Description of problem: I've done some changes in bind (named daemon) infrastructure. First, I've created /var/named/dynamic and /var/named/chroot/var/named/dynamic directories. It's designed for dynamic DNS updating so please change default contexts to named_cache_t (named needs write to that directories). You could also remove tunable boolean named_write_master_zones. It isn't needed now when dynamic directory exists. I want add dynamic directory into F-7. Could you change policy also in F-7 or not (only add named_cache_t to /var/named/dynamic and /var/named/chroot/var/named/dynamic, named_write_master_zone could be preserved). Regards, Adam
Fixed in selinux-policy-2.6.4-13.fc7
(In reply to comment #1) > Fixed in selinux-policy-2.6.4-13.fc7 Looks fine in fc7 Thanks, Adam