siteminder and selinux

m.roth at 5-cent.us m.roth at 5-cent.us
Thu Mar 29 15:25:27 UTC 2012


I'm getting AVCs, and as I've mentioned before, the report from sealert is
*wrong*.

siteminder is running as root:system_r:httpd_sys_script_t
/etc/httpd/conf, and siteminder's configuration file, are both
system_u:object_r:httpd_config_t, and the configuration file is rw by
root, and r by group root.

sealert keeps trying to tell me to set httpd_unified on, which I've had on.

Clues on what I actually have to change to let siteminder not cause
selinux AVCs? (The system is running in permissive mode, and we're CentOS
5.7 (which will get updated to 5.8 when I can....)

       mark



More information about the selinux mailing list