mangled audit messages

Colin Walters walters at redhat.com
Thu Oct 21 17:06:35 UTC 2004


On my FC2 server, running strict policy, I am seeing a lot of these:

                                     audit(1098309975.693:0): avc:
denied  { getattr } for  pid=12283 exe=/usr/sbin/sshd
                                      audit(1098309977.469:0): avc:
denied  { getattr } for  pid=12293 exe=/usr/sbin/sshd
                                      audit(1098309984.374:0): avc:
denied  { getattr } for  pid=12319 exe=/usr/sbin/sshd
                                      audit(1098309985.817:0): avc:
denied  { getattr } for  pid=12325 exe=/usr/sbin/sshd

Note the large amount of odd leading whitespace, and the lack of any
additional information.  Does anyone know anything about this?





More information about the selinux mailing list