Hide Forgot
Description of problem: rsyslog ommail ommail module is included in RHEL6.2 (RFE bz 702314). rsyslog is not able to connect to snmp port # grep -i avc /var/log/audit/audit.log type=AVC msg=audit(1316686239.531:42300): avc: denied { name_connect } for pid=18080 comm=72733A6D61696E20513A526567 dest=25 scontext=unconfined_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:smtp_port_t:s0 tclass=tcp_socket type=AVC msg=audit(1316686316.371:42301): avc: denied { name_connect } for pid=18241 comm=72733A6D61696E20513A526567 dest=25 scontext=unconfined_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:smtp_port_t:s0 tclass=tcp_socket Version-Release number of selected component (if applicable): selinux-policy-3.7.19-109.el6.noarch How reproducible: always Steps to Reproduce: 1. configure rsyslog to send logs via mail
I mean smtp port, not snmp. sorry. When I allow this with semodule -M, rsyslog works fine and mails are delivered.
We need to add it.
This should be by boolean. I would not want rsyslog just mailing off log files.
"logging_syslogd_can_sendmail" is fine?
Sure default to false.
Fixed in selinux-policy-3.7.19-114.el6
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHBA-2011-1511.html