Re: Change of /etc/selinux/config's SELINUX causes port389 fail to start

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 04/07/2016 08:35 AM, Lutz Berger wrote:
Changing the SELINUX setting from "permissive" to "enforcing" and
rebooting afterwards causes port389 DS fail to start due to
a permission problem of /var/run/dirsrv

Interestingly, the ownership of /var/run/dirsrv changed from port389:port389 to dirsrv:dirsrv
after reboot.

Just to check the obvious, those users have different UIDs on the system, right?

SELinux isn't related to the ownership of files in /run (the target of the /var/run symlink). Those files ownership are defined in /etc/tmpfiles.d/*

If the ownership of that directory changed, then you may have conflicting definitions in /etc/tmpfiles.d, or someone may have made an unrelated change that replaced or modified those files.

I'm confident that whatever broke your system was not the change from permissive to enforcing mode in SELinux.

But, changing the ownership and permissions on the /var/run/dirsrv ( which is actually nsslapd-rundir ) back to its original value, doesn't help, i.e. port389 DS doesn't start anymore.

A fresh install with setup-ds-admin.pl "solves" my issues.

That being the case, there probably were more ownership changes than you've described.
--
389 users mailing list
389-users@%(host_name)s
http://lists.fedoraproject.org/admin/lists/389-users@xxxxxxxxxxxxxxxxxxxxxxx




[Index of Archives]     [Fedora User Discussion]     [Older Fedora Users]     [Fedora Announce]     [Fedora Package Announce]     [EPEL Announce]     [Fedora News]     [Fedora Cloud]     [Fedora Advisory Board]     [Fedora Education]     [Fedora Security]     [Fedora Scitech]     [Fedora Robotics]     [Fedora Maintainers]     [Fedora Infrastructure]     [Fedora Websites]     [Anaconda Devel]     [Fedora Devel Java]     [Fedora Legacy]     [Fedora Desktop]     [Fedora Fonts]     [ATA RAID]     [Fedora Marketing]     [Fedora Management Tools]     [Fedora Mentors]     [Fedora Package Review]     [Fedora R Devel]     [Fedora PHP Devel]     [Kickstart]     [Fedora Music]     [Fedora Packaging]     [Centos]     [Fedora SELinux]     [Fedora Legal]     [Fedora Kernel]     [Fedora QA]     [Fedora Triage]     [Fedora OCaml]     [Coolkey]     [Virtualization Tools]     [ET Management Tools]     [Yum Users]     [Tux]     [Yosemite News]     [Yosemite Photos]     [Linux Apps]     [Maemo Users]     [Gnome Users]     [KDE Users]     [Fedora Tools]     [Fedora Art]     [Fedora Docs]     [Maemo Users]     [Asterisk PBX]     [Fedora Sparc]     [Fedora Universal Network Connector]     [Fedora ARM]

  Powered by Linux