sshd....denied transition...funny looking avc
Russell Coker
russell at coker.com.au
Fri Jul 23 05:14:57 UTC 2004
On Fri, 23 Jul 2004 06:25, Tom London <selinux at comcast.net> wrote:
> [running latest FC3T1 w/ latest mods from devel tree, strict/enforcing
> kernel-2.6.7-1.494, openssh-3.8.1p1-4]
>
> Attempting to scp into this host fails with
> 'Read from remote host HOST: connection reset by peer'
Please send me a .tgz format copy of your policy source directory after
running "make clean". Also let me know whether you have sshd run from inetd
or as a daemon.
> [There appear to be 145 blank characters after 'kernel:' and before
> 'audit(' on the lines above.]
This is a kernel bug we've seen before. It seemed to appear after the
transition to the new auditing model.
--
http://www.coker.com.au/selinux/ My NSA Security Enhanced Linux packages
http://www.coker.com.au/bonnie++/ Bonnie++ hard drive benchmark
http://www.coker.com.au/postal/ Postal SMTP/POP benchmark
http://www.coker.com.au/~russell/ My home page
More information about the selinux
mailing list