Bug 467351
Summary: | SELinux is preventing npviewer.bin (nsplugin_t) "name_connect" http_cache_port_t. | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Alex Chiang <achiang> |
Component: | selinux-policy | Assignee: | Daniel Walsh <dwalsh> |
Status: | CLOSED RAWHIDE | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | rawhide | CC: | caillon, dwalsh, jkubin, mgrepl, quantumburnz, stransky, wtogami |
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | i386 | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2008-10-23 18:19:37 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Alex Chiang
2008-10-17 01:30:24 UTC
Alex, there's a new version of nspluginwrapper since you posted this, did it fix your problem? Since it is currently allowed to connect to http_ports I guess we can allow it to connect to http_cache_ports You can allow this for now. # audit2allow -M mypol -l -i /var/log/audit/audit.log # semodule -i mypol.pp Fixed in selinux-policy-3.5.13-6.fc10 Chris, I think the nspluginwrapper updates may have fixed the issue as well (but I can't tell). Looking at my SELinux troubleshooter logs, I haven't seen any incidents since 18 October. I know that I've definitely pulled all rawhide updates since then and have continued using my system normally. Sorry for the vague answer, I'll try and take better notes next time (including a reproducer, perhaps). |