Bug 121508
Summary: | bind does not work | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Yoshinobu Akimoto <yoshia> |
Component: | bind | Assignee: | Jason Vas Dias <jvdias> |
Status: | CLOSED RAWHIDE | QA Contact: | Ben Levenson <benl> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | rawhide | Keywords: | SELinux |
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | i686 | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2004-08-04 14:27:41 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Please submit the avc messages. ---------- audit2allow1 (after Domain Name System tool) ---------- allow named_t named_conf_t:chr_file { read write }; ---------- audit2allow1 (after Hand modified) ---------- allow consoletype_t sysadm_t:fifo_file { read write }; allow named_t named_conf_t:chr_file { read write }; allow ndc_t etc_t:file { read }; ---------- error messages when named starts ---------- rndc: error: /etc/rndc.conf:33: open: /etc/rndc.key: permission denied rndc: could not load rndc configuration I modified the /etc/named.conf and /var/named/chroot/etc/named.conf from the default or created by Domain Name System tool. And then I copied the zone files those in the /var/named/chroot/var/named , created by Domain Name System tool, to /var/named. So finally BIND worked. But there are some problems as following, (1) Result shows following message "allow named_t named_conf_t:chr_file { read write };" (2) When named service starts, followin message is shown "rndc: error: /etc/rndc.conf:33: open: /etc/rndc.key: permission denied" "rndc: could not load rndc configuration" Does not happen with new selinux targetted policy. |
From Bugzilla Helper: User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) Description of problem: Version-Release number of selected component (if applicable): How reproducible: Always Steps to Reproduce: 1.create the zone files with system-config-bind with GNOME 2.After check the zone file 3.modify the /etc/named.conf file 4.start the named service by click <GNOME menu> -> [System Settings] - > [Server Settings] -> [Services] Actual Results: Start successfully but Error[mdc.key open permission denied] is displayed. Additional info: audit2allow command shows an "allow" statement regarding "named.conf". ping command can not find the host name which is specified in the zone file.