talking to mcstrans in MLS enforcing on rhel6 beta
- rhel6 beta mls enforcing seeing lots of these ...
- Fwd: talking to mcstrans in MLS enforcing on rhel6 beta
- talking to mcstrans in MLS enforcing on rhel6 beta
- Need new secret sauce
- Apache CGI scripts - how to run them cleanly
- Apache CGI scripts - how to run them cleanly
- about selinux_validate_context
- Copy install.img to install target on http installs.
- Make sure the install.img exists before attempting to copy (#578391).
- Copy install.img and remount no matter how many discs (#577196)
- Add nfs options to kickstart if we use nfsiso (#585136)
- SELinux preventing printing.
- Access to /root/.hosts
- tar xvf --xattrs warning/error in MLS enforcing
- Policy prevents sendmail restarting
- porting a module from treysys refpolicy to debian
- Fwd: Help with messed up F11 SELinux
- Help with messed up F11 SELinux
- cgroup policy
- git policy
- Building a modified selinux source rpm
- Building a modified selinux source rpm
- Impact?
- Make sure we use 1.0 mdraid metadata when the set is used for boot (#584596)
- Audit messages being disabled
- system-config-selinux doesn't show policy modules
- Any log entries from semodule???
- setroubleshootd not running
- SELinux Apache and Symbolic Links...GGGrrrr
- SELinux Apache and Symbolic Links...GGGrrrr
- postfix + dovecot, could these use fuse_t - designer/developer question
- postfix + dovecot, could these use fuse_t - designer/developer question
- snmp Permission denied on mounted filesystems
- snmp Permission denied on mounted filesystems
- cron/anacron discrepancy in Centos 5?
- List Archives?
- List Archives?
- Another Fail2ban problem (I think)
- revise roles/dbadm.te ( dbadm.pp is not available in selinux-policy package)
- EMC NetWorker
- relabel fails
- munin-run has other SELinux privileges as munin-node
- milter policy hardening
- execstack and execmem
- lack of type transition on dbadm domain ( dbadm.pp is not available in selinux-policy package)
- revise roles/dbadm.te ( dbadm.pp is not available in selinux-policy package)
- dbadm.pp is not available in selinux-policy package
- Steps to login with non-traditional selinux roles
- file_contexts.homedirs and new users
- Mod-security (mlogc) problem
- Root not allowed to use procmail??????
- httpd mod_auth_pam winbind
- at a loss with a problem: munin-node df
- selinux and oracle instantclient
- dovecot 2.0
- F12: setroubleshoot: Introspect...
- F12: /var/run/utmp
- SELinux on a cluster
- selinux broke httpd: libxml2.so.2: failed to map segment from shared object: Permission denied
- selinux broke httpd: libxml2.so.2: failed to map segment from shared object: Permission denied
- selinux broke httpd: libxml2.so.2: failed to map segment from shared object: Permission denied
- userdom_unpriv_user_template use errors and creating new roles
- On what schedule is selinux-policy updated?
- selinux Digest, Vol 73, Issue 20
- On what schedule is selinux-policy updated?
- On what schedule is selinux-policy updated?
- selinux-policy.spec: Buildrequires missing make and gcc.
- Looking for SELinux advice regarding samba, apache
- Directing SElinux related logs to a dedicated log file
- AVCs seen when running spamass-milter as root
- Need suitable target context for writes by netutils_t source context
- Need suitable target context for writes by netutils_t source context
- location of postfix ssl certificates
- location of postfix ssl certificates
- Hey Fedora-Selinux-List, I forgot to mention...
- Boolean resets don't stick
- minor change to httpd_selinux.8
- Dear Fedora-Selinux-List, If you can't find in google, try JUSTDIAL.COM
- F12: "mac_admin"
- F12: SeLinux denials on older Fedora version mounted filesystems
- F12: Selinux 'sendmail' denials on /var/log/message logfile
- F12: SeLinux reports illegal httpd access to .index files?
- So just where is procmail_t allowed to write/create/rename etc?
- Add "crashkernel=auto" to grub.conf for RHEL installs (#561729)
- SELinux is preventing /bin/gawk "execute" access on /var/home/rnichols/mail/spamstrings.awk
- SELinux is preventing /bin/gawk "execute" access on /var/home/rnichols/mail/spamstrings.awk
- SELinux Admin newbie question
- SELinux Admin newbie question
- Got things working, but not sure how
- Can Solaris be SELinuxed ?
- Can Solaris be SELinuxed ?
- Using httpd and vsftpd together
- Using httpd and vsftpd together
- error rebuilding source rpm selinux-policy-3.6.32-89.fc12.src.rpm
- Policy redundancy and layout
- Policy redundancy and layout
- New "postdrop" denial
- dmesg and genfs_contexts
- Setnenforce prevented?
