postfix high-ports prob

Nicolas Mailhot nicolas.mailhot at laposte.net
Sat Mar 11 23:26:30 UTC 2006


Le samedi 11 mars 2006 à 10:01 -0500, Daniel J Walsh a écrit :
> Holger Burde wrote:
> > Hi;
> >
> > FC 4 currrent with targeted - up2date & unmodified.
> >
> > The postfix Policy or some other seems 2 prevent binding postfix to
> > unpriv Ports > 1023 (10026 in my case). Is this intentional and if why ?
> > Daemon based Filtering stuff needs those high-ports.  
> > Since after setting setenforce to 0 it works i think i must be policy
> > related (the system has no source policy - so i didn't dig into that
> > yet).     
> >
> > Mar 11 14:06:40 proton postfix/master[3413]: fatal: bind 127.0.0.1 port
> > 10026: Permission denied

> 
> Well you have two choices.  You can update to FC5 and use some of the 
> semanage to add additional ports
> to  postfix.

Actually this is a postfix/filter communication problem, it works fine
in FC4/5 with postfix<->amavid-new, so what you actually need is use the
same ports as amavisd-new and eventually apply amavis contexts to your
filter

(another solution is to just use amavisd-new now it's in FE)

-- 
Nicolas Mailhot
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 199 bytes
Desc: Ceci est une partie de message num?riquement sign?e
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20060312/955d3095/attachment.sig>


More information about the fedora-selinux-list mailing list