rawhide avcs...(hostname, restorecon)

Tom London selinux at gmail.com
Sat Jan 14 17:36:03 UTC 2006


Avcs from today's rawhide (selinux-policy-targeted-2.1.10-1) (enforcing):

>From /var/log/messages:
Jan 14 09:27:16 localhost kernel: SELinux: initialized (dev sysfs,
type sysfs), uses genfs_contexts
Jan 14 09:27:16 localhost kernel: audit(1137230757.160:2): avc: 
denied  { read write } for  pid=400 comm="hostname" name="console"
dev=tmpfs ino=560 scontext=system_u:system_r:hostname_t:s0
tcontext=system_u:object_r:tmpfs_t:s0 tclass=chr_file
Jan 14 09:27:16 localhost kernel: audit(1137230757.160:3): avc: 
denied  { read write } for  pid=400 comm="hostname" name="console"
dev=tmpfs ino=560 scontext=system_u:system_r:hostname_t:s0
tcontext=system_u:object_r:tmpfs_t:s0 tclass=chr_file
Jan 14 09:27:16 localhost kernel: audit(1137230757.160:4): avc: 
denied  { read write } for  pid=400 comm="hostname" name="console"
dev=tmpfs ino=560 scontext=system_u:system_r:hostname_t:s0
tcontext=system_u:object_r:tmpfs_t:s0 tclass=chr_file
Jan 14 09:27:16 localhost kernel: SELinux: initialized (dev usbfs,
type usbfs), uses genfs_contexts
Jan 14 09:27:16 localhost kernel: audit(1137230758.780:5): avc: 
denied  { write } for  pid=413 comm="restorecon" name="[987]"
dev=pipefs ino=987 scontext=system_u:system_r:restorecon_t:s0
tcontext=system_u:system_r:restorecon_t:s0 tclass=fifo_file
Jan 14 09:27:16 localhost kernel: audit(1137230758.780:6): avc: 
denied  { read } for  pid=412 comm="restorecon" name="[987]"
dev=pipefs ino=987 scontext=system_u:system_r:restorecon_t:s0
tcontext=system_u:system_r:restorecon_t:s0 tclass=fifo_file
Jan 14 09:27:16 localhost kernel: hw_random hardware driver 1.0.0 loaded

--
Tom London




More information about the selinux mailing list