SELinux blocks access to device files when booting 2.6.32.* kernels (fc12) [SOLVED]

Karl-Michael Schneider karlmicha at gmail.com
Tue May 25 19:14:22 UTC 2010


On Mon, May 24, 2010 at 7:34 AM, Daniel J Walsh <dwalsh at redhat.com> wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> On 05/23/2010 02:32 PM, Karl-Michael Schneider wrote:
>> On Sat, May 22, 2010 at 06:05 AM, Tim <ignored_mailbox at yahoo.com.au> wrote:
>>
>>> On Fri, 2010-05-21 at 17:19 -0700, Karl-Michael Schneider wrote:
>>>
>>>> # kernel-2.6.32.12-115.fc12 in single user mode
>>>> $ ls -lZ /dev
>>>> crw-------. root root system_u:object_r:unlabeled_t:s0 agpgart
>>>> drwxr-xr-x. root root system_u:object_r:unlabeled_t:s0 block
>>>> drwxr-xr-x. root root system_u:object_r:unlabeled_t:s0 bsg
>>>>
>>>>
>>>> # kernel-2.6.31.12-174.2.22.fc12 in single user mode
>>>> $ ls -lZ /dev
>>>> crw-rw----. root audio   system_u:object_r:sound_device_t:s0 adsp
>>>> crw-------. root video   system_u:object_r:agp_device_t:s0 agpgart
>>>> crw-rw----. root audio   system_u:object_r:sound_device_t:s0 audio
>>>> drwxr-xr-x. root root    system_u:object_r:device_t:s0    block
>>>
>>> While not having the answer to your query, I might pose the obvious
>>> questions:
>>>
>>> Are you booting the other kernel on the same installation?
>>>
>>> It's just a kernel version change in your grub.conf file between the two
>>> of them?
>>>
>>> You're not booting to a second installation, where you copied all the
>>> files across, and copied /dev as files?
>>>
>>> --
>>> [tim at localhost ~]$ uname -r
>>> 2.6.27.25-78.2.56.fc9.i686
>>>
>>> Don't send private replies to my address, the mailbox is ignored.  I
>>> read messages from the public lists.
>>>
>>
>> Yes, I'm booting both kernels in the same installation. I have both
>> kernels in my grub.conf file.
>
>
> Can you post this question on the fedora selinux list.  Seems like this
> might be a kernel issue, and the kernel SELinux guys would be there.

Posted to the fedora selinux list and found the solution:

http://lists.fedoraproject.org/pipermail/selinux/2010-May/012577.html


More information about the users mailing list