SELinux is preventing /bin/bash from execute_no_trans access on the
None /opt/brother/Printers/mfcj615w/lpd/filtermfcj615w.
***** Plugin catchall (100. confidence) suggests *************************** If you believe that bash should be allowed execute_no_trans access on the filtermfcj615w <Unknown> by default. Then you should report this as a bug. You can generate a local policy module to allow this access. Do allow this access for now by executing: # grep brlpdwrappermfc /var/log/audit/audit.log | audit2allow -M mypol # semodule -i mypol.pp Additional Information: Source Context system_u:system_r:cupsd_t:s0-s0:c0.c1023 Target Context system_u:object_r:usr_t:s0 Target Objects /opt/brother/Printers/mfcj615w/lpd/filtermfcj615w [ None ] Source brlpdwrappermfc Source Path /bin/bash Port <Unknown> Host Jehovah.localdomain Source RPM Packages Target RPM Packages Policy RPM <Unknown> Selinux Enabled True Policy Type targeted Enforcing Mode Enforcing Host Name Jehovah.localdomain Platform Linux Jehovah.localdomain 3.2.2-1.fc16.x86_64 #1 SMP Thu Jan 26 03:21:58 UTC 2012 x86_64 x86_64 Alert Count 2 First Seen Fri 27 Jan 2012 12:35:29 PM MST Last Seen Fri 27 Jan 2012 12:35:29 PM MST Local ID 72f11958-62ee-45d1-a029-b0fbd3a9d34d Raw Audit Messages type=AVC msg=audit(1327692929.988:222): avc: denied { execute_no_trans } for pid=7256 comm="brlpdwrappermfc" path="/opt/brother/Printers/mfcj615w/lpd/filtermfcj615w" dev=dm-1 ino=281110 scontext=system_u:system_r:cupsd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:usr_t:s0 tclass=filenode=Jehovah.localdomain type=SYSCALL msg=audit(1327692929.988:222): arch=c000003e syscall=59 success=no exit=-13 a0=126d6c0 a1=126d620 a2=1268640 a3=28 items=0 ppid=7233 pid=7256 auid=4294967295 uid=4 gid=7 euid=4 suid=4 fsuid=4 egid=7 sgid=7 fsgid=7 tty=(none) ses=4294967295 comm="brlpdwrappermfc" exe="/bin/bash" subj=system_u:system_r:cupsd_t:s0-s0:c0.c1023 key=(null) Hash: brlpdwrappermfc,cupsd_t,usr_t,None,execute_no_trans audit2allow audit2allow -R --
Lawrence Graves |
-- users mailing list users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe or change subscription options: https://admin.fedoraproject.org/mailman/listinfo/users Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines Have a question? Ask away: http://ask.fedoraproject.org