SCIENTIFIC-LINUX-USERS Archives

November 2007

SCIENTIFIC-LINUX-USERS@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Michael Hannon <[log in to unmask]>
Reply To:
Michael Hannon <[log in to unmask]>
Date:
Wed, 14 Nov 2007 00:17:31 -0800
Content-Type:
text/plain
Parts/Attachments:
text/plain (32 lines)
Hi, folks.  We've just started running the dovecot IMAP server on an SL
5 (x86_64) system.  We're having trouble connecting to the server
because selinux won't allow it.  I've appended some example messages.

If we run the indicated sealert commands, we get some potentially useful
information, but I wonder if anybody has a convenient summary of the
steps required to permanently allow access to dovecot.  If so, will you
please send them to me?  Thanks.

					- Mike


Nov 13 23:47:23 xxxxxx setroubleshoot:      SELinux is preventing
/usr/sbin/dovecot (dovecot_t) "create" access to <Unknown> (dovecot_t).
For complete SELinux messages. run sealert -l
0922d4d2-9c18-415c-9a44-79cc297d0aeb
Nov 13 23:56:08 xxxxxx dbus: Can't send to audit system: USER_AVC avc:
received policyload notice (seqno=2) : exe="?" (sauid=81, hostname=?,
addr=?, terminal=?)
Nov 13 23:56:09 xxxxxx setsebool: The dovecot_disable_trans policy
boolean was changed to 1 by root
Nov 14 00:00:54 xxxxxx setroubleshoot:      SELinux is preventing
/usr/libexec/dovecot/dovecot-auth (dovecot_auth_t) "execute" to
unix_update (sbin_t).      For complete SELinux messages. run sealert -l
5ad4f704-d199-4c23-9cba-4cf5f71b133d

--
Michael Hannon            mailto:[log in to unmask]
Dept. of Physics          530.752.4966
University of California  530.752.4717 FAX
Davis, CA 95616-8677

ATOM RSS1 RSS2