<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Setting up a Minimal Samba Server in Fedora Core 12</title>
	<atom:link href="http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/feed/" rel="self" type="application/rss+xml" />
	<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/</link>
	<description>Techblog is collection of articles covering a wide variety of tech related topics including: Linux, Microsoft, Google, web development, web design, open source, wordpress, security, and more.</description>
	<lastBuildDate>Sun, 29 Jan 2012 02:25:58 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: julianne</title>
		<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/comment-page-1/#comment-36456</link>
		<dc:creator>julianne</dc:creator>
		<pubDate>Thu, 27 Oct 2011 11:27:21 +0000</pubDate>
		<guid isPermaLink="false">http://techblog.touchbasic.com/html/?p=505#comment-36456</guid>
		<description>Nice blog! Is your theme custom made or did you download it from somewhere? A theme like yours with a few simple adjustements would really make my blog stand out. Please let me know where you got your theme. Thank you</description>
		<content:encoded><![CDATA[<p>Nice blog! Is your theme custom made or did you download it from somewhere? A theme like yours with a few simple adjustements would really make my blog stand out. Please let me know where you got your theme. Thank you</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: elran</title>
		<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/comment-page-1/#comment-36238</link>
		<dc:creator>elran</dc:creator>
		<pubDate>Sat, 12 Mar 2011 18:53:11 +0000</pubDate>
		<guid isPermaLink="false">http://techblog.touchbasic.com/html/?p=505#comment-36238</guid>
		<description>You&#039;re welcome Carl &amp; Razvantim.

@Razvantim - yeah, seLinux can be a pain. i wanted to be able to tweak it enough so that i could leave it on while others were recommending shutting it off completely/perminantly just because it was too complicated.

Anyway, glad to see others are making use of this how-to.

My minimal FC12 Samba server is still rock solid &amp; it&#039;s been 1 year since i wrote this post. I can&#039;t even remember the last time i had to reboot it ;)</description>
		<content:encoded><![CDATA[<p>You&#8217;re welcome Carl &#038; Razvantim.</p>
<p>@Razvantim &#8211; yeah, seLinux can be a pain. i wanted to be able to tweak it enough so that i could leave it on while others were recommending shutting it off completely/perminantly just because it was too complicated.</p>
<p>Anyway, glad to see others are making use of this how-to.</p>
<p>My minimal FC12 Samba server is still rock solid &#038; it&#8217;s been 1 year since i wrote this post. I can&#8217;t even remember the last time i had to reboot it ;)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: razvantim</title>
		<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/comment-page-1/#comment-36235</link>
		<dc:creator>razvantim</dc:creator>
		<pubDate>Thu, 10 Mar 2011 09:07:02 +0000</pubDate>
		<guid isPermaLink="false">http://techblog.touchbasic.com/html/?p=505#comment-36235</guid>
		<description>Thanks. Your solution worked perfectly. In the process I&#039;ve also learned more on seLinux</description>
		<content:encoded><![CDATA[<p>Thanks. Your solution worked perfectly. In the process I&#8217;ve also learned more on seLinux</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Carl Williams</title>
		<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/comment-page-1/#comment-36162</link>
		<dc:creator>Carl Williams</dc:creator>
		<pubDate>Sun, 08 Aug 2010 05:09:36 +0000</pubDate>
		<guid isPermaLink="false">http://techblog.touchbasic.com/html/?p=505#comment-36162</guid>
		<description>Thanks for the information, very appreciated</description>
		<content:encoded><![CDATA[<p>Thanks for the information, very appreciated</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: elran</title>
		<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/comment-page-1/#comment-36113</link>
		<dc:creator>elran</dc:creator>
		<pubDate>Sun, 11 Apr 2010 23:32:09 +0000</pubDate>
		<guid isPermaLink="false">http://techblog.touchbasic.com/html/?p=505#comment-36113</guid>
		<description>thanks for pointing that out.
of course, we&#039;re not running any desktop environment in this setup, KDE, or other. This is a minimal text-based install.</description>
		<content:encoded><![CDATA[<p>thanks for pointing that out.<br />
of course, we&#8217;re not running any desktop environment in this setup, KDE, or other. This is a minimal text-based install.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Harsh Vadgama</title>
		<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/comment-page-1/#comment-36112</link>
		<dc:creator>Harsh Vadgama</dc:creator>
		<pubDate>Sun, 11 Apr 2010 20:36:49 +0000</pubDate>
		<guid isPermaLink="false">http://techblog.touchbasic.com/html/?p=505#comment-36112</guid>
		<description>I would like to point out that selinux will give you problems if you mount and ntfs/fat32 partition. 
There is no need to mount these partitions manually by the way. In Kde the automount using ntfs-3g. So this is what i do 

