kerberos server + enforcing mode?

Robert Story rstory at sparta.com
Wed Jul 9 21:20:00 UTC 2008


I'm still getting "modify_principal: Insufficient access to lock
database" error messages when trying to use kadmin in enforcing mode.I
ran 'semodule -DB' to re-enable don't audit messages, and I've attached
what I get when trying to run a kadmin command to add a principal
(after starting kadmind/krb5kdc... kadmin.log seems to be ok). Any
hint, tips or policy modules greatly appreciated...

-- 
Robert Story
SPARTA
-------------- next part --------------
A non-text attachment was scrubbed...
Name: avcs
Type: application/octet-stream
Size: 2515 bytes
Desc: not available
Url : http://lists.fedoraproject.org/pipermail/selinux/attachments/20080709/9b39b1ec/attachment.obj 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.fedoraproject.org/pipermail/selinux/attachments/20080709/9b39b1ec/attachment.bin 


More information about the selinux mailing list