View Full Version : Fedora SELinux Support
- Constraint violation AVC
- How to clear Samba through SELinux
- semanage slow (Should I ignore or report this avc denial?)
- Configuring Setroubleshhot
- Should I ignore or report this avc denial?
- httpd soap connection over https
- cron -> epylog -> links
- PostgreSQL PITR & SELinux
- PostgreSQL PITR & SELinux
- SELinux Branded USB Thumb Drives
- SELinux is preventing /bin/ps from search access...
- rabbitmq policy needs to be revisited
- I think we need to have a good look at polkit in f18
- selinux-policy update
- selinux-policy update
- inode confusion?
- Daemon started from init script runs as unconfined_u
- semanage 'utf8' error
- fixfiles during yum upgrade
- trying to set a context
- trying to set a context
- F17 yum/rpm not running groupadd in %pre scripts
- fcontext nightmare - Help please?
- SELinux: security_context_to_sid error
- SELinux: security_context_to_sid error
- Has there been some policy change on F17?
- Allowing access to session dbus from sandbox
- Some more (probably) Zarafa-related
- Imposing contexts on sshfs
- sealert and FC17
- Bug or feature, absent authorized_hosts
- relabel after policy update
- Fwd: Proprietary telnet daemon fails login when SELinux is enabled
- Proprietary telnet daemon fails login when SELinux is enabled
- freshclam F17
- dovecot denials
- dovecot denials
- ./autorelabel
- Out of Memory & Relabeling
- Out of Memory & Relabeling
- Was, FC17 and setroubleshoot, is policy bugs
- FC17 and setroubleshoot
- Rawhide SELinux issues
- How to save selinux setsebool configuration
- software update & SELinux libraries
- selinux@lists.fedoraproject.org mailing list reminder
- Don't depend on plymouth for shell (#826984)
- Poor error when loading policy module
- Segfault while compiling refpolicy 2.20120215
- dovecot and allow_ypbind
- dovecot and allow_ypbind
- 3.9 -> 3.10 policy language syntax changes
- ImportError: No module named selinux
- Policy version mismatch
- EL6: procmail vs. /home/*/bin/shellscript.sh
- No audit lines produced
- Creating multiple constrained admin roles
- VirtualGL/TurboVNC and selinux
- VirtualGL/TurboVNC and selinux
- VirtualGL/TurboVNC and selinux
- Can't login the embedded linux with seliux support
- MySQL and ldconif avcs
- Bootup avc, "systemd-tmpfile" important?
- Bootup avc, "systemd-tmpfile" important?
- several denials that don't get noticed by seatrouble shoot alerts
- How to change the default context for files in the home directory
- Runtime flexibility of SELInux
- Runtime flexibility of SELInux
- https://bugzilla.redhat.com/show_bug.cgi?id=812100
- runcon Invalid argument
- runcon Invalid argument
- Selinux and mailman via postfix pipe
- Permission denied to cgi-script when enforcing selinux on RHEL6
- force audit log rotation?
- Forgot relevant link: force audit log rotation?
- force audit log rotation?
- How to get a .te file from an existing .pp file?
- Would the F17 policy have problems with a 3.2.7 kernel?
- ignoredisk in RHEL 6.0, anaconda 13.21.149
- denied despite allow rule
- audit avc F16
- siteminder and selinux
- setroubleshootd swaps too much
- weird dyntransition issue
- weird dyntransition issue
- /usr/bin/xauth: error in locking authority file
- Alert from turning off/on wireless
- CouchDB with SELinux
- Add a property to return the id of the base repo.
- Enable auto-detection of optical install media if no method/repo given.
- Return the first qualifying device from opticalInstallMedia.
- Auto-detect optical media if method/repo absent
- Detecting MLS mode
- SELinux hooks
- semanage is prevented from writing to user_tmp_t file
- Dipping into the policy waters
- load_policy failure in RHEL 6.2
- Blocking change to permissive
- Blocking change to permissive
- f16 x86_64 :: kwin - execmem
- Allow PHP to list other users' processes
- Allow PHP to list other users' processes
- Fedora in the wild! Or, try out this script kiddie shell.
- Fedora in the wild! Or, try out this script kiddie shell.
- Fedora in the wild! Or, try out this script kiddie shell.
- Fedora in the wild! Or, try out this script kiddie shell.
- selinux and mcelog
- OTish audit.log
- Take in change of a binary name (brcm_iscsiuio -> iscsiuio) (#731761)
- RFE: allow gitolite to send mail
- cron vs. anacron
- User role and transitioning
- User role and transitioning
- dracut: ordering of modules
- Confine virtualhosts
- error setting 'httpd_enable-homedirs' boolean in F16
- Pass ksdata and platform to Storage from run-spoke.py and run-hub.py.
- Revert "Put bios boot partitions on all gpt disk on bios systems. (#738964)"
- Remove the storage attribute from BootLoader.
- Remove the anaconda attribute from Storage and add a bootloader attr.