1. In point 10 include

setsebool -P samba_share_fusefs 1

2. The command chcon -t samba_share_t /path-to-mounted-directories is not needed if you automount. In anycase it gives you permision errors. 

3. Restart smb. 

4. Type command 
ausearch -m avc -ts today &#124; audit2why

5. every 9th line tells you what it needs so what ever is written after the # execute it. (i.e set all the sebools mentioned) 

6. write down the time after you finish setting all those sebools.

7. Once you have finished setting all the sebools, and written down the time -- run your command again.  verify if it works or not.  (it likely will still fail, but you need to collect the info)

8. Type
ausearch -m avc -ts 14:53 &#124;audit2allow -RM mysamba

--- Use the timestamp that you wrote down instead of &quot;14:53&quot;

To enforce the policy just execute it as stated (e.g. semodule -i mysamba.pp)

9. you can run ausearch as often as needed.  it just pulls out the avc&#039;s that match your timestamp.  (-ts)

DONE!!!!!

By the way i needed any guest to see my folders so i just edited it as follows

        security = share
#       passdb backend = tdbsam
        guest account = nobody

Worked great. No need to disable selinux.</description>
		<content:encoded><![CDATA[<p>I would like to point out that selinux will give you problems if you mount and ntfs/fat32 partition.<br />
There is no need to mount these partitions manually by the way. In Kde the automount using ntfs-3g. So this is what i do </p>
<p>1. In point 10 include</p>
<p>setsebool -P samba_share_fusefs 1</p>
<p>2. The command chcon -t samba_share_t /path-to-mounted-directories is not needed if you automount. In anycase it gives you permision errors. </p>
<p>3. Restart smb. </p>
<p>4. Type command<br />
ausearch -m avc -ts today | audit2why</p>
<p>5. every 9th line tells you what it needs so what ever is written after the # execute it. (i.e set all the sebools mentioned) </p>
<p>6. write down the time after you finish setting all those sebools.</p>
<p>7. Once you have finished setting all the sebools, and written down the time &#8212; run your command again.  verify if it works or not.  (it likely will still fail, but you need to collect the info)</p>
<p>8. Type<br />
ausearch -m avc -ts 14:53 |audit2allow -RM mysamba</p>
<p>&#8212; Use the timestamp that you wrote down instead of &#8220;14:53&#8243;</p>
<p>To enforce the policy just execute it as stated (e.g. semodule -i mysamba.pp)</p>
<p>9. you can run ausearch as often as needed.  it just pulls out the avc&#8217;s that match your timestamp.  (-ts)</p>
<p>DONE!!!!!</p>
<p>By the way i needed any guest to see my folders so i just edited it as follows</p>
<p>        security = share<br />
#       passdb backend = tdbsam<br />
        guest account = nobody</p>
<p>Worked great. No need to disable selinux.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alejo</title>
		<link>http://techblog.touchbasic.com/html/setting-up-a-minimal-samba-server-in-fedora-core-12/comment-page-1/#comment-36033</link>
		<dc:creator>Alejo</dc:creator>
		<pubDate>Thu, 28 Jan 2010 22:19:07 +0000</pubDate>
		<guid isPermaLink="false">http://techblog.touchbasic.com/html/?p=505#comment-36033</guid>
		<description>Very Good !</description>
		<content:encoded><![CDATA[<p>Very Good !</p>
]]></content:encoded>
	</item>
</channel>
</rss>

