Why no ftp_home_dir in Fedora ?
Hello
I just installed Fedora 23 and tried to setup vsftpd server. Its surprising fedora doesn't have selinux ftp_home_dir boolen. How come ? Fedora 23 Code:
# semanage boolean -l | grep '_home_' Code:
# semanage boolean -l | grep '_home_' |
Fedora is ahead of CentOS, so I expect that is the direction a later version of CentOS will also take.
If you identify the package that supplies the file, then you could find the version control system for it that Fedora uses. Then you could dig through the commits until you find the right one and hopefully the comment will have some clarification. But just guessing, it could be that is soon finally over for FTP. Anonymous FTP can be replaced by either HTTP or a Torrent. Uploads can be handled by HTTPS (and some server side help) or SFTP. Old FTP with login should not be allowed. Add to that the complexity of setting it up and the permanent, unfixable insecurity and you have to wonder why it was allowed to hang on for so many years. |
Quote:
Code:
setsebool -P ftp_home_dir on |
Quote:
Code:
# setsebool -P ftp_home_dir on Fedora23 (no result) Code:
# semanage boolean -l | grep '^ftp_home_dir' Code:
# semanage boolean -l | grep '^ftp_home_dir' Code:
# setsebool -P ftpd_full_access 1 |
Only Fedora knows for sure.
|
All times are GMT -5. The time now is 06:35 PM. |