On 10/10/2016 11:26 AM, Magnus Hagander wrote:
> On Mon, Oct 10, 2016 at 6:57 PM, Josh Berkus <josh(at)agliodbs(dot)com
> And you'd need the SELinux perms even if it was in /var/lib/, because of
> the nologin status of the Apache user.
>
>
> Yes, but /var/lib is supposed to be for persistant data modified by
> programs. That's a reasonable location for it, and thus it's reasonable
> to unlock it with selinux policy.
True.
--
--
Josh Berkus
Red Hat OSAS
(any opinions are my own)