[CentOS] SELinux policy to allow Dovecot to connect to Mysql

Fri Apr 7 14:37:31 UTC 2017
Robert Moskowitz <rgm at htt-consult.com>

I have been getting the following on my new mailserver:

Apr  7 10:17:27 z9m9z dovecot: dict: Error: mysql(localhost): Connect 
failed to database (postfix): Can't connect to local MySQL server 
through socket '/var/lib/mysql/mysql.sock' (13) - waiting for 25 seconds 
before retry

They go away when I setenforce 0.

So I googled dovecot mysql selinux and the only worthwhile hit was:


that provides a /etc/selinux/dovecot2mysql.te

Is there a simpler way like a setsbool option?

With all the howtos on dovecot with mysql, it is interesting that none 
of them seem to have this problem.  Maybe because they connect to mysql 
through TCP port 3306 which has ITS set of problems (like MariaDB 
defaults to not listening on TCP).