https://bugzilla.novell.com/show_bug.cgi?id=851131
https://bugzilla.novell.com/show_bug.cgi?id=851131#c3
Christian Boltz changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|NEW |NEEDINFO
InfoProvider| |robin.roevens1@pandora.be
--- Comment #3 from Christian Boltz 2013-11-20 18:10:30 CET ---
The following profile additions should fix your problem:
#include
capability ipc_lock,
capability setuid,
/var/lib/samba/smb_krb5/krb5.conf.* rw, # rw instead of only w
/var/tmp/uzaws0531-044_39756 rw,
Needless to say that the last line is too specific, however I'd like to avoid
allowing "/var/tmp/* rw". The filename looks like randomly generated, but if we
are lucky, at least half of the filename is hardcoded.
Can you please find out (probably by restarting winbindd multiple times) how
the filename varies and which part of it is static?
--
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.