Description of problem: Dhcrelay module kmod=net-pf-10 is denied by selinux after fresh install of dhcp-relay on Fe23. Audit.log message, type=AVC msg=audit(1440417049.270:90): avc: denied { module_request } for pid=798 comm="dhcrelay" kmod="net-pf-10" scontext=system_u:system_r:dhcpd_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=system permissive=0 Requires selinux override to enable dhcrelay to function correctly, grep dhcrelay /var/log/audit/audit.log | audit2allow -m dhcrelaylocal - gives, module dhcrelaylocal 1.0; require { type dhcpd_t; type kernel_t; class system module_request; } #============= dhcpd_t ============== #!!!! This avc can be allowed using the boolean 'domain_kernel_load_modules' allow dhcpd_t kernel_t:system module_request; Version-Release number of selected component (if applicable): 4.3.3-0.1b1.fc23
Google suggests: http://danwalsh.livejournal.com/47118.html https://bugzilla.redhat.com/show_bug.cgi?id=641836
Thanks for response. Ok so its caused by IPV6 being disabled (disabled via GRUB_CMDLINE_LINUX="ipv6.disable=1").