Research
.
Skip Search Box

SELinux Mailing List

Re: I can ' t use named on LSM-based Prototype. Why?

From: Stephen Smalley <sds_at_tislabs.com>
Date: Tue, 25 Sep 2001 08:21:54 -0400 (EDT)

On Tue, 25 Sep 2001, Yuichi Nakamura wrote:

> I found that named(bind 9.1.0) didn't work on SELinux(LSM-based Prototype)
> even if the kernel was flask development mode.
>
> Why named doesn't work on LSM based prototype?

Did you apply the patch that I posted to the mailing list for selinux_ip_postroute (See
http://marc.theaimsgroup.com/?l=selinux&m=99962056431023&w=2). If not, then apply this patch and try again. If you already applied this patch, then check /var/log/messages and/or the output of 'dmesg' for any messages, particularly ones from selinux_ip_postroute.

Also, be aware that an updated release should be available soon based on 2.4.10 with a number of bug fixes and improvements to both LSM and SELinux.

--
Stephen D. Smalley, NAI Labs
ssmalley@nai.com






--
You have received this message because you are subscribed to the selinux list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Tue 25 Sep 2001 - 08:34:12 EDT
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service