Snort and sysadm_devpts

Stephen Smalley sds at epoch.ncsc.mil
Mon Aug 16 19:28:37 UTC 2004


On Mon, 2004-08-16 at 14:09, Business DSL User wrote:
> Drat! No can do: The latest kernel includes a bug that restricts my Intel 
> e1000 network adapter to about 20 kbps. So, I've been forced to regress to 
> the next to latest kernel.

That may still have the change for re-opening descriptors.  If not, you
can always manually redirect descriptors 0-2 to /dev/null from the shell
when you start snort, in which case SELinux won't close them and snort
should be fine.

-- 
Stephen Smalley <sds at epoch.ncsc.mil>
National Security Agency




More information about the fedora-selinux-list mailing list