Advice needed on SELinux policy
nick4soup_at_yahoo.com.au
Date: 05/30/05
- Next message: nick4soup_at_yahoo.com.au: "SELinux: disregard 'dontaudit' rules"
- Previous message: Balwinder Singh Dheeman: "Stats comp.os.linux.security (last 7 days)"
- Next in thread: nick4soup_at_yahoo.com.au: "Re: Advice needed on SELinux policy take 2"
- Reply: nick4soup_at_yahoo.com.au: "Re: Advice needed on SELinux policy take 2"
- Reply: Mouse: "Re: Advice needed on SELinux policy"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: 30 May 2005 01:48:44 -0700
Hi,
The basic problem I have is that I cannot run a PHP script that
connects to a MySQL database, when I browse the URL. I have figured
out that this is because of SELinux, refer pertinent log message below.
/var/log/messages:
May 23 05:54:22 jervois kernel: audit(1116791662.840:0): avc:
denied { write } for pid=1755 exe=/usr/sbin/httpd name=mysql.sock
dev=dm-0 ino=262316 scontext=user_u:system_r:httpd_t
tcontext=user_u:object_r:var_lib_t tclass=sock_file
I'm running the targeted policy, version 18 in enforcing mode. Is
there a simple change that I can make to the policy so I can get it
working?
In the policy, I notice a httpd_php_t type (and several related ones)
... is this meant to have something to do with it?
Nick Bishop
-----
email replies ignored.
-----
BIBO = Bug In, Bug Out
-oOo-
- Next message: nick4soup_at_yahoo.com.au: "SELinux: disregard 'dontaudit' rules"
- Previous message: Balwinder Singh Dheeman: "Stats comp.os.linux.security (last 7 days)"
- Next in thread: nick4soup_at_yahoo.com.au: "Re: Advice needed on SELinux policy take 2"
- Reply: nick4soup_at_yahoo.com.au: "Re: Advice needed on SELinux policy take 2"
- Reply: Mouse: "Re: Advice needed on SELinux policy"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|