denied avcs Rawhide how to troubleshoot

Daniel J Walsh dwalsh at redhat.com
Tue Apr 10 17:46:29 UTC 2007


Antonio Olivares wrote:
Dear list,
> I am running rawhide and I get these denied avcs
>
> [olivares at localhost ~]$ cat /etc/fedora-release 
> Fedora release 6.92 (Rawhide)
> [olivares at localhost ~]$ 
>
> There is a tool semanage, but I do not know how to use it.  Is there any reference to this new tool.  
> How do I fix this using chcon -?  or other tools to troubleshoot this.
>
> audit(1176209974.281:4): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1440" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:5): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1680" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:6): avc:  denied  { create } for  pid=991 comm="cIreate_floppy_d" name="fd0u1722" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:7): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1743" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:8): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1760" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:9): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1920" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:10): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1840" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:11): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1600" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:12): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u360" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:13): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u720" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:14): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u820" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:15): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u830" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:16): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1040" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:17): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u1120" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
> audit(1176209974.281:18): avc:  denied  { create } for  pid=991 comm="create_floppy_d" name="fd0u800" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
>
>
>
>
> Thanks,
>
> Antonio 
>
>
>
>
>        
> ____________________________________________________________________________________
> Don't pick lemons.
> See all the new 2007 cars at Yahoo! Autos.
> http://autos.yahoo.com/new_cars.html 
>
> --
> fedora-selinux-list mailing list
> fedora-selinux-list at redhat.com
> https://www.redhat.com/mailman/listinfo/fedora-selinux-list
>   

Please submit this as a udev bug.




More information about the selinux mailing list