ldap server + enforcing mode?

Robert Story rstory at sparta.com
Fri Jul 18 16:09:40 UTC 2008


On Thu, 17 Jul 2008 23:30:40 -0400 Eric wrote:
EP> These indicate to me that cacert.pem and slapd.pem were both created
EP> in /tmp/and moved to /etc/openldap. [...]
EP> 
EP> restorecon -R -v /etc/openldap
EP> 
EP> After doing that can you send up the denials you get (with dontaudits)
EP> and if it gives you any more trouble?

No more trouble after that... Sorry for the noise..

EP> Also can you help us understand how these two .pem files were created
EP> and how the got into /etc/openldap so we can try to fix this for others?

It was just a manual process... generated the certificates on a another
machine and scp'd them to /tmp/ because it's short and easier than
trying to remember the real path from the HOWTO on another machine...

-- 
Robert Story
SPARTA
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20080718/d890f48f/attachment.sig>


More information about the fedora-selinux-list mailing list