auditd

Alexander Dalloz ad+lists at uni-x.org
Wed Jun 15 15:26:12 UTC 2005


Am Mi, den 15.06.2005 schrieb Shahzad Chohan um 15:15:

> How do I stop these from popping up on the console. I thought that by
> disabling selinux they would stop coming, but I still get them. In
> this case all i did was ping www.google.com, then this popped up
> 
> audit(1118840893.580:16511): avc:  denied  { name_connect } for 
> pid=1220 comm="ping" dest=111 scontext=root:system_r:unconfined_t
> tcontext=system_u:object_r:portmap_port_t tclass=tcp_socket

> Shaz

Check bugzilla.redhat.com whether a report is there already. If not I
think you should fill in a ticket. For FC3 there is a targeted policy
update in testing period

Mon Jun 13 2005 Dan Walsh <dwalsh at redhat.com> 1.17.30-3.9

- Allow unconfined_t full execmod access. 

and as your audit message too shows "unconfirmed_t" I think it is the
same case. But yet I am not really SELinux skilled (as much as I would
like to be) ;)

Alexander


-- 
Alexander Dalloz | Enger, Germany | GPG http://pgp.mit.edu 0xB366A773
legal statement: http://www.uni-x.org/legal.html
Fedora Core 2 GNU/Linux on Athlon with kernel 2.6.11-1.27_FC2smp 
Serendipity 17:19:18 up 22 days, 15:57, load average: 0.31, 0.21, 0.19 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Dies ist ein digital signierter Nachrichtenteil
Url : http://lists.fedoraproject.org/pipermail/users/attachments/20050615/2d343cf4/attachment-0002.bin 


More information about the users mailing list