Red Hat Bugzilla – Bug 430158
SElinux policy breaks NFS + NIS configuration
Last modified: 2008-02-26 17:45:12 EST
Description of problem:
I am using NFS to mount users home directories and NIS to authenticate users.
When logging in, many services related to NFS and NIS are blocked by SElinux. As
a result users are unable to login normally.
Version-Release number of selected component (if applicable):
Fedora 8, SE linux default policies.
Users home directories should be on NFS mount, users should be authenticated by NFS.
Steps to Reproduce:
1. login as NIS authenticated user with NFS home directory.
Login reports home directory not available, but upon login user can view home
This problem can be resolved by setting SElinux to permissive mode.
Do you have the booleans use_nfs_home_dirs and allow_ypbind turned on?
getsebool use_nfs_home_dirs allow_ypbind
Turn them on.
setsebool -P use_nfs_home_dirs=1 allow_ypbind=1
If they were set or this does not fix the problem. Please attach the audit.log.