sshd....denied transition...funny looking avc

Russell Coker russell at coker.com.au
Fri Jul 23 05:14:57 UTC 2004


On Fri, 23 Jul 2004 06:25, Tom London <selinux at comcast.net> wrote:
> [running latest FC3T1 w/ latest mods from devel tree, strict/enforcing
> kernel-2.6.7-1.494, openssh-3.8.1p1-4]
>
> Attempting to scp into this host fails with
> 'Read from remote host HOST: connection reset by peer'

Please send me a .tgz format copy of your policy source directory after 
running "make clean".  Also let me know whether you have sshd run from inetd 
or as a daemon.

> [There appear to be 145 blank characters after 'kernel:' and before
> 'audit(' on the lines above.]

This is a kernel bug we've seen before.  It seemed to appear after the 
transition to the new auditing model.

-- 
http://www.coker.com.au/selinux/   My NSA Security Enhanced Linux packages
http://www.coker.com.au/bonnie++/  Bonnie++ hard drive benchmark
http://www.coker.com.au/postal/    Postal SMTP/POP benchmark
http://www.coker.com.au/~russell/  My home page



More information about the selinux mailing list