[rsbac] rsbac_jail & postfix

Amon Ott rsbac@rsbac.org
Fri Aug 23 12:18:01 2002


On Thursday, 22. August 2002 13:32, Tycho Fruru wrote:
> On Thu, 2002-08-22 at 11:28, Czakó Krisztián wrote:
> 
> > I try to start Postfix in an rsbac_jail, but have some problems.
> > The postfix master process could not bind to its sockets (public/cleanup,
> > public/rewrite, etc.).
> 
> Same problem here with postgres (which also wants UNIX sockets)...
> 
> > This is the message from RSBAC:
> > rsbac_adf_request(): request CREATE, pid 6077, ppid 6013, prog_name
> > master, uid 0, target_type DIR, tid Device 58:07 Inode 17658 Path
> > /var//lib/jails/mail//var/spool/postfix/public, attr none, value 0,
> > result NOT_GRANTED by JAIL
> 
> modulo the filenames and paths, I get the same message 
> 
> 
> > CONFIG_RSBAC_NET_OBJ_UNIX=y
> 
> perhaps this one is not taken into account with the "no IPC" exception
> in rsbac_jail ?

This is a filesystem object creation that fails. I will look into it soon.

> cheers and thanks for the great work, rsbac guys - it saves my a$$ every
> day :-)

Pleased to hear! :)

Amon.
--
http://www.rsbac.org