Bug#1049428: [DSE-Dev] Bug#1049428: selinux-policy-default: statd and mountd fail to start with fixed ports

2023-08-24 Thread Colin Simpson
I ran something similar for the upstream report.  Okay audit2allow now says: #= rpcd_t == allow rpcd_t nfs_port_t:tcp_socket name_bind; allow rpcd_t nfs_port_t:udp_socket name_bind; allow rpcd_t nfsd_fs_t:dir search; allow rpcd_t nfsd_fs_t:file { open read }; Or the raw lo

Bug#1049428: [DSE-Dev] Bug#1049428: selinux-policy-default: statd and mountd fail to start with fixed ports

2023-08-24 Thread Russell Coker
> This all works fine in permissive mode and there is nothing reported by > audit2allow on the log file. Please run "semodule -DB" and then reproduce the problem, the -D option means to remove dontaudit rules and the -B option means to rebuild the policy that is loaded into the kernel. After th

Bug#1049428: selinux-policy-default: statd and mountd fail to start with fixed ports

2023-08-15 Thread Colin Simpson
Package: selinux-policy-default Version: 2:2.20221101-10 Severity: important Dear Maintainer, When I fix the NFS ports to allow firewalling of NFS Services SELinux prevents rpc.statd or rpc.mountd starting. Aug 15 12:31:34 deb12 rpc.statd[811]: Version 2.6.2 starting Aug 15 12:31:34 deb12 rpc.st