Re: F19-mailserver & selinux complains

2013-06-12 Thread Cristian Sava
On Thu, 2013-06-06 at 12:58 -0400, Daniel J Walsh wrote: > > > Please send me the te files that you created, or the original avc messages. > > After the last selinux related updates all is working as expected. No need of custom modules. Thanks Daniel and to all of you. Congrats for the new Fedor

Re: F19-mailserver & selinux complains

2013-06-09 Thread Cristian Sava
On Sat, 2013-06-08 at 22:34 +0200, Lars Seipel wrote: > It took me a while to figure out you're not talking about Fedora > packages but RPMs/specfiles provided by some 3rd party. Please make this > a bit clearer next time. Well, our server is somehow similar to http://www.howtoforge.com/virtual-use

Re: F19-mailserver & selinux complains

2013-06-08 Thread Lars Seipel
On Tue, Jun 04, 2013 at 12:06:32PM +0300, Cristian Sava wrote: > virtual environment. All needed is stock or was packaged on F19 > (rpmbuild -ta ... / rpmbuild -ba ...) and all is working fine (selinux It took me a while to figure out you're not talking about Fedora packages but RPMs/specfiles pro

Re: F19-mailserver & selinux complains

2013-06-06 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 06/06/2013 12:55 PM, Cristian Sava wrote: >>> Anyways Crhitian, I have added the allow rules to the base policy to >>> allow this. You can do this for now by executing >>> >>> # grep courier /var/log/audit/audit.log | audit2allow -M mycourier # >

Re: F19-mailserver & selinux complains

2013-06-06 Thread Cristian Sava
> > Anyways Crhitian, I have added the allow rules to the base policy to allow > > this. You can do this for now by executing > > > > # grep courier /var/log/audit/audit.log | audit2allow -M mycourier > > # semodule -i mycourier.pp Well, I tested as you advised but is much more to do. I did fo

Re: F19-mailserver & selinux complains

2013-06-06 Thread Cristian Sava
On Wed, 2013-06-05 at 07:57 -0500, Bruno Wolff III wrote: > On Wed, Jun 05, 2013 at 09:18:51 +0300, >Cristian Sava wrote: > >I will consider your suggestion but this may take time and testing. It > >is not for today or tomorrow and not all the people will agree with us. > >Courier is a robust

Re: F19-mailserver & selinux complains

2013-06-06 Thread Cristian Sava
On Wed, 2013-06-05 at 09:41 -0400, Daniel J Walsh wrote: > On 06/05/2013 01:59 AM, Cristian Sava wrote: > > On Tue, 2013-06-04 at 11:40 -0400, Daniel J Walsh wrote: > >> On 06/04/2013 05:06 AM, Cristian Sava wrote: > >>> I am trying to activate selinux for my mailserver. It is F19 > >>> postfix_co

Re: F19-mailserver & selinux complains

2013-06-05 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 06/05/2013 01:59 AM, Cristian Sava wrote: > On Tue, 2013-06-04 at 11:40 -0400, Daniel J Walsh wrote: >> On 06/04/2013 05:06 AM, Cristian Sava wrote: >>> I am trying to activate selinux for my mailserver. It is F19 >>> postfix_courier_amavisd-new_cl

Re: F19-mailserver & selinux complains

2013-06-05 Thread Bruno Wolff III
On Wed, Jun 05, 2013 at 09:18:51 +0300, Cristian Sava wrote: I will consider your suggestion but this may take time and testing. It is not for today or tomorrow and not all the people will agree with us. Courier is a robust and well working piece in a mail server so it's a much simpler solutio

Re: F19-mailserver & selinux complains

2013-06-05 Thread Cristian Sava
On Wed, 2013-06-05 at 00:23 -0700, Adam Williamson wrote: > On Wed, 2013-06-05 at 09:18 +0300, Cristian Sava wrote: > > On Tue, 2013-06-04 at 08:08 -0700, Adam Williamson wrote: > > > On Tue, 2013-06-04 at 12:06 +0300, Cristian Sava wrote: > > > > I am trying to activate selinux for my mailserver.

Re: F19-mailserver & selinux complains

2013-06-05 Thread Adam Williamson
On Wed, 2013-06-05 at 09:18 +0300, Cristian Sava wrote: > On Tue, 2013-06-04 at 08:08 -0700, Adam Williamson wrote: > > On Tue, 2013-06-04 at 12:06 +0300, Cristian Sava wrote: > > > I am trying to activate selinux for my mailserver. > > > It is F19 postfix_courier_amavisd-new_clamav_squirrelmail in

Re: F19-mailserver & selinux complains

2013-06-04 Thread Cristian Sava
On Tue, 2013-06-04 at 08:08 -0700, Adam Williamson wrote: > On Tue, 2013-06-04 at 12:06 +0300, Cristian Sava wrote: > > I am trying to activate selinux for my mailserver. > > It is F19 postfix_courier_amavisd-new_clamav_squirrelmail install in a > > virtual environment. All needed is stock or was p

Re: F19-mailserver & selinux complains

2013-06-04 Thread Adam Williamson
On Wed, 2013-06-05 at 08:59 +0300, Cristian Sava wrote: > > Why is courier storing pid files in /var/spool/authdaemon/pid? > > > > Current policy allows courier_authdaemon to create sock_files in this > > directory but not regular files. > > > > > That is beyond of me, but I think there may be

Re: F19-mailserver & selinux complains

2013-06-04 Thread Cristian Sava
On Tue, 2013-06-04 at 11:40 -0400, Daniel J Walsh wrote: > On 06/04/2013 05:06 AM, Cristian Sava wrote: > > I am trying to activate selinux for my mailserver. It is F19 > > postfix_courier_amavisd-new_clamav_squirrelmail install in a virtual > > environment. All needed is stock or was packaged on F

Re: F19-mailserver & selinux complains

2013-06-04 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 06/04/2013 05:06 AM, Cristian Sava wrote: > I am trying to activate selinux for my mailserver. It is F19 > postfix_courier_amavisd-new_clamav_squirrelmail install in a virtual > environment. All needed is stock or was packaged on F19 (rpmbuild -ta .

Re: F19-mailserver & selinux complains

2013-06-04 Thread Adam Williamson
On Tue, 2013-06-04 at 12:06 +0300, Cristian Sava wrote: > I am trying to activate selinux for my mailserver. > It is F19 postfix_courier_amavisd-new_clamav_squirrelmail install in a > virtual environment. All needed is stock or was packaged on F19 > (rpmbuild -ta ... / rpmbuild -ba ...) and all is

F19-mailserver & selinux complains

2013-06-04 Thread Cristian Sava
I am trying to activate selinux for my mailserver. It is F19 postfix_courier_amavisd-new_clamav_squirrelmail install in a virtual environment. All needed is stock or was packaged on F19 (rpmbuild -ta ... / rpmbuild -ba ...) and all is working fine (selinux disabled). No tar.gz directly installed. I