This service will be undergoing maintenance at 20:00 UTC, 2017-04-03. It is expected to last about 30 minutes
Bug 163091 - vsftpd can't read cert_t files/directories
vsftpd can't read cert_t files/directories
Status: CLOSED NEXTRELEASE
Product: Fedora
Classification: Fedora
Component: selinux-policy-targeted (Show other bugs)
4
All Linux
medium Severity medium
: ---
: ---
Assigned To: Daniel Walsh
:
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2005-07-12 16:11 EDT by Bojan Smojver
Modified: 2007-11-30 17:11 EST (History)
0 users

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2005-07-15 07:55:02 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)

  None (edit)
Description Bojan Smojver 2005-07-12 16:11:57 EDT
Description of problem:

This is a continuation of the cert_t problem, but instead of dovecot, the
culprit is now vsftpd. As an aside, I think I've seen bind do a similar thing at
one stage (with the policy file from July 9), but I'll have to fiddle with it to
verify...

Version-Release number of selected component (if applicable):
1.25.1-7

How reproducible:
Always.

Additional info:

Jul 12 17:51:23 beauty kernel: audit(1121154683.985:225): avc:  denied  { search
 } for  pid=26291 comm="vsftpd" name="pki" dev=dm-0 ino=481589 scontext=root:sys
tem_r:ftpd_t tcontext=system_u:object_r:cert_t tclass=dir
Jul 12 17:51:23 beauty kernel: audit(1121154683.989:226): avc:  denied  { search
 } for  pid=26291 comm="vsftpd" name="pki" dev=dm-0 ino=481589 scontext=root:sys
tem_r:ftpd_t tcontext=system_u:object_r:cert_t tclass=dir
Comment 1 Daniel Walsh 2005-07-14 11:28:34 EDT
selinux-policy-targeted-1.25.2-4
Comment 2 Bojan Smojver 2005-07-14 16:04:27 EDT
Where can I find that one? The testing repository goes up to -3.
Comment 3 Daniel Walsh 2005-07-14 16:31:02 EDT
It should be going out tonight.  You can grab a copy off of

ftp://people.redhat.com/dwalsh/SELinux/FC4
Comment 4 Bojan Smojver 2005-07-15 07:55:02 EDT
Looking good! I'll close for now.

Note You need to log in before you can comment on or make changes to this bug.