- selinux equivalent of umask or setuid bit
- Tomcat selinux
- 08/02/2012
- A confined sftp user
- making a file context change work for initrc_t and unconfined_t
- Likewise sometimes installs in "likewise" and sometimes "likewise-open" Various fixes: https://lists.fedoraproject.org/pipermail/selinux/2012-January/014333.html
- fixfiles restore
- SELinux and RPM packages
- playing with unconfined domains and users on Fedora 16
- EL6 reference policy sources?
- making a file context change work for initrc_t and unconfined_t
- Suggestion on autorelabel
- Issue with updating denyhosts to use systemd
- SELinux for LXC Container
- SELinux for LXC Container
- SLIDE for RHEL6 and Derivatives
- Fedora 16 AVC at boot time
- Domain transition not working
- Recent /proc/pid/mem exploit
- Constraint violation question
- Creating files from initrc_t
- Fedora 16 and procmail
- Report ot not, Rawhide
- avc_init deprecation vs avc_open + selinux_set_callback()
- Defining new access vectors & security classes in policy modules ?
- FC recursive directories
- Problems auditing yum behaviour
- selinux and openVPN and no log entries
- F17Rawhide boot avc's
- SSHFS (SELinux) frustrations
- adding port restrictions to policy generated by sepolgen
- Proper settings to allow web server to send mail
- Proper settings to allow web server to send mail
- circular policy references generated by sepolgen
- security contexts
- filesystem relabeling not working for /tmp after enabling SELinux
- MySQL's LOAD DATA INFILE statement
- CIPSO Labeling of Network Packets to/from KVM Windows Guest OS
- SELinux newbie help please
- SELinux newbie help please
- sealert error
- where is "selinux.h" in F16?
- where is "selinux.h" in F16?
- F16: firefox in sandbox_web_t not working (blank window)
- selinux denial not appearing in logs
- NetworkManager / OpenVPN Certificates
- Custom SNMP scripts
- procmail prevented from delivering mail
- Looking for directory paths...
- IPTables labeling and user roles
- Long Boot times
- F16/proftpd/systemd
- Boolean to permit guest_u access
- dovecot 2.1
- libselinux python binding of restorecon different from restorecon command
- Where does Fedora 16 log boot-time SELinux denials?
- mount -t nfs -o context not working (RHEL 6)
- SELinux policy building questions
- SELinux policy for both Enterprise Linux 5 and 6
- sharing directory for 2 different contexts?
- clamd_use_jit on
- incorrect type transition rules in fedora policy
- Removefix old avc's
- customizable_types
- selinux doesn't prevent php fopen to remote 80/tcp
- Object Classes and kernel
- Lexmark - I'm impressed
- Spamassassin / GPG Problem
- SELinux on Android
- fixfiles, setfiles and restorecon
- Allowing not sysadm_t access to change root password
- How to get targeted policy source code
- SELinux Bug!!
- SELinux Bug!!
- New HIPS based on SELinux
- Relabeling PHP uploads when they are moved into place
- Relabeling PHP uploads when they are moved into place
- fixfiles onboot question
- "semanage dontaudit off" or "semodule -DB"
- setroubleshootd CPU usage
- updpwd AVC
- selinux Digest, Vol 91, Issue 15
- httpd_sys_content_rw_t
- execmod access to '/opt/google/chrome/chrome' file
- List of avc for fedora 16
- awstats and logrotate
- php error log policy
- This avc is a constraint violation! Stuck resolving this via --update on sepolgen generated file
- This avc is a constraint violation! Stuck resolving this via --update on sepolgen generated file
- Best way to copy local changes between hosts
- dkim policy in Fedora
- matchpathcon crashing in mock chroot
- Monitoring and prevention of MBR activity.
- Ordering of file context choices?
- Right way to do CGI that does complicated things?
- Right way to do CGI that does complicated things?
- Right way to do CGI that does complicated things?
- unix_stream_socket AVC
- sulogin
- LMTP, Postfix, Dovecot AVC denial
- sshd constraint violation issue
- qmail policy patch
- item?
- Avoid final hang if no reboot action is specified in kickstart.
- Shouldn't restorecond be allowed to relabel anything?
- How to extract file context patterns from selinux module
- getsched
- problems labeling files
- policycoreutils-2.0.85-30.2 breaks sandbox
- policycoreutils-2.0.85-30.2 breaks sandbox
- problems confining a process
- problems confining a process
- oops on reboot
- corrections for Managing Confined Services
- avc - f15
- avc - f15
- proftpd with systemd on F-15
- named issue
- A question about roles
- how to use the options "-P,--prefix" for the comand semanage
- how to use the options "-P,--prefix" for the comand semanage
- New features in the SELinux base policy in Fedora 15 and 16
- Policy for CouchDB
- a context question
- Resizing firefox sandbox window
- SSSD Local Auth and SELinux support
- strange semodule_expand error during linking
- Fwd: Is it possible to run chromium in a SELinux sandbox?
- MAIL ABUSE +448137456
- Getting kmotion under selinux's control.
vBulletin® v, Copyright ©2000-2013, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.