selinux and squirrelmail in FC4

Hongwei Li hongwei at wustl.edu
Tue Sep 20 13:32:22 UTC 2005


> Hello,
>
> I have a FC4 system, kernel: 2.6.12-1.1447_FC4,  selinux targeted, enforced,
> installed:  selinux-policy-targeted-1.25.4-10.1,
>   selinux-policy-targeted-sources-1.25.4-10.1
>   squirrelmail-1.4.4-2
>
> If I setenforce 0, then users can log in squirrelmail and read/send emails w/o
> problems.  If I setenforce 1, then users cannot login sm. The error message
> is:
>
> Error connecting to IMAP server: localhost.
> 13 : Permission denied
>
> However, the system log does not show error message about it.  So, if I run
> the selinux command, I got:
>
> # audit2allow -l -i /var/log/messages -o
> /etc/selinux/targeted/src/policy/domains/program/apache.te
>

The problem has been fixed by working with audit.log instead of message log.
Post it here in case other people have similar problem.

Hongwei




More information about the fedora-selinux-list mailing list