Bug#433972: selinux-policy-refpolicy-targeted: sshd remote logins fail due to missing domain transitions

2007-07-20 Thread Vesa-Pekka Palmu
Package: selinux-policy-refpolicy-targeted Version: 0.0.20070507-5 Severity: important Remote logins via ssh fail with targeted reference policy. Audit error message: audit(1184954364.321:1975319): avc: denied { entrypoint } for pid=21508 comm="sshd" name="bash" dev=dm-0 ino=41107 scontext=u

Bug#433886: selinux-policy-refpolicy-targeted: munin.pp module doesn't allow apache to read munin_var_lib_t

2007-07-19 Thread Vesa-Pekka Palmu
Package: selinux-policy-refpolicy-targeted Version: 0.0.20070507-5 Severity: normal munin module lacks the rule allowing apache to read it's files under /var/www/munin, what I understant from selinux refpolicy sources apache should be allowed to read files generated by munin. Currently in per

Bug#433883: selinux-utils: setsebool -P fails with "Could not change policy booleans"

2007-07-19 Thread Vesa-Pekka Palmu
Package: selinux-utils Version: 2.0.15-2+b1 Severity: normal setsebool -P gives error message "Could not change policy booleans", probably related to this: http://www.opensubscriber.com/message/[EMAIL PROTECTED]/6914917.html Haven't had the change to reboot the system for testing if the policy