auditd
Alexander Dalloz
ad+lists at uni-x.org
Wed Jun 15 15:26:12 UTC 2005
Am Mi, den 15.06.2005 schrieb Shahzad Chohan um 15:15:
> How do I stop these from popping up on the console. I thought that by
> disabling selinux they would stop coming, but I still get them. In
> this case all i did was ping www.google.com, then this popped up
>
> audit(1118840893.580:16511): avc: denied { name_connect } for
> pid=1220 comm="ping" dest=111 scontext=root:system_r:unconfined_t
> tcontext=system_u:object_r:portmap_port_t tclass=tcp_socket
> Shaz
Check bugzilla.redhat.com whether a report is there already. If not I
think you should fill in a ticket. For FC3 there is a targeted policy
update in testing period
Mon Jun 13 2005 Dan Walsh <dwalsh at redhat.com> 1.17.30-3.9
- Allow unconfined_t full execmod access.
and as your audit message too shows "unconfirmed_t" I think it is the
same case. But yet I am not really SELinux skilled (as much as I would
like to be) ;)
Alexander
--
Alexander Dalloz | Enger, Germany | GPG http://pgp.mit.edu 0xB366A773
legal statement: http://www.uni-x.org/legal.html
Fedora Core 2 GNU/Linux on Athlon with kernel 2.6.11-1.27_FC2smp
Serendipity 17:19:18 up 22 days, 15:57, load average: 0.31, 0.21, 0.19
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Dies ist ein digital signierter Nachrichtenteil
Url : http://lists.fedoraproject.org/pipermail/users/attachments/20050615/2d343cf4/attachment-0002.bin
More information about the users
mailing list