default_t and updatedb

m.roth at 5-cent.us m.roth at 5-cent.us
Thu May 2 18:39:09 UTC 2013


Dominick Grift wrote:
> On Thu, 2013-05-02 at 14:29 -0400, m.roth at 5-cent.us wrote:
>> Dominick Grift wrote:
>> > On Thu, 2013-05-02 at 13:55 -0400, m.roth at 5-cent.us wrote:
>> >> We've got an /apps directory in parallel with the web page directory.
>> >> I've most recently set it to httpd_sys_script_t; the directory under
>> >> it has a context of default_t, and that's off of /. Have I either given
>> >> a wrong context to the apps directory, left an incorrect one on the
>> >> directory under it (and if so, what would be appropriate), or is it
>> >> just that I need to semanage fcontext -a for apps?
>> >
>> > what does : semanage fcontext -l | grep apps
>> > return?
>> >
>> No context for that directory. Ok, and now, after I looked at the
>> default
>> /var/www, I see it should be httpd_sys_script_exec_t, and I've
>> semanage/restorecon'd it to that.
>>
>> Thanks. Hope that fixes it.
>>
>
> No /var/www should not be httpd_sys_script_exec_t

Sorry, you misunderstood me: I see that /var/www/cgi-bin has that context,
and that's why I gave it to apps.
>
> anyways, so you dont have a context specified for /apps at all

That was what I realized, once you showed me how to find the contexts.

Thanks again.

       mark



More information about the selinux mailing list