Displaying 1 result from an estimated 1 matches for "su_exec_t".
Did you mean:
ssh_exec_t
2015 Apr 05
0
Selinux issues with 7.1 update
I am trying to update some local policies for bacula that allow a
series of clients with pre run scripts to su in order to perform some
preparatory work for a backup.
With selinux enforcing, the su is denied obviously execute as
bacula_t tries su_exec_t. You only see this with enforcing enabled?
So creating an initial policy for that (this is not the way to do this)
allows one more avc to appear for execute_no_ as bacula_t tries
su_exec_t again.
The problem is once these are enabled with local policies they seem
to be ignored producing the same...