Lab 10 - Part I, Step 8

UNIX/Linux Network Administration - Rich Simms
User avatar
corey douthett
Posts: 57
Joined: Sun Feb 05, 2012 11:26 pm

Lab 10 - Part I, Step 8

Post by corey douthett » Fri May 24, 2013 2:26 pm

I got a little tripped up setting up SElinux for the httpd service. The lab wants you to verify the proper SElinux settings for httpd, but skims on the details a bit.
Here's the snippet from the lab walkthrough:

8. Check that SELinux is set to enforcing with getenforce and home directories are
enabled with getsebool httpd_enable_homedirs

If you have carefully followed the lab step-by-step to this point, you will see this output when you run getsebool httpd_enable_homedirs:
httpd_enable_homedirs --> off

Obviously we want it to be on, and we need to actually run a command such as:
setsebool httpd_enable_homedirs true

Now, getsebool httpd_enable_homedirs should yield:
httpd_enable_homedirs --> on

Not too crazy, but this potentially could cause a few headaches to others (like myself) that are not comfortable with SElinux yet.

Cheers! And thanks to ... files.html for the info.

User avatar
Rich Simms
Posts: 2421
Joined: Sat Jan 16, 2010 5:47 pm

Re: Lab 10 - Part I, Step 8

Post by Rich Simms » Fri May 24, 2013 4:53 pm

I see a few more fixes that should be made:

Part 1 - step 8
Corey caught this one already. Add thh -P option though to make it persistent:
setsebool -P httpd_enable_homedirs=1

Appendix - zone files
A miner change which is not needed for the lab to work:
Change Legolas to Sauron

Part II - step 15
I left off the leading / but since you may not be in the / directory change:
chmod -R 751 www to chmod -R 751 /www

and the final submittal command should be:
cp lab10 ~rsimms/turnin/cis192/lab10.$LOGNAME

- Rich

Donna Irvan
Posts: 29
Joined: Fri Feb 15, 2013 12:29 pm

Re: Lab 10 - Part I, Step 8

Post by Donna Irvan » Sat May 25, 2013 7:26 am

Thanks for asking. I got the same thing, and was sure if this was on of those were no = yes or not.


Return to “CIS 192 - Spring 2013”