I am attempting to troubleshoot a clean install of Fedora Core 3 to be used as a mailserver. I am denied access via squirrelmail and the error message from /var/log/messages is:
Quote:
Jul 6 00:05:26 ns1 kernel: audit(1120622726.472:0): avc: denied { connect } for pid=3690 exe=/usr/sbin/httpd scontext=user_u:system_r:httpd_t tcontext=user_u:system_r:httpd_t tclass=tcp_socket
|
I have the latest RPM's installed for Fedora Core 3 for Dovecot Imap, Postfix, and Squirrelmail. I have /etc/selinux/config make SELINUX=enabled and the latest targeted policy rpm from Dan Walsh at Redhat (selinux-policy-targeted-1.17.30-3.16.noarch.rpm). This is supposed to fix the policy to allow squirrelmail to access dovecot imap.
My search of the forum confirms that this is a policy issue but the thread addressing this issue "solved" the problem by disabling SE Linux. See
http://www.linuxquestions.org/questi...=dovecot+audit
Two Questions:
1. Can someone help me correct the policy for this error message
2. Can someone point me to a text or tutorial that will help me understand SE Linux and some of the basic commands associated with setting the policy, etc.