On 30 Mar 2015, at 13:35, John Horne john.horne@plymouth.ac.uk wrote:
On Tue, 2015-03-10 at 14:43 +0100, Andrea Dell'Amico wrote:
#============= logrotate_t ============== allow logrotate_t fail2ban_client_exec_t:file { ioctl read execute execute_no_trans open };
Looks like this was already fixed in 'selinux-policy'. See https://bugzilla.redhat.com/show_bug.cgi?id=1114821
Thanks. I didn’t notice that bug, and the changelog didn’t report anything about fail2ban.
John.
Ciao, andrea -- Andrea Dell'Amico http://adellam.%10sevenseas.org/