Displaying 20 results from an estimated 8000 matches similar to: "SELinux and daemons - clever way to change default locations?"
2009 Mar 19
1
SELinux - different context on subdirectories
Hi all,
I have created a directory /srv with the following SELinux context:
system_u:object_r:var_t
Now I want to create a subdirectory within /srv which should get a
different context. So I tried to set e.g.:
semanage fcontext -a -t samba_share_t /srv/samba
/sbin/restorecon -v /srv/samba
but the context is always reset to:
system_u:object_r:var_t
What am I missing?
Best Regards
Marcus
2020 Jan 01
2
Nginx and SELinux on CentOS 7
Hi,
I'm currently fiddling with Nginx on CentOS 7. Eventually I want to use it
instead of Apache on some servers.
Apache works more or less out of the box with SELinux. My websites are all
stored under /var/www, and ls -Z shows me that all files created under /var/www
are correctly labeled httpd_sys_content_t.
On my sandbox server I don't have Apache (httpd) installed, only Nginx
2007 Jul 02
2
custom SELinux?
I need to upgrade a server running an old Fedora version. The new OS
will be CentOS 5 64bit.
I want to put /var/lib/cyrus and /var/spool/cyrus (all the variable
files for the Cyrus IMAP server) on the same partition like /home - this
way, all the "user-related stuff", home pages and email, stays on one
partition.
The problem is SELinux. On Fedora, I had to customize the SELinux
2015 Apr 14
2
state of IPSec VPN on CentOS 7: Openswan, strongSwan, RPM packages
On 2015-04-14 11:25, Gordon Messmer wrote:
> On 04/14/2015 11:07 AM, Florin Andrei wrote:
>> I looked in the yum repositories for CentOS 7 and I noticed that there
>> are no packages for any of the major open source IPSec VPN apps -
>> Openswan, strongSwan, etc. I'm pretty sure CentOS 6 had Openswan
>> packages.
>
> libreswan replaced openswan, and is
2015 Apr 14
1
state of IPSec VPN on CentOS 7: Openswan, strongSwan, RPM packages
On 2015-04-14 11:44, Eero Volotinen wrote:
> 2015-04-14 21:40 GMT+03:00 Florin Andrei <florin at andrei.myip.org>:
>>
>> http://serverfault.com/a/655752/24406
>>
>> If that is accurate, the documentation, and the clustering / load
>> balancing might tilt the balance in the direction of strongSwan.
>>
>>
> Well, both packages can do ipsec to
2004 Jul 16
3
PSTN/phone/FXO/FXS cabling issue
I just received a Wildcard TDM400P by FedEx yesterday. I noticed that
the FXO/FXS modules use connectors similar to Ethernet.
Now, i want to connect the TDM400P to the PSTN connector in the wall,
and also to a regular analog phone. Both the PSTN conn and the phone use
smaller connectors, typical for analog phones.
I searched the "official" docs and the Wiki, there's good
2007 Mar 20
4
SATA RAID card recommendation?
I need a SATA RAID PCI card that works well with CentOS and is fully
supported. Mandatory features:
- works with the drivers already in the kernel, no additional drivers
- can do RAID 0, 1 and 5
- hotswap
- allows to monitor the status of the array and of each individual drive
via a script (ideally run from cron)
- works with very large SATA drives
Nice to have features but not mandatory:
-
2008 Aug 25
2
slow Perl on CentOS 5
If your Perl apps are unusually slow on CentOS 5, have a look at this blog:
http://blog.vipul.net/2008/08/24/redhat-perl-what-a-tragedy/
In a nutshell: some Perl apps are 100x slower on RedHat / CentOS 5
compared to other distributions.
Bugzilla entry:
https://bugzilla.redhat.com/show_bug.cgi?id=379791
--
Florin Andrei
http://florin.myip.org/
2015 Apr 14
3
state of IPSec VPN on CentOS 7: Openswan, strongSwan, RPM packages
I looked in the yum repositories for CentOS 7 and I noticed that there
are no packages for any of the major open source IPSec VPN apps -
Openswan, strongSwan, etc. I'm pretty sure CentOS 6 had Openswan
packages.
What is the current consensus w.r.t. building an IPSec VPN "server"
(concentrator, whatever) on CentOS 7, that will do site-to-site
connections with Cisco hardware at
2004 Aug 04
4
FCC Rules VoIP Must Be Tappable
http://yro.slashdot.org/article.pl?sid=04/08/04/2212251&tid=158&tid=95&tid=103
Probably some of you already saw this.
