| Summary: | RFE: Default SELinux policy does not support multiple OpenVPN instances | |||
|---|---|---|---|---|
| Product: | Red Hat Enterprise Linux 6 | Reporter: | E.Patton <redhatbugzilla> | |
| Component: | selinux-policy | Assignee: | Miroslav Grepl <mgrepl> | |
| Status: | CLOSED DUPLICATE | QA Contact: | BaseOS QE Security Team <qe-baseos-security> | |
| Severity: | low | Docs Contact: | ||
| Priority: | unspecified | |||
| Version: | 6.2 | CC: | dwalsh, mmalik | |
| Target Milestone: | rc | Keywords: | FutureFeature | |
| Target Release: | --- | |||
| Hardware: | All | |||
| OS: | Linux | |||
| Whiteboard: | ||||
| Fixed In Version: | Doc Type: | Enhancement | ||
| Doc Text: | Story Points: | --- | ||
| Clone Of: | ||||
| : | 985435 (view as bug list) | Environment: | ||
| Last Closed: | 2013-08-06 20:40:06 UTC | Type: | --- | |
| Regression: | --- | Mount Type: | --- | |
| Documentation: | --- | CRM: | ||
| Verified Versions: | Category: | --- | ||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
| Cloudforms Team: | --- | Target Upstream Version: | ||
| Bug Depends On: | ||||
| Bug Blocks: | 985435 | |||
|
Description
E.Patton
2012-02-10 14:23:19 UTC
Can we get this file moved to a directory that is supposed to be writable like /var/lib/openvpn or if not that /etc/openvpn/ipp/. I am not crazy about confined domains writing to /etc. Then the handling of this type of issue becomes a lot easier. I have no problem fixing the label to be broader, although we have not seen this in Fedora. But moving it to a directory would allow us to set the label on the directory and then an admin creating a new file would get the correct label without having to think about SELinux. Since RHEL 6.3 External Beta has begun, and this bug remains unresolved, it has been rejected as it is not proposed as exception or blocker. Red Hat invites you to ask your support representative to propose this request, if appropriate and relevant, in the next release of Red Hat Enterprise Linux. We added SELinux support for /var/lib/openvpn. *** This bug has been marked as a duplicate of bug 922732 *** |