On Tue, 2007-10-30 at 12:24 +0000, Stefan Schulze Frielinghaus wrote:
On Tue, 2007-10-30 at 13:32 +0200, Ali Nebi wrote:
[...]
> Oct 21 20:56:58 casamerica kernel: audit(1192993018.053:2785): avc:
> denied { create } for pid=3721 comm="awstats.pl"
> scontext=user_u:system_r:httpd_sys_script_t:s0
> tcontext=user_u:system_r:httpd_sys_script_t:s0 tclass=udp_socket
[...]
> What is the best decision to solve these audits? I'm trying to
> understand selinux principles and try to moving the server to enforce
> mode.
You need a policy for Awstats. The latest refpolicy release
(
http://oss.tresys.com/files/refpolicy/refpolicy-20070928.tar.bz2)
includes awstats. I guess Fedora 6 doesn't include the latest policy for
awstats.
cheers,
Stefan
Perfect, thanks. I will install it. Yes, i checked for awstats, but i think it doesn't
include the latest policy until now.
Thanks again