[SERVER-17847] Change our SELinux context on RHEL from mongod_var_lib_t to mongod_dbpath_t Created: 13/Oct/14 Updated: 01/May/15 Resolved: 01/May/15 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | Packaging |
| Affects Version/s: | None |
| Fix Version/s: | None |
| Type: | Improvement | Priority: | Major - P3 |
| Reporter: | Victor Hooi | Assignee: | Ernie Hershey |
| Resolution: | Incomplete | Votes: | 0 |
| Labels: | build-later | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Issue Links: |
|
||||||||||||
| Sprint: | BUILD 1 04/03/15, BUILD 2 04/24/15, BUILD 3 05/15/15 | ||||||||||||
| Participants: | |||||||||||||
| Description |
|
This is related to Currently, when we install the MongoDB RPMs on RHEL, we apply the security context "mongod_var_lib_t" to the /var/lib/mongo, which is the default dbpath directory. However, this isn't particularly descriptive of the purpose of this directory. Furthermore, if a user were to change their dbpath, from a naming perspective it doesn't make sense to re-use mongod_var_lib_t. One suggestion would be to make this security context something a little more descriptive, such as mongod_dbpath_t, which could then be applied as appropriate to wherever the dbpath is. |