Red Hat Bugzilla – Bug 1279784
System upgrade resets SElinux settings
Last modified: 2015-11-12 04:59:44 EST
Description of problem:
Upgrade from Fedora 22 to Fedora 23 with dnf-plugin-system-upgrade caused some SELinux settings to be changed to default.
Hier example with nginx. But the same situation is with pdns (pdns_can_network_connect_db)
Version-Release number of selected component (if applicable):
Steps to Reproduce:
1. Install nginx on Fedora 22
2. Allow network connection to DB (setsebool -P httpd_can_network_connect_db 1)
3. Upgrade system as described hier: https://fedoraproject.org/wiki/DNF_system_upgrade
Nginx cannot connect DB:
httpd_can_network_connect_db --> off
DB connection from web server still works after upgrade
As it says in the man page:
Similarly, problems encountered on your system after the upgrade com‐
pletes should be reported to the maintainers of the affected compo‐
nents. In other words: if (for example) KDE stops working, it's best
if you report that to the KDE maintainers.
This is an SELinux policy problem, so I'm reassigning to selinux-policy.
*** This bug has been marked as a duplicate of bug 1279621 ***