Description of problem: It is not possible to mount nfs share form server f12. Version-Release number of selected component (if applicable): nfs-utils-1.1.4-8.fc10.i386 selinux-policy-3.5.13-71.fc10 How reproducible: always Steps to Reproduce: 1. strace mount -t nfs 192.168.1.33:/mnt/tonlist /mnt/tonlist 2. 3. Actual results: See attachment result from mount and sealert. Expected results: Files mounted Additional info: Server is F12. It is possible to mount with nfs in f12.
I don't see any attachments....
Created attachment 362702 [details] strace mount -t nfs - SELinux is preventing mount.nfs4
Adding our SElinux guy...
Miroslav add rpc_domtrans_rpcd(unconfined_mount_t) to mount.te in F10.
Fixed in selinux-policy-3.5.13-73.fc10
Created attachment 365124 [details] nfs sealert I installed selinux-policy-3.5.13-73.fc10 form http://koji.fedoraproject.org/koji/packageinfo?packageID=32 same ppoblem
Did you install selinux-policy-targeted-3.5.13-73.fc10 package also ?
No I can not find selinux-policy-targeted in http://koji.fedoraproject.org/koji where can I find it.
There are: http://kojipkgs.fedoraproject.org/packages/selinux-policy/3.5.13/73.fc10/noarch/selinux-policy-3.5.13-73.fc10.noarch.rpm http://kojipkgs.fedoraproject.org/packages/selinux-policy/3.5.13/73.fc10/noarch/selinux-policy-targeted-3.5.13-73.fc10.noarch.rpm
Insalled selinux-policy-targeted-3.5.13-73.fc10.noarch selinux-policy-3.5.13-73.fc10.noarch ok now no sealert from # mount -t nfs4 192.168.1.35:/mnt/ymislegt /mnt/ymislegt