<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>2005/03/24 on Yano&#39;s digital garage</title>
    <link>https://www.bravotouring.com/~yano/archives/2005/03/24/</link>
    <description>Recent content in 2005/03/24 on Yano&#39;s digital garage</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Thu, 24 Mar 2005 00:00:00 +0900</lastBuildDate>
    <atom:link href="https://www.bravotouring.com/~yano/archives/2005/03/24/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>メール送信フォーム復旧</title>
      <link>https://www.bravotouring.com/~yano/diary/it/20050324.htm</link>
      <pubDate>Thu, 24 Mar 2005 00:00:00 +0900</pubDate>
      <guid>https://www.bravotouring.com/~yano/diary/it/20050324.htm</guid>
      <description>&lt;p&gt;地震の影響では無く、年明けに新サーバーを導入したところでの移行漏れだ。情けな〜。&lt;/p&gt;&#xA;&lt;p&gt;バックアップから&lt;span class=&#34;Path&#34;&gt;wwwmail.cgi&lt;/span&gt;を導入。しかし入れただけはうまくいかないのが&lt;span class=&#34;Software&#34;&gt;SELinux&lt;/span&gt;の定めだ。permissiveモードに切替えて動作を確認し、&lt;span class=&#34;Software&#34;&gt;&#34;audit2allow -d -l&#34;&lt;/span&gt;の出力をセキュリティポリシーに追加しなければならない。&lt;/p&gt;&#xA;&lt;p&gt;で&lt;span class=&#34;Path&#34;&gt;/etc/selinux/targeted/src/policy/domains/program/apache.te&lt;/span&gt;の差分は以下のとおりとなった。&lt;blockquote class=&#34;Log&#34;&gt;allow httpd_suexec_t user_home_dir_t:dir search;&lt;br/&gt;allow httpd_suexec_t user_home_t:dir { add_name remove_name getattr search write };&lt;br/&gt;allow httpd_suexec_t user_home_t:file { execute execute_no_trans getattr ioctl read rename append create unlink write };&lt;br/&gt;&lt;span class=&#34;Strong&#34;&gt;allow httpd_suexec_t tmpfs_t:dir search;&lt;br/&gt;allow httpd_sys_script_t tmpfs_t:dir search;&lt;/span&gt;&lt;br/&gt;allow httpd_sys_script_t devpts_t:chr_file { read write };&lt;br/&gt;allow httpd_sys_script_t httpd_sys_script_exec_t:dir { read add_name remove_name write };&lt;br/&gt;allow httpd_sys_script_t httpd_sys_script_exec_t:file { create unlink write };&lt;br/&gt;allow httpd_sys_script_t httpd_sys_script_exec_t:lnk_file read;&lt;br/&gt;allow httpd_sys_script_t var_t:dir { add_name remove_name write };&lt;br/&gt;allow httpd_sys_script_t var_t:fifo_file write;&lt;br/&gt;allow httpd_sys_script_t var_t:file { create execute execute_no_trans getattr link read unlink write };&lt;br/&gt;allow httpd_t httpd_sys_script_exec_t:lnk_file read;&lt;br/&gt;allow httpd_t user_home_t:dir { getattr search };&lt;br/&gt;allow httpd_t user_home_t:file { getattr read };&lt;/blockquote&gt;&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
