More consolekit_t and dbus_t AVCs (from today's Rawhide)
Tom London
selinux at gmail.com
Sun Feb 10 20:47:40 UTC 2008
On Sun, Feb 10, 2008 at 12:34 PM, Tom London <selinux at gmail.com> wrote:
> After doing today's rawhide thing, get this on targeted/enforcing boot/login:
>
> #============= system_dbusd_t ==============
> allow system_dbusd_t NetworkManager_t:dbus send_msg;
> allow system_dbusd_t unconfined_t:dbus send_msg;
>
> #============= xdm_t ==============
> allow xdm_t consolekit_var_run_t:dir search;
>
> [copy of /var/log/audit/audit.log attached.]
>
Sorry, got a few more in permissive mode:
#============= system_dbusd_t ==============
allow system_dbusd_t NetworkManager_t:dbus send_msg;
allow system_dbusd_t unconfined_t:dbus send_msg;
#============= xdm_t ==============
allow xdm_t consolekit_var_run_t:dir search;
allow xdm_t consolekit_var_run_t:file { read getattr };
[complete audit.log attached.]
tom
--
Tom London
-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: log2.txt
Url: http://lists.fedoraproject.org/pipermail/selinux/attachments/20080210/8b391df9/attachment.txt
More information about the selinux
mailing list