- 2 commits - scripts/mk-images
- F12: AVCs: sendmail, mounted filesystems, and spamassassin
- Dontaudit rule for $HOME/.ssh and samba
- Off-line attacks protection for a domain confined with SELinux
- Kernel panic after enabled SELINUXTYPE=strict
- How can I start SELinux play machine ?
- how to set permissions to files with a patern in the file hame
- Why can't I set /mnt/path to samba_share_t ?
- Policy for authenticating domain users
- Please do not send invites or friend requests to mailing lists!
- Check out my photos on Facebook
- Kernel's AVC
- New networking controls - FYI
- Gitweb and SELinux
- Gitweb and SELinux
- SELinux best practices
- .fedoraproject.org
- Selinux Troubleshoot Browser at login
- dbus daemon
- Selinux process transition
- Selinux process transition
- Fixfiles confused by bad filenames
- rename constants and a variable in anconda_log.py so the names make more sense.
- selinux: Only audit permissions specified in policy (Was: Bad AVC message reported from kernel.)
- Bad AVC message reported from kernel.
- Problem getting newrole working in centos54
- Problem getting newrole working in centos54
- How to temporarily turn off "don't audit" feature
- Need help bypassing spamass-milter audit
- SELinux domains for relabeling
- We are working on the Fedora SELinux FAQ
- autorelabel process
- Remove unnecessary free from the rpmextract error handler
- How do I figure out on what file dac_override is attempted?
- Selinux policy for git + apache
- Selinux policy for beanstalkd
- SELinux troubleshooting example
- new denials: shutdown, cupsd and abrt?
- SELinux context file format
- Assigning a Type to Network Interfaces
- updatedb (locate_t) "read" fusefs_t.
- Constraints on netif and nodes no longer working after upgrading policy compiler
- Using audit to log all users commands
- Using audit to log all users commands
- Constraints on netif and nodes no longer working after upgrading policy compiler
- A really simple question
- A really simple question
- Mysql Alert
- Selinux Alerts
- generating rules in permissive mode?
- Bug in bind.if - bind_admin
- bug in bind.if - bind_initrc_domtrans
- Move httpd root, selinux help
- policy for vino server (based on current rawhide policy)
- New Years Resolution
- New Years Resolution
- How to handle cron jobs?
- CentOS 5.4 + xinetd + sshd + SELinux issues
- Home directories within /var
- Apparent memory leak in libselinux
- AVC:s on xauth file when doing su
- AVC:s on xauth file when doing su
- policy for mgetty fax receive and new_fax
- Obtaining Source for Fedora SELinux policies
- newrole: double free or corruption
- vbetool denied
- allow_exec{mem,stack} default to on?
- No AVC when using non-standard SSH port
- General interface question
- DenyHosts policy
- libcg policy
- labeling traffic over lo
- SELinux is preventing zenity...
- FC12: 'sandbox -X' AVC's (gnash-plugin)
- FC12: 'sandbox -X' AVC's
- how to restrict a SOCK_RAW by interface
- URGENT MESSAGE.?
- Add ignore all/reinit all buttons to reinitialization dialogs (#512011).
- how to restrict a SOCK_RAW by interface
- Add ignore all/reinit all buttons to reinitialization dialogs (#512011).
- ecryptfs selinux labeling on Fedora 12
- sebools are getting reset on reboot
- Selinux & Fail2Ban
- Combining modules?
- Combining modules?
- cp -Z in Fedora 12
- Sample logs of alert types
- Targeted Daemons/Apps- Fedora 12
- Policy structure in Fedora
- Logrotate frustration - Selinux & Fail2Ban
- Logrotate frustration
- Selinux > Hipl
- Obtaining MLS policy package for RHEL5?
- Virtual http hosting and selinux
- Fedora 12 and unconfined_u sshdfilter
- Tutorial on setting up SELinux / X Server
- SELinux won't let dovecot connect to postgresql (SOLVED!)
- files in updates.img not being implemented
- Is this an selinux system?
- Is this an selinux system?
- ANNOUNCE: mdadm 3.1.1 - A tool for managing Soft RAID under Linux
- AVC Denials on UDEV
- SELinux won't let dovecot connect to postgresql
- SELinux won't let dovecot connect to postgresql
- SELinux won't let dovecot connect to postgresql
- The SELinux Documentation Project
- screen wants to set attributes of user tty device
- 3.7.3-1 nsplugin
- libcgroup policy (concept)
- execstack fun
- The story behind by default permissive domains
- The story behind by default permissive domains
- F-12 arpwatch AVCs
- selinux and smagent
vBulletin® v, Copyright ©2000-2013, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.