krb5 issues

Steve Grubb sgrubb at redhat.com
Thu May 26 20:04:49 UTC 2016


On Thursday, May 26, 2016 11:16:05 AM Ken Bass wrote:
> On 05/24/2016 10:07 AM, Ken Bass wrote:
> > On a related note, using krb5 causes a problem with selinux. Unless I
> > disable it (or figure out a rule) auditd fails to start because it is
> > denied permission to create /var/tmp/auditd_0 kerberos replay cache file.
> > Is there a rule or procedure to properly fix that?
> 
> Is there somewhere to file a bug report for this at? 

You could use Bugzilla and file against selinux-policy.


> Obviously the selinux is not being setup for auditd to manage the
> /var/tmp/auditd_0 file when krb5 is enabled. Using Centos 7.2.

I think its used so rarely that no one has noticed.

-Steve




More information about the Linux-audit mailing list