Bug 331311 - Selinux preventing Exim
Selinux preventing Exim
Status: CLOSED CURRENTRELEASE
Product: Fedora
Classification: Fedora
Component: selinux-policy (Show other bugs)
8
All Linux
low Severity high
: ---
: ---
Assigned To: Daniel Walsh
Fedora Extras Quality Assurance
:
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2007-10-14 08:09 EDT by Robert Staaf
Modified: 2008-01-30 14:19 EST (History)
1 user (show)

See Also:
Fixed In Version: Current
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2008-01-30 14:19:02 EST
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)

  None (edit)
Description Robert Staaf 2007-10-14 08:09:03 EDT
Description of problem:
SELinux is preventing /usr/sbin/exim (system_mail_t) "search" to (exim_log_t).
SELinux is preventing /usr/sbin/exim (system_mail_t) "getattr" to
/var/spool/exim (exim_spool_t).
SELinux is preventing /usr/sbin/exim (system_mail_t) "setattr" to (exim_spool_t).
SELinux is preventing /usr/sbin/exim (system_mail_t) "search" to (exim_log_t).

Version-Release number of selected component (if applicable):
Policy RPM:  selinux-policy-3.0.8-20.fc8
Affected RPM Packages:  exim-4.68-1.fc8 [application]

How reproducible:
Just seems SELinux isn't all that happy with Exim...

Steps to Reproduce:
1.
  
Actual results:


Expected results:


Additional info:
Comment 1 Daniel Walsh 2007-10-15 13:13:46 EDT
Fixed in selinux-policy-3.0.8-23.fc8.src.rpm
Comment 2 Robert Staaf 2007-10-20 08:23:23 EDT
Actually I am running selinux-policy-3.0.8-24.fc8 and I am still getting the
same SELinux alerts, never stopped...
Comment 3 Robert Staaf 2007-10-20 08:23:52 EDT
I have relabeled a couple of times since then as well...
Comment 4 Robert Staaf 2007-10-20 08:25:09 EDT
SELinux is preventing /usr/sbin/exim (system_mail_t) "append" to (exim_log_t).
Comment 5 Robert Staaf 2007-10-21 08:38:44 EDT
SELinux is preventing sendmail (system_mail_t) "append" to (exim_log_t).

RPM Packages:  Policy RPM:  selinux-policy-3.0.8-28.fc8Selinux 

scontext=system_u:system_r:system_mail_t:s0-s0:c0.c1023 tclass=file
tcontext=system_u:object_r:exim_log_t:s0 
Comment 6 Daniel Walsh 2007-10-22 11:41:27 EDT
Yes I will update tonight to allow system_mail_t to domtrans to exim_t and this
will be allowed.
Comment 7 Robert Staaf 2007-10-26 08:23:22 EDT
SELinux is preventing /usr/sbin/exim (system_mail_t) "append" to (exim_log_t).

selinux-policy-3.0.8-32.fc8
Comment 8 Daniel Walsh 2007-10-26 09:05:50 EDT
selinux-policy-3.0.8-36.fc8
Comment 9 Robert Staaf 2007-11-02 07:56:26 EDT
Looks like this is a rather stubborn one...

SELinux is preventing /usr/sbin/exim (system_mail_t) "execute" to (exim_exec_t).

selinux-policy-3.0.8-42.fc8
Comment 10 Daniel Walsh 2008-01-30 14:19:02 EST
Bulk closing all bugs in Fedora updates in the modified state.  If you bug is
not fixed, please reopen.

Note You need to log in before you can comment on or make changes to this bug.