05-27-2011
A regular user in Linux (and thus Ubuntu) doesn't have access to all files and folders, not even the site information. Examples are the entries in /proc for privileged processes, the home directory of other users, and special directories by some (sensible) daemons. Those are noted as "unreadable".
10 More Discussions You Might Find Interesting
1. IP Networking
I am running RH7.3 on a compaq presario box. The network card is a Linksys one. I am only able to communicate with the local network (only the local IPs are accessible). When I try to ping another box I get a "Connect: Network is unreachable" message. What could be the problem.
Thanks in... (2 Replies)
Discussion started by: skotapal
2 Replies
2. Cybersecurity
I have inherited a Sun Ultra-1, running sunOS 5.8
While on this machine, I cannot ping www.yahoo.com
I cannot ping this machine from withing our lan.
I do not have an static IP for this machine and used
Iconfig hme0 auto-dhcp start.
All is well,
It seems to me that the previous owner,... (1 Reply)
Discussion started by: defense
1 Replies
3. UNIX for Dummies Questions & Answers
Is it possible for a group of servers to monitor each other and then send an alert if one of them is no longer 'alive'?
Or if its easier have one server that monitors the other five and then sends an alert.
If so how would this be done?
Thanks (3 Replies)
Discussion started by: Sepia
3 Replies
4. Linux
All,
I have to servers (NT and REL4).
We can access the application on NT from Linux but we cannot access the applications on Linux when accessed from NT.
The applicaiton is running on Linux with some IP:Port. When we try to access that application from NT, it says that the port is... (1 Reply)
Discussion started by: The One
1 Replies
5. Solaris
Hi Guy.
I have a Dummy question.
I cant connect a T2000 machine to the network, We have netword card problems. But in this moment is mandatory to get the explorer from the machine. My question is What can I do?.
Could I try write the explorer to the CD? (This is a option), or any... (6 Replies)
Discussion started by: aggadtech08
6 Replies
6. Solaris
Hi all,
I cannot reach my SERVER from my NetBackup server connect through SERVER_prv ("cannot connect to client")
My SERVER was Sun OS 5.8, below is the message i get when i ping my SERVER:
# ping 192.168.X.X or
# ping SERVER_prv
ICMP Net Unreachable from gateway 172.16.102.XXX
for... (3 Replies)
Discussion started by: beginningDBA
3 Replies
7. Post Here to Contact Site Administrators and Moderators
Apparently (at least) 2 of the servers responsible for serving the static images and the JavaScript are down or otherwise unreachable. Affected are www.unix.com and www.unix.com, while www.unix.com is still up. A check on this website confirmed it. Checked as of 2010-06-16 08:11 UTC. (13 Replies)
Discussion started by: pludi
13 Replies
8. Solaris
Hey Guys:
I am trying to add a route for assign a network interface to the traffic to/from a specific net, but allways to get the same system message : network is unreacheable
root@ColectorDMSCNT # route add net 200.44.46.0/24 161.196.84.196 1
add net 200.44.46.0/24: gateway... (2 Replies)
Discussion started by: aggadtech08
2 Replies
9. UNIX for Advanced & Expert Users
Hi, all:
How can I check what happen with my own NIC driver which response "successful" when local PC "ping" a remote linux PC but "unreachable" when it "ping" a remote windows XP PC? My writed driver runs in linux 3.0.4 kernel.
thanks!
li, kunlun (1 Reply)
Discussion started by: liklstar
1 Replies
10. Solaris
Seems to wanboot ok but then fails to connect to server. What do I need to check?
{0} ok boot net - install
Boot device: /pci@300/pci@1/pci@0/pci@1/network@0 File and args: - install
1G link up
<time unavailable> wanboot info: WAN boot messages->console
<time unavailable>... (2 Replies)
Discussion started by: psychocandy
2 Replies
LEARN ABOUT OPENSOLARIS
samba_selinux
samba_selinux(8) Samba Selinux Policy documentation samba_selinux(8)
NAME
samba_selinux - Security Enhanced Linux Policy for Samba
DESCRIPTION
Security-Enhanced Linux secures the Samba server via flexible mandatory access control.
FILE_CONTEXTS
SELinux requires files to have an extended attribute to define the file type. Policy governs the access daemons have to these files. If
you want to share files other than home directories, those files must be labeled samba_share_t. So if you created a special directory
/var/eng, you would need to label the directory with the chcon tool.
chcon -t samba_share_t /var/eng
To make this change permanent (survive a relabel), use the semanage command to add the change to file context configuration:
semanage fcontext -a -t samba_share_t "/var/eng(/.*)?"
This command adds the following entry to /etc/selinux/POLICYTYPE/contexts/files/file_contexts.local:
/var/eng(/.*)? system_u:object_r:samba_share_t:s0
Run the restorecon command to apply the changes:
restorecon -R -v /var/eng/
SHARING FILES
If you want to share files with multiple domains (Apache, FTP, rsync, Samba), you can set a file context of public_content_t and pub-
lic_content_rw_t. These context allow any of the above domains to read the content. If you want a particular domain to write to the pub-
lic_content_rw_t domain, you must set the appropriate boolean. allow_DOMAIN_anon_write. So for samba you would execute:
setsebool -P allow_smbd_anon_write=1
BOOLEANS
SELinux policy is customizable based on least access required. So by default SELinux policy turns off SELinux sharing of home directories
and the use of Samba shares from a remote machine as a home directory.
If you are setting up this machine as a Samba server and wish to share the home directories, you need to set the samba_enable_home_dirs
boolean.
setsebool -P samba_enable_home_dirs 1
If you want to use a remote Samba server for the home directories on this machine, you must set the use_samba_home_dirs boolean.
setsebool -P use_samba_home_dirs 1
system-config-selinux is a GUI tool available to customize SELinux policy settings.
AUTHOR
This manual page was written by Dan Walsh <dwalsh@redhat.com>.
SEE ALSO
selinux(8), samba(7), chcon(1), setsebool(8), semanage(8)
dwalsh@redhat.com 17 Jan 2005 samba_selinux(8)