selinux: rhel5 x fedora 14

Stephen Smalley sds at tycho.nsa.gov
Thu Jan 13 14:12:15 UTC 2011


On Thu, 2011-01-13 at 11:51 -0200, Paulo Cavalcanti wrote:

> Here it goes: 

> ----
> type=SYSCALL msg=audit(01/13/2011 07:31:09.287:39) : arch=x86_64
> syscall=lstat success=no exit=-13(Permission denied) a0=7ff594509d50
> a1=7ffff3924c40 a2=7ffff3924c40 a3=2f534d50522f6c6d items=0 ppid=2230
> pid=2270 auid=unset uid=apache gid=apache euid=apache suid=apache
> fsuid=apache egid=apache sgid=apache fsgid=apache tty=(none) ses=unset
> comm=httpd exe=/usr/sbin/httpd subj=system_u:system_r:httpd_t:s0
> key=(null) 
> type=AVC msg=audit(01/13/2011 07:31:09.287:39) : avc:  denied
> { getattr } for  pid=2270 comm=httpd
> path=/home/packages/rpms/myrpms-el5-x86_64/repodata dev=sda4
> ino=31331129 scontext=system_u:system_r:httpd_t:s0
> tcontext=system_u:object_r:file_t:s0 tclass=dir 

Was this while running RHEL-5 or F-14?  Is /home mounted with a context=
mount option?  What does 'mount' show for /home and/or /home/packages
(if a separate mount)?

-- 
Stephen Smalley
National Security Agency



More information about the devel mailing list