| Summary: | SELinux is preventing /usr/sbin/sshd from search access on the directory | ||
|---|---|---|---|
| Product: | [Fedora] Fedora | Reporter: | Enrique <cquike> |
| Component: | selinux-policy | Assignee: | Miroslav Grepl <mgrepl> |
| Status: | CLOSED NOTABUG | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | 14 | CC: | dwalsh, mgrepl |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | Bug Fix | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2011-03-07 10:00:08 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
|
Description
Enrique
2011-03-04 17:16:26 UTC
I believe sealert tells you what to do. You need to turn on the use_nfs_home_dirs boolean. # setsebool -P use_nfs_home_dirs 1 We don't want to allow it by default. Thank you very much, it worked. Any reason why it is not allowed by default? It is a rather common setup, right? Regards Well not as common as not sharing homedirs with NFS. When you turn this boolean on, all confined domains that have content in the homedir, suddenly get access to all NFS content. Not something we want to allow by default. |