Skip to main content

All Questions

0 votes
0 answers
37 views

Creating a hybrid SELinux policy for a specific directory?

I have a machine "NFS-Server", a machine "Hybrid", and a machine "TFTP-Client" which I would like to connect in the following way: NFS-Server allows Hybrid to mount to a ...
eakirk16's user avatar
1 vote
0 answers
46 views

finer-grained role/type access (specifically auditd_log_t)

Suppose I want to use SELinux to lock down audit logs even more tightly than ordinary logs. Ordinary logs typically have type var_log_t, but audit logs have type auditd_log_t. So there's at least a ...
Steve Summit's user avatar
1 vote
0 answers
112 views

Restarting Apache after installing RSA Web Agent

Good afternoon, We are currently attempting to install the RSA Web agent on our Apache web server, but run into problems after installation, when restarting the web server. The error we get is the ...
Bokkie's user avatar
  • 43
0 votes
1 answer
575 views

VirtualBox guest additions update got error missing SELinux target policy file

While updating VirtualBox guest additions on a Red Hat Linux 7 (RHEL7) virtual machine, we got the below error about missing a target policy file of SELinux. We checked the virtual machine: We tried ...
James's user avatar
  • 409
0 votes
1 answer
1k views

How to get "su" to work in init scripts in Red Hat 8 with SELinux?

In an init script I'm trying to run a command: su - user -c "/home/user/bin/command” but SELinux prevents this: systemd[1]: Starting LSB: Start the my_script at boot... su[5941]: pam_unix(su-l:...
Mareq's user avatar
  • 101
0 votes
2 answers
150 views

Restricting Access to Files when Standard Linux Permissions Won't Suffice

I administer several RHEL 6.9 systems. On each system, a particular directory, call it /app_dir, is the top level of where our project's scripts, executables, configuration files, and logs are stored. ...
Dave's user avatar
  • 1,049
-1 votes
1 answer
295 views

What is the different between file with Selinux Context and without Selinux Context?

Good day, Today I compare file permission of 2 environment. Found that 1 of it having the dot at the end of the permission, but another environment no have. Environment 1 (with Selinux Context): -...
Panadol Chong's user avatar
1 vote
1 answer
483 views

syslog-ng starts and runs fine manually... starts but doesnt create logs when using systemd

Redhat 7.6 with latest syslog-ng (3.22) ive searched and tried all the old remedies. Nothing has worked to resolve this. My syslog-ng.conf file has a bunch of ports and a bunch of destinations. When ...
Carver Stone's user avatar
1 vote
1 answer
785 views

Generate selinux policy from audit2allow

I need to upload to aws from logrotate. When the logrotate is triggered the SELinux blocking it. The error line is type=AVC msg=audit(1562162502.670:101127): avc: denied { name_connect } for ...
GergA's user avatar
  • 173
2 votes
1 answer
3k views

Cannot write samba shares

Running samba 3.5 on Red Hat Enterprise 6.1 I'm having issues sharing two folders. Here is the output of testparm: [global] workgroup = DOMAINNAME server string = Samba Server Version %v ...
Cavaz's user avatar
  • 143