avc while running appliance-creator

Miroslav Grepl mgrepl at redhat.com
Fri Nov 9 09:23:14 UTC 2012


On 11/08/2012 06:08 PM, Matthew Miller wrote:
> On Thu, Nov 08, 2012 at 11:43:20PM +0100, Dominick Grift wrote:
>>>> it is probably the /var/run symlink to /run
>>>> Looks like it is mislabeled (currently var_t; should be var_run_t)
>>>> See if restorecon -R -v -F /var/run resets it to var_run_t
>>> Ahhh. So, the /var/run symlink *inside the chroot* is
>>> "system_u:object_r:var_run_t:s0". Okay, that gives me something to go on....
>> chroot? i didnt mention a chroot. But anyways that symlink should be
>> labeled var_run_t i think and then things will be able to read it
> You didn't mention it, but appliance-creator is making one.
>
Matthew,
I am interested in how chroot subdirs look?

# ls -lZ PATH_TO_CHROOT/


More information about the selinux mailing list