Maintained by: NLnet Labs

[Unbound-users] Troubleshooting occasional "Permission denied" errors?

Paul Wouters
Tue Jun 16 16:55:37 CEST 2015


On Tue, 16 Jun 2015, Jarno Huuskonen wrote:

>> Unbound seems to be running normally, and appears to be answer all queries normally.  It is version 1.4.20 on CentOS 7.
>
> Are you running with selinux enabled ?
>
> Check selinux audit log (/var/log/audit/audit.log), denied ports might be
> logged there. Or try with something like this in unbound.conf:
> outgoing-port-avoid: 8953
> outgoing-port-avoid: 5546
>
> (I think I got selinux denied for (at least) these two ports).

the fedora config ships with:

 	outgoing-port-permit: 32768-65535
 	outgoing-port-avoid: 0-32767

I see the rhel7 build is missing those lines. I will file a bug report
for RHEL7.

Paul