Tâche #28480
Scénario #28295: Évolutions AD identifiées suite à expertise
Erreur Apparmor Samba/Bind9
100%
Description
AVC apparmor="DENIED" operation="file_lock" profile="/usr/sbin/named" name="/var/lib/samba/bind-dns/dns.keytab" pid=738 comm="isc-worker0002" requested_mask="k" denied_mask="k" fsuid=111 ouid=0
AVC apparmor="DENIED" operation="open" profile="/usr/sbin/named" name="/dev/urandom" pid=726 comm="isc-worker0002" requested_mask="wc" denied_mask="wc" fsuid=111 ouid=0
Ajouter :
/var/lib/samba/bind-dns/dns.keytab rk,
/etc/samba/smb.conf r,
/etc/samba/smb.conf.d/** r,
/var/tmp/** rwmk,
/dev/urandom rw,
cf./ https://wiki.samba.org/index.php/BIND9_DLZ_AppArmor_and_SELinux_Integration
Associated revisions
correction erreurs Apparmor liées à BIND9 / Samba
REF #28480
correction erreurs Apparmor liées à BIND9 / Samba
REF #28480
Revert "correction erreurs Apparmor liées à BIND9 / Samba"
This should have been done on “master”.
This reverts commit 77c69bd2026083cb948a817ae331f74c8bd2512b.
History
#1 Updated by Gilles Grandgérard almost 2 years ago
- Status changed from Nouveau to Résolu
#2 Updated by Gérald Schwartzmann almost 2 years ago
- Assigned To set to Gilles Grandgérard
#4 Updated by Joël Cuissinat almost 2 years ago
- Status changed from Résolu to Fermé
- Remaining (hours) set to 0.0