Linux - SecurityThis forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.
Notices
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
Distribution: Custom Linux, Buildroot, Busybox, Fedora, Raspberry Pi
Posts: 144
Rep:
Problems with Selinux on Fedora 17
Hi,
I recently upgraded from Fedora 16 to Fedora 17. It all went well, until I wanted to ftp into my home directory. That didn't work then I rememebered I had to ...
setsebool -P ftp_home_dir=1
Unfortunately, that doesn't seem to work, it fails like ...
[root@ceri mike]# setsebool -P ftp_home_dir=1
libsepol.print_missing_requirements: mypol3's global requirements were not met: type/attribute unconfined_execmem_t (No such file or directory).
libsemanage.semanage_link_sandbox: Link packages failed (No such file or directory).
Could not change policy booleans
[root@ceri mike]#
Other stuff fails too. If I try to load a new module then it fails in a similar fashion, e.g.
[root@ceri mike]# semodule -i test.pp
libsepol.print_missing_requirements: mypol3's global requirements were not met: type/attribute unconfined_execmem_t (No such file or directory).
libsemanage.semanage_link_sandbox: Link packages failed (No such file or directory).
semodule: Failed!
I'm no expert on selinux. What is going on here. What is missing ?
Last edited by Mike Davies; 11-17-2012 at 04:01 AM.
[root@ceri mike]# setsebool -P ftp_home_dir=1
libsepol.print_missing_requirements: mypol3's global requirements were not met: type/attribute unconfined_execmem_t (No such file or directory).
libsemanage.semanage_link_sandbox: Link packages failed (No such file or directory).
Could not change policy booleans
The print_missing_requirements message doesn't seem to relate directly to setsebool usage, at least not as far as I can see, which means there's two avenues to choose from: 0) explain what rules this "mypol3" holds and why it's needed, check all SELinux policy package were upgraded to their F17 versions, verify package contents, check if SELinux policy modules were actually loaded and analyze SELinux errors in /var/log/audit/audit.log /var/log/messages and dmesg or 1) remove all your modifications and all modules Fedora doesn't provide by default, reinstall SELinux policy packages, relabel, reboot and then check /var/log/audit/audit.log /var/log/messages and dmesg for SELinux related errors.
Distribution: Custom Linux, Buildroot, Busybox, Fedora, Raspberry Pi
Posts: 144
Original Poster
Rep:
Thanks for the reply.
It seems that mypol3 was an old file of mine left over from years ago, so it was all my fault that I was having problems. Thanks for pointing me in the right direction.
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.