Cannot FTP to /var/www/don/html with SELinux enabled

Paul Howarth paul at city-fan.org
Thu Jun 1 13:04:23 UTC 2006


Aurelien Bompard wrote:
> Paul Howarth wrote:
>> # setsebool -P allow_ftpd_anon_write 1
> 
> By the way, I think this boolean is rather misnamed: it allows write access
> by FTP in general, not only for anonymous users.
> 
> I thought authenticated users always had write access until I read the
> policy source, and found out I should turn this boolean on.

Did the "ftpd_selinux" manpage not help?

> Renaming the boolean is probably not worth the compatibility breakage, but I
> hope we don't end up like the %_initrddir macro in rpm (which has nothing
> to do with initrd, but expands into /etc/rc.d/init.d)

I always wondered where that macro name came from. Still do!

> Maybe change it now before it's too late (SELinux is too widely used) ?

+1

Paul.




More information about the fedora-selinux-list mailing list