avc: denied { search } for smbd

Daniel J Walsh dwalsh at redhat.com
Mon Apr 25 15:14:10 UTC 2005


Felipe Alfaro Solana wrote:

> On 23 Apr 2005, at 14:25, Ivan Gyurdiev wrote:
>
>>
>>> So I don't understand what's going on: the policy explicitly allows
>>> domain smbd_t to perform search on home_root_t:dir and /home is already
>>> labeled home_root_t.
>>
>>
>> Yes, but it only does this when samba_enable_home_dirs is on.
>>
>> Toggle the boolean.
>
>
> Thanks.
> I have manually added the following line to 
> /etc/selinux/targeted/booleans.local
>
> samba_enable_home_dirs=1
>
> but now, I'm getting these avc's:
>
> audit(1114271834.460:0): avc:  denied  { getattr } for  path=/dev/pts 
> dev=devpts ino=1 scontext=user_u:system_r:smbd_t 
> tcontext=user_u:object_r:devpts_t tclass=dir
>
Is this causing it to fail or is this just being reported in the log 
files and ignored?

> More ideas?
>
> -- 
> fedora-selinux-list mailing list
> fedora-selinux-list at redhat.com
> http://www.redhat.com/mailman/listinfo/fedora-selinux-list



-- 





More information about the selinux mailing list