selinux August 2007 archive
Main Archive Page > Month Archives  > selinux archives
selinux: Re: libsepol.print_missing_requirements

Re: libsepol.print_missing_requirements

From: Shintaro Fujiwara <shintaro.fujiwara_at_nospam>
Date: Mon Aug 06 2007 - 14:49:22 GMT
To: "Stephen Smalley" <sds@tycho.nsa.gov>


All right, thanks !

Somethig is wrong on my server.
I will try what you adviced.

Anyway, I can see my server from my office all-right, so dynamic-dns not working (I mean it's almost static)...

As a matter of face, I could update apache.pp, because I installed apache from source, I mean path is different so I edited .fc file and it worked fine some time ago.
This problem only happened when I updated by yum.. Slitly I'm running my home server all-right, besides my noip.pp...
But, I can mangae all-right.
Thanks!
My concern had been cleared I think.

I will do anything my server run on SELinux, haha ! It's so hot in Japan, so I will eat ice-cream...

Thanks.

My homepage
http://intrajp.no-ip.com/
my project on SELinux
http://sourceforge.net/projects/segatex/ my project on PHP
http://sourceforge.net/projects/webon/

I am,

Officer, System-Informations, Signal School, Ground Self Defense Forces, Japan

Cheers to people in Government.

2007/8/6, Stephen Smalley <sds@tycho.nsa.gov>:
> On Sat, 2007-08-04 at 05:52 +0900, Shintaro Fujiwara wrote:
> > Today I updated policies to 2.6.4.30 but couldn't make it either.
> > And I eliminated older versions of policycoreutils.
> >
> > I generated by policygentool a policy for noip dynamic-dns updater.
> > .te file has nothing special execpt I added _etc_ type which I think
> > should has configuration file.
> > I don' think there's something to do with the tool.
> > .te file has proper declarations I think...
> >
> > Here's the message.
> >
> > #semodule -i noip.pp
> > libsepol.print_missing_requirements: noip's global requirements were
> > not met: type/attribute httpd_sysadm_script_exec_t
> > libsemanage.semanage_link_sandbox: Link packages failed
> > semodule: Failed!
> >
> > So, I added this type and on and on...
> > such like,
> > munin_t, resmgrd_t, openca_ca_t, razor_t, dcc_client_t, siggen_t, aide_t........
> > All I noticed not installed in strict policy.
> >
> > I'm at a loss...
>
> I don't understand. I can build and install the .te file you attached
> without any difficulty on a F7 system with strict policy. And I don't
> see where the requirements you listed are relevant to this module.
>
> Try rebuilding the .pp file:
> make -f /usr/share/selinux/devel/Makefile clean
> make -f /usr/share/selinux/devel/Makefile noip.pp
>
> --
> Stephen Smalley
> National Security Agency
>
>
-- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with the words "unsubscribe selinux" without quotes as the message.