FC5 LDAP issues

Stephen Smalley sds at tycho.nsa.gov
Thu Mar 30 20:23:27 UTC 2006


On Thu, 2006-03-30 at 14:05 -0600, Jason L Tibbitts III wrote:
> I realize that the issue is more complicated, because even with nscd
> turned on, dbus-daemon still fails to start.  It's looking in
> /etc/pki:
> 
> Mar 30 13:50:33 util10 kernel: audit(1143748233.484:304): avc:  denied  { search } for  pid=1711 comm="dbus-daemon" name="pki" dev=dm-0 ino=163878 scontext=system_u:system_r:system_dbusd_t:s0 tcontext=system_u:object_r:cert_t:s0 tclass=dir
> 
> I wonder if I have broken something.

Ah, so your dbus config refers to files in /etc/pki?
Likely not allowed by the current policy.

grep -r pki /etc/dbus-1

-- 
Stephen Smalley
National Security Agency




More information about the selinux mailing list