kerberos server + enforcing mode?

Robert Story rstory at sparta.com
Wed Jul 9 21:20:00 UTC 2008


I'm still getting "modify_principal: Insufficient access to lock
database" error messages when trying to use kadmin in enforcing mode.I
ran 'semodule -DB' to re-enable don't audit messages, and I've attached
what I get when trying to run a kadmin command to add a principal
(after starting kadmind/krb5kdc... kadmin.log seems to be ok). Any
hint, tips or policy modules greatly appreciated...

-- 
Robert Story
SPARTA
-------------- next part --------------
A non-text attachment was scrubbed...
Name: avcs
Type: application/octet-stream
Size: 2515 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20080709/9b39b1ec/attachment.obj>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20080709/9b39b1ec/attachment.sig>


More information about the fedora-selinux-list mailing list