SCIENTIFIC-LINUX-DEVEL Archives

May 2008

SCIENTIFIC-LINUX-DEVEL@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Stephan Wiesand <[log in to unmask]>
Reply To:
Stephan Wiesand <[log in to unmask]>
Date:
Fri, 2 May 2008 10:00:52 +0200
Content-Type:
TEXT/PLAIN
Parts/Attachments:
TEXT/PLAIN (24 lines)
Hi Andrew,

On Fri, 2 May 2008, Andrew Elwell wrote:

> Hi folks,
>
> does anyone have the magic incantation to hand (apart from 'setenforce 
> permissive') to stop ntpd being blocked from writing to the driftfile etc. On 
> our enforcing machines we see large fluctuations in NTP stability

unless you are willing to modify the policy (which is rather painful on 
SL4), you probably want to "setsebool -P ntpd_disable_trans 1". Ntpd will 
run in the initrc_t domain after the next restart, which should be 
sufficient on SL4.

Hope this helps,
 	Stephan

-- 
Stephan Wiesand
   DESY - DV -
   Platanenallee 6
   15738 Zeuthen, Germany

ATOM RSS1 RSS2