Something changed in the last day, causing both vpnc manual and NetworkManager-vpnc to fail due to an AVC denial. type=AVC msg=audit(1192727125.905:29): avc: denied { name_bind } for pid=4069 comm="vpnc" src=4500 scontext=system_u:system_r:vpnc_t:s0 tcontext=system_u:object_r:ipsecnat_port_t:s0 tclass=udp_socket module vpncawesomeness 1.0; require { type vpnc_t; type ipsecnat_port_t; class udp_socket name_bind; } #============= vpnc_t ============== allow vpnc_t ipsecnat_port_t:udp_socket name_bind;
dwalsh said that yesterday port 4500 began being labeled for the first time, that would explain why this problem began now.
Fixed in selinux-policy-3.0.8-25
Bulk closing all bugs in Fedora updates in the modified state. If you bug is not fixed, please reopen.