Red Hat Bugzilla – Bug 1315700
Libreswan XAUTH server mode uses pam
Last modified: 2016-11-03 22:44:22 EDT
Created attachment 1134146 [details]
Proposed fix for selinux policy with AVCs caused by problem.
Libreswan XAUTH server mode uses pam but selinux policy doesn't allow that.
Attached patch lists AVCs caused by that and fix for PAM auth problem.
Could you attach also raw AVC msgs?
I did. Check the patch.
It makes sense. We will add it also in RHEL-6.
Author: Lukas Vrabec <firstname.lastname@example.org>
Date: Wed Mar 16 10:53:34 2016 +0100
Allow ipsec to use pam.
This bug was accidentally moved from POST to MODIFIED via an error in automation, please see email@example.com with any questions
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.