Denial showing up even when allow rule appied

Dominick Grift dominick.grift at gmail.com
Mon May 20 19:30:05 UTC 2013


On Mon, 2013-05-20 at 19:25 +0000, Anamitra Dutta Majumdar (anmajumd)
wrote:
> We are seeing this on a RHEL5 based release of our product.
> 
> The particular rule that is causing the issue is this .
> 
> allow pwrecoveryd_t etc_t:file create;

Kind of hard to speculate. Can you provide more info like for example:

1. output of : seinfo -xtpwrecoveryd_t
2. the actual avc denial
3. what does audit2why say if you feed it that avc denial?

> 
> pwrecoveryd is a custom type and all the necessary policies have been
> loaded.
> However when we specifically add the above allow rule and load the
> policies on the target box.
> We keep on getting this exact same denial. This is the only denial that
> shows up
> 
> Any pointers to the issue would be greatly appreciated.
> 
> Thanks,
> Anamitra
> 
> 
> 
> --
> selinux mailing list
> selinux at lists.fedoraproject.org
> https://admin.fedoraproject.org/mailman/listinfo/selinux




More information about the selinux mailing list