1 | I believe I have finally solved my own problem. There were no AVC messages in the message log, but I dug into the audit log and found that the reason the service was being denied access to the files, even when they where chmod 777 was SELinux. I created a custom SELinux policy based on the alerts generated after a reboot and failed email2trac test and it appears to have fixed the problem. |
---|
2 | <br><br><div><span class="gmail_quote">On 11/5/07, <b class="gmail_sendername">email2trac</b> <<a href="mailto:email2trac@sara.nl">email2trac@sara.nl</a>> wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;"> |
---|
3 | #32: permissions issue, email2trac config<br>-----------------------------+----------------------------------------------<br>Reporter: <a href="mailto:acgoss@gmail.com">acgoss@gmail.com</a> | Owner: bas<br> Type: defect | Status: assigned |
---|
4 | <br>Priority: major | Component: email2trac<br> Version: 0.10 | Resolution:<br>Keywords: |<br>-----------------------------+---------------------------------------------- |
---|
5 | <br>Comment (by bas):<br><br> This setup will never work for root and apache, because the postfix user<br> will start up email2trac and this userid has no write access to the trac-<br> database. That is why you need run_email2trac for this. It will change the |
---|
6 | <br> userid from <postfix> to the <apache> user. The process of changing user<br> fails some how and i think it has to do with not allowing to run suid<br> programs.<br><br> Can you just put this is /etc/aliases: |
---|
7 | <br> {{{<br> test: /var/tmp/test.sh<br> }}}<br><br> test.sh<br> {{{<br> /usr/bin/id > /var/tmp/postfix.user<br> }}}<br><br> else use the other postfix setup:<br> *<br> <a href="https://subtrac.sara.nl/oss/email2trac/wiki/Email2tracMta#Noteforpostfix"> |
---|
8 | https://subtrac.sara.nl/oss/email2trac/wiki/Email2tracMta#Noteforpostfix</a><br><br>--<br>Ticket URL: <<a href="https://subtrac.sara.nl/oss/email2trac/ticket/32#comment:7">https://subtrac.sara.nl/oss/email2trac/ticket/32#comment:7 |
---|
9 | </a>><br>email2trac <<a href="https://subtrac.sara.nl/oss/email2trac">https://subtrac.sara.nl/oss/email2trac</a>><br>Documentation server for email2trac</blockquote></div><br> |
---|