[Bug 1346766] amavisd-new selinux policies prevent it running

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



https://bugzilla.redhat.com/show_bug.cgi?id=1346766



--- Comment #2 from Juan Orti <j.orti.alcaine@xxxxxxxxx> ---
SELinux is preventing (amavisd) from execute_no_trans access on the file
/usr/sbin/amavisd.

*****  Plugin catchall (100. confidence) suggests   **************************

If cree que de manera predeterminada, (amavisd) debería permitir acceso
execute_no_trans sobre amavisd file.     
Then debería reportar esto como un error.
Puede generar un módulo de política local para permitir este acceso.
Do
allow this access for now by executing:
# ausearch -c '(amavisd)' --raw | audit2allow -M my-amavisd
# semodule -X 300 -i my-amavisd.pp


Additional Information:
Source Context                system_u:system_r:init_t:s0
Target Context                system_u:object_r:antivirus_exec_t:s0
Target Objects                /usr/sbin/amavisd [ file ]
Source                        (amavisd)
Source Path                   (amavisd)
Port                          <Unknown>
Host                          argon
Source RPM Packages           
Target RPM Packages           amavisd-new-2.10.1-7.fc24.noarch
Policy RPM                    selinux-policy-3.13.1-190.fc24.noarch
Selinux Enabled               True
Policy Type                   targeted
Enforcing Mode                Enforcing
Host Name                     argon
Platform                      Linux argon 4.5.5-300.fc24.x86_64 #1 SMP Thu May
                              19 13:05:32 UTC 2016 x86_64 x86_64
Alert Count                   10
First Seen                    2016-06-16 10:26:00 CEST
Last Seen                     2016-06-16 11:06:05 CEST
Local ID                      15a5aba5-49c1-45f8-ace2-850bf58f3527

Raw Audit Messages
type=AVC msg=audit(1466067965.229:629): avc:  denied  { execute_no_trans } for 
pid=2376 comm="(amavisd)" path="/usr/sbin/amavisd" dev="dm-0" ino=17305787
scontext=system_u:system_r:init_t:s0
tcontext=system_u:object_r:antivirus_exec_t:s0 tclass=file permissive=0


Hash: (amavisd),init_t,antivirus_exec_t,file,execute_no_trans

-- 
You are receiving this mail because:
You are on the CC list for the bug.
--
Fedora Extras Perl SIG
http://www.fedoraproject.org/wiki/Extras/SIGs/Perl
perl-devel mailing list
perl-devel@xxxxxxxxxxxxxxxxxxxxxxx
https://lists.fedoraproject.org/admin/lists/perl-devel@xxxxxxxxxxxxxxxxxxxxxxx




[Index of Archives]     [Fedora Announce]     [Fedora Kernel]     [Fedora Testing]     [Fedora Legacy Announce]     [Fedora PHP Devel]     [Kernel Devel]     [Fedora Legacy]     [Fedora Maintainers]     [Fedora Desktop]     [PAM]     [Red Hat Development]     [Big List of Linux Books]     [Gimp]     [Yosemite Information]
  Powered by Linux