fedora-selinux May 2009 archive
Main Archive Page > Month Archives  > fedora-selinux archives
fedora-selinux: RE: network failures maybe SELinux related?

RE: network failures maybe SELinux related?

From: Brian Ginn <BGinn_at_nospam>
Date: Fri May 15 2009 - 21:48:55 GMT
To: Brian Ginn <BGinn@symark.com>, "'fedora-selinux-list@redhat.com'" <fedora-selinux-list@redhat.com>


corenet_tcp_bind_all_ports() seems to have solved my problems.

-Brian

From: Brian Ginn
Sent: Friday, May 15, 2009 1:44 PM
To: 'fedora-selinux-list@redhat.com'
Subject: network failures maybe SELinux related?

I have a client app run by users, and two server apps run from xinetd. The client connects to server1
Server1 connects to server2
Server2 connects back to the client app

When not confined by SELinux policy. Everything works fine. I can run several hundred iterations without any failures. When confined, but run in permissive mode, Everything works fine. - nothing in audit.log

When confined and enforced, it works a few times, then the connection from server1 to server2 fails. Then, after a rest, it works a few times, then the connection from server1 to server2 fails. There is nothing in audit.log.
Does anyone have suggestions for constraints or don't audit rules I should look into?

Thanks,
Brian

--

fedora-selinux-list mailing list
fedora-selinux-list@redhat.com
https://www.redhat.com/mailman/listinfo/fedora-selinux-list