Red Hat Bugzilla – Bug 427584
Selinux is preventing access to /var/run/nscd/socket
Last modified: 2008-04-07 22:18:20 EDT
Description of problem:
SELinux is preventing /usr/sbin/setsebool (semanage_t) "connectto" to
Version-Release number of selected component (if applicable):
Steps to Reproduce:
This looks like you have nscd running as initrc_t? Which would be wrong. You
could have a labeling problem.
ps -eZ | grep nscd
To fix labeling problems you can execute
touch /.autorelabel; reboot
Please attach the avc messages from /var/log/audit/audit.log
ausearch -m avc
will gather them
Created attachment 298591 [details]
This is the log requested by the tech
Looks like nscd is mislabeled.
# matchpathcon /usr/sbin/nscd
If it does not have this label
# restorecon /usr/sbin/nscd
# service nscd restart
Should fix it.