viewcvs problem with SELinux

ankush grover ankushgrover1711 at gmail.com
Thu Aug 18 11:06:41 UTC 2005


hey friends,

 I have configure cvs and viewcvs on FC3  but I am not able to access
viewcvs when SELinux is on.

The /var/log/messages contains these entries

avc:  denied  { execute } for  pid=5233 exe=/usr/sbin/httpd
name=viewcvs.cgi dev=hda5 ino=198687 scontext=user_u:system_r:httpd_t
tcontext=system_u:object_r:usr_t tclass=file

When I switch off SELinux I am able to access the viewcvs through the browser.

ls -lZ /usr/local/viewcvs

drwxr-xr-x  root   root     system_u:object_r:usr_t          cgi
-rwxr-xr-x  root     root     system_u:object_r:usr_t          cvsdbadmin
-rw-r--r--  root     root     system_u:object_r:usr_t          cvsgraph.conf
drwxr-xr-x  root     root     system_u:object_r:usr_t          doc
drwxr-xr-x  root     root     system_u:object_r:lib_t          lib
-rwxr-xr-x  root     root     system_u:object_r:usr_t          loginfo-handler
-rwxr-xr-x  root     root     system_u:object_r:usr_t          make-database
-rwxr-xr-x  root     root     system_u:object_r:usr_t          standalone.py
drwxr-xr-x  root     root     system_u:object_r:usr_t          templates
-rw-r--r--  root     root     system_u:object_r:usr_t          viewcvs.conf


I also did this make -C /etc/selinux/targeted/src/policy reload

restorecon -R /usr/local/viewcvs

But still the problem is persisting.

Thanks & Regards

Ankush Grover




More information about the fedora-selinux-list mailing list