[Freeipa-users] SELinux is preventing /usr/sbin/krb5kdc from write access on the sock_file /var/lib/sss/pipes/pac.
lejeczek
peljasz at yahoo.co.uk
Sat Sep 17 12:18:25 UTC 2016
I think one case it when I sudo
not much there really, building up an semodule out of the
alerts would end up in: allow krb5kdc_t
sssd_var_lib_t:sock_file write;
On 17/09/16 12:59, Lukas Slebodnik wrote:
> On (17/09/16 12:02), lejeczek wrote:
>> before I drop above onto SELinux team - do you guys think SE should be doing
>> that? Does it impair IPA in some ways?
>>
> It would be god to see more details. Do you know which action trigger
> AVCs?
>
> Could you also provide detail about AVC?
> ausearch -m avc -i ts recent
>
> LS
More information about the Freeipa-users
mailing list