Bugzilla will be upgraded to version 5.0 on a still to be determined date in the near future. The original upgrade date has been delayed.
Bug 169164 - separate /var/lib/{dhcpd,dhclient} directories for improved SELinux policy
separate /var/lib/{dhcpd,dhclient} directories for improved SELinux policy
Product: Fedora
Classification: Fedora
Component: dhcp (Show other bugs)
All Linux
medium Severity medium
: ---
: ---
Assigned To: Jason Vas Dias
: FutureFeature
Depends On:
Blocks: FC5Target
  Show dependency treegraph
Reported: 2005-09-23 16:39 EDT by Jason Vas Dias
Modified: 2007-11-30 17:11 EST (History)
3 users (show)

See Also:
Fixed In Version:
Doc Type: Enhancement
Doc Text:
Story Points: ---
Clone Of:
Last Closed: 2005-11-28 14:45:16 EST
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)

  None (edit)
Description Jason Vas Dias 2005-09-23 16:39:02 EDT
Description of problem:

Make dhcpd use /var/lib/dhcpd/dhcpd.leases, and dhclient use
/var/lib/dhclient/dhclient*.leases, to permit improved SELinux
policy, at the request of the SELinux maintainer. 

Version-Release number of selected component (if applicable):
Comment 1 Jason Vas Dias 2005-09-23 17:25:27 EDT
This is now done with dhcp-3.0.3-7, in rawhide-20050924 - 
dhclient uses /var/lib/dhclient/dhclient.leases by default,
and dhcpd uses /var/lib/dhcpd/dhcpd.leases by default.

The DEFAULT location of dhclient.leases is now /var/lib/dhclient/dhclient.leases.
Note that this will require an initscripts change to take effect:
  /etc/sysconfig/network-scripts/ifup-eth, line 163:
      DHCLIENTARGS=...-lf /var/lib/dhcp/dhclient-${DEVICE}.leases
  should be:
      DHCLIENTARGS=...-lf /var/lib/dhclient/dhclient-${DEVICE}.leases

  /etc/sysconfig/network-scripts/ifdown-eth, line 63:
      /sbin/dhclient ... -lf /var/lib/dhcp/dhclient-${DEVICE}.leases
  should be:
      /sbin/dhclient ... -lf /var/lib/dhclient/dhclient-${DEVICE}.leases

Also 'dhcdbd' will have to be changed to use the new dhclient.leases file.

dhcpd is now OK with using the /var/lib/dhcpd/dhcpd.leases file, but this 
won't work with SELinux in Enforcing mode until the new SELinux policy is in.
Comment 2 Ville Skyttä 2005-11-27 18:34:49 EST
ifup-eth and ifdown-eth still point to the old (wrong) location for dhclient
leases in FC5test1, initscripts-8.17-1.
Comment 3 Bill Nottingham 2005-11-28 14:45:16 EST
Added, will be in 8.18-1.

Note You need to log in before you can comment on or make changes to this bug.