Now, beyond discussions regarding the legitimacy of such a ruling
(whether they have the legal, moral or whatever right to enforce it),
there's the technical aspect.
Suppose i provide VoIP services using Asterisk, and i fall under the
incidence of the FCC ruling
2014 Dec 08
4
print something on console after boot
CentOS 7
How do I print something on the text-mode console right after the OS has
finished booting?
I've a virtual instance and I need to know its IP address after it has
finished booting up, to know where to ssh into it. I've tried adding "ip
-4 addr > /dev/tty0" to rc.local, but that obviously doesn't work,
because the login prompt overwrites everything I do.
--
2009 Sep 05
3
caching pipe?
Is it possible to add caching to a pipe?
cat blah | in_RAM_cache_here -s SIZE | something else
I'm doing what is essentially a cat (*) from a DVD directly to an NFS
share. It looks like the two media (DVD and NFS) have very different
read / write behaviors, speeds and timings, and the overall process is
not as fast as possible. So I was wondering if some kind of cache
inbetween might be
2008 Jun 19
3
3ware performance in CentOS
Have a look at these pages:
http://www.bofh-hunter.com/2008/06/13/3ware-performance-in-centos/
https://bugzilla.redhat.com/show_bug.cgi?id=444759
I'm comparing the default 5.1 64bit kernel with the patched one posted
in the bug report (kernel-2.6.18-53.1.21.el5.bz321111.x86_64) and I
don't quite see any significant difference in write performance for this
command:
dd if=/dev/zero
2007 Jul 10
2
video calls - Windows / Linux interoperability ?
I will install Asterisk on my home server, I want to be able to route
video calls, but I need the Windows and Linux clients to be interoperable.
On Linux, it looks like Ekiga is a good candidate. But how about Windows?
Anyone using Kapanga in an Asterisk network that includes Ekiga? Are
these two interoperable?
I'm not necessarily looking for open source software, free for personal
use is
2007 Oct 04
7
rolling your own kernel - guidelines?
Let's say I want to use a much newer kernel - even one from the future,
such as the upcoming 2.6.24. :-) What would y'all smart folks do in this
case, in order to avoid any possible nasty consequences?
Would you import the config file from the original CentOS5 kernel into
the new kernel, and let the kernel deal with the differences? I.e. have
the old configuration as some sort of
2011 Apr 15
4
cross-platform email client
I'm a Thunderbird user almost since day one, but now I'm looking for
something else. For whatever reason, it doesn't work well for me - every
once in a while it becomes non-responsive (UI completely frozen for
several seconds, CPU usage goes to 100%) and I just can't afford to
waste time waiting for the email software to start working again.
My main desktop platform is Linux,
2009 Dec 09
3
nagios 3 packages?
So, my favorite RPM repository (EPEL) only has the ancient nagios-2.12
or so.
What's the repo you use for Nagios 3?
--
Florin Andrei
http://florin.myip.org/
2018 Mar 06
3
Re: virt-v2v 1.38 fails to convert .vmx VM: setfiles ... Multiple same specifications for /.*.
> -----Original Message-----
> From: Richard W.M. Jones [mailto:rjones@redhat.com]
> Sent: Tuesday, March 6, 2018 11:49 AM
> To: Зиновик Игорь Анатольевич <ZinovikIA@nspk.ru>
> Cc: libguestfs@redhat.com
> Subject: Re: [Libguestfs] virt-v2v 1.38 fails to convert .vmx VM: setfiles ...
> Multiple same specifications for /.*.
>
> On Tue, Mar 06, 2018 at 08:40:51AM
2009 Aug 21
3
require SSL certs only for encrypted connections?
# 1.1.11: /etc/dovecot/dovecot.conf
# OS: Linux 2.6.28-14-server x86_64 Ubuntu 9.04
Here's the situation:
I have several local clients (Thunderbird) which do not use TLS at all.
It's plaintext completely, on port 143, because the connection is local
and there are no unauthorized users on this network (it's a home
network). I want to keep it that way to keep things simple.
Tools /
2014 Jan 20
3
glusterfs-server package: what happened to it?
I'm doing some experiments with GlusterFS. Most documents online suggest
to install the glusterfs-package as if it was available directly in the
repo, and therefore installable via a simple "yum install".
Unless I'm wrong, it appears that this package is not in the repo for
CentOS 6. Does anyone know what happened to it?
--
Florin Andrei
http://florin.myip.org/