New policy for pyzor

James Carter jwcart2 at epoch.ncsc.mil
Wed Mar 23 19:14:02 UTC 2005


>From pyzor.te:

##########
# pyzor daemon
##########
daemon_domain(pyzord, `, privlog, nscd_client_domain')
pyzor_base_domain(pyzord)
allow pyzord_t pyzor_port_t:udp_socket name_bind;
home_domain_access(pyzord_t, sysadm, pyzor)

Why home_domain_access()?
There is no sysadm_pyzor_home_t defined, so it causes an error.

On Mon, 2005-03-21 at 20:23 -0500, David Hampton wrote:
> This is a new strict policy for the pyzor spam filter.  It is based on
> the selinux-policy-strict-sources-1.23.2-1 fedora RPM.  This policy
> requires the definition of a pyzor reserved port that was in the
> net_contexts diff I sent last Wednesday.  Please let me know if there
> are any problems with or changes needed to this policy.
> 
> David
> 
-- 
James Carter <jwcart2 at epoch.ncsc.mil>
National Security Agency




More information about the selinux mailing list