system user home

Daniel J Walsh dwalsh at redhat.com
Mon Jul 19 13:32:48 UTC 2010


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 07/16/2010 12:56 PM, Vadym Chepkov wrote:
> Hi,
> 
> Whenever I try to modify a policy I get a warning like this:
> 
> /usr/sbin/genhomedircon will not create a new context. This usually indicates an incorrectly defined system account.  If it is a system account please make sure its login shell is /sbin/nologin.
> 
> And this is true, I did create a system account with home in /var/lib/application
> But, I need this account to have a real shell. How can I make SELinux happy?
> 
> Thank you,
> Vadym Chepkov
> --
> selinux mailing list
> selinux at lists.fedoraproject.org
> https://admin.fedoraproject.org/mailman/listinfo/selinux
Can you set the UID < 500?

Which OS is causing this?

In F12 and F13 you can add


usepasswd=FALSE

to /etc/selinux/semanage.conf

Which will tell genhomedircon to stop looking in /etc/passwd for homedirs.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.14 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org/

iEYEARECAAYFAkxEVAAACgkQrlYvE4MpobOwMgCdHJnRt9dvbIqmIKh9Wx/NY4na
c6UAn2qFeS10FtNidoGjR1/1492WzymV
=KShS
-----END PGP SIGNATURE-----


More information about the selinux mailing list