-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On 05/08/2012 12:49 PM, Antonio Olivares wrote: > > > --- On Tue, 5/8/12, Antonio Olivares <olivares14031@xxxxxxxxx> wrote: > >> From: Antonio Olivares <olivares14031@xxxxxxxxx> Subject: Re: X Hang when >> starting machine To: "Community support for Fedora users" >> <users@xxxxxxxxxxxxxxxxxxxxxxx>, "Daniel J Walsh" <dwalsh@xxxxxxxxxx> >> Date: Tuesday, May 8, 2012, 9:35 AM >> >>>>> Could you attach a compressed "ausearch -i -m >> avc" >>>> >>>> I have updated another machine and run into the >> same >>> problem :( Starting in >>>> enforcing=0 works :) >>>> >>>> Here is the output of above command >>>> >>>> [antonio@localhost ~]$ su - Password: >> [root@localhost >>> ~]# ausearch -i -m >>>> avc ---- type=SYSCALL msg=audit(10/05/2011 >>> 10:41:15.287:109) : arch=i386 >>>> syscall=lsetxattr success=no exit=-22(Invalid >> argument) >>> a0=0xe77af68 >>>> a1=0x66f5d2 a2=0xe779d58 a3=0x24 items=0 >> ppid=1940 >>> pid=1947 auid=antonio >>>> uid=root gid=root euid=root suid=root fsuid=root >>> egid=root sgid=root >>>> fsgid=root tty=pts1 ses=2 comm=yum >> exe=/usr/bin/python >>>> subj=unconfined_u:system_r:rpm_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/05/2011 10:41:15.287:109) : avc: >>> denied { mac_admin } for >>>> pid=1947 comm=yum capability=mac_admin >>>> >> scontext=unconfined_u:system_r:rpm_t:s0-s0:c0.c1023 >>>> >> tcontext=unconfined_u:system_r:rpm_t:s0-s0:c0.c1023 >>> tclass=capability2 >>>> ---- type=SYSCALL msg=audit(10/05/2011 >>> 10:45:30.811:127) : arch=i386 >>>> syscall=unlinkat success=yes exit=0 a0=0xd >>> a1=0xbf8df2cb a2=0x0 >>>> a3=0x8422dd0 items=0 ppid=1 pid=5449 auid=unset >>> uid=root gid=root euid=root >>>> suid=root fsuid=root egid=root sgid=root >> fsgid=root >>> tty=(none) ses=unset >>>> comm=systemd-logind >> exe=/lib/systemd/systemd-logind >>>> subj=system_u:system_r:systemd_logind_t:s0 >> key=(null) >>> type=AVC >>>> msg=audit(10/05/2011 10:45:30.811:127) : avc: >>> denied { unlink } for >>>> pid=5449 comm=systemd-logind name=user dev=tmpfs >>> ino=21513 >>>> scontext=system_u:system_r:systemd_logind_t:s0 >>>> tcontext=system_u:object_r:config_home_t:s0 >> tclass=file >>> ---- type=SYSCALL >>>> msg=audit(10/06/2011 07:30:55.325:63) : arch=i386 >>> syscall=mmap success=no >>>> exit=-13(Permission denied) a0=0xbfbb8f38 a1=0x0 >>> a2=PROT_NONE a3=MAP_FILE >>>> items=0 ppid=1 pid=1865 auid=antonio uid=antonio >>> gid=antonio euid=antonio >>>> suid=antonio fsuid=antonio egid=antonio >> sgid=antonio >>> fsgid=antonio >>>> tty=(none) ses=2 comm=wine-preloader >>> exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:30:55.325:63) : avc: >>> denied { mmap_zero } for >>>> pid=1865 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:30:56.017:64) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbfb2f918 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1 pid=1872 >>> auid=antonio uid=antonio >>>> gid=antonio euid=antonio suid=antonio >> fsuid=antonio >>> egid=antonio >>>> sgid=antonio fsgid=antonio tty=(none) ses=2 >>> comm=wine-preloader >>>> exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:30:56.017:64) : avc: >>> denied { mmap_zero } for >>>> pid=1872 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:30:56.444:65) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbf832298 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1872 >> pid=1873 >>> auid=antonio >>>> uid=antonio gid=antonio euid=antonio suid=antonio >>> fsuid=antonio >>>> egid=antonio sgid=antonio fsgid=antonio >> tty=(none) >>> ses=2 >>>> comm=wine-preloader exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:30:56.444:65) : avc: >>> denied { mmap_zero } for >>>> pid=1873 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:30:56.695:66) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbf8aeff8 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1872 >> pid=1876 >>> auid=antonio >>>> uid=antonio gid=antonio euid=antonio suid=antonio >>> fsuid=antonio >>>> egid=antonio sgid=antonio fsgid=antonio >> tty=(none) >>> ses=2 >>>> comm=wine-preloader exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:30:56.695:66) : avc: >>> denied { mmap_zero } for >>>> pid=1876 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:31:00.839:68) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbfac3f28 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1 pid=1880 >>> auid=antonio uid=antonio >>>> gid=antonio euid=antonio suid=antonio >> fsuid=antonio >>> egid=antonio >>>> sgid=antonio fsgid=antonio tty=(none) ses=2 >>> comm=wine-preloader >>>> exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:31:00.839:68) : avc: >>> denied { mmap_zero } for >>>> pid=1880 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:31:00.839:67) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbfed9e88 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1 pid=1879 >>> auid=antonio uid=antonio >>>> gid=antonio euid=antonio suid=antonio >> fsuid=antonio >>> egid=antonio >>>> sgid=antonio fsgid=antonio tty=(none) ses=2 >>> comm=wine-preloader >>>> exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:31:00.839:67) : avc: >>> denied { mmap_zero } for >>>> pid=1879 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:31:10.067:69) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbfe39b38 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1876 >> pid=1892 >>> auid=antonio >>>> uid=antonio gid=antonio euid=antonio suid=antonio >>> fsuid=antonio >>>> egid=antonio sgid=antonio fsgid=antonio >> tty=(none) >>> ses=2 >>>> comm=wine-preloader exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:31:10.067:69) : avc: >>> denied { mmap_zero } for >>>> pid=1892 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:31:45.589:74) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbf8ac478 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1876 >> pid=2027 >>> auid=antonio >>>> uid=antonio gid=antonio euid=antonio suid=antonio >>> fsuid=antonio >>>> egid=antonio sgid=antonio fsgid=antonio >> tty=(none) >>> ses=2 >>>> comm=wine-preloader exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:31:45.589:74) : avc: >>> denied { mmap_zero } for >>>> pid=2027 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:31:46.811:75) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbfdf4318 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1873 >> pid=2032 >>> auid=antonio >>>> uid=antonio gid=antonio euid=antonio suid=antonio >>> fsuid=antonio >>>> egid=antonio sgid=antonio fsgid=antonio >> tty=(none) >>> ses=2 >>>> comm=wine-preloader exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:31:46.811:75) : avc: >>> denied { mmap_zero } for >>>> pid=2032 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(10/06/2011 >>> 07:31:47.648:76) : arch=i386 >>>> syscall=mmap success=no exit=-13(Permission >> denied) >>> a0=0xbf813938 a1=0x0 >>>> a2=PROT_NONE a3=MAP_FILE items=0 ppid=1 pid=2040 >>> auid=antonio uid=antonio >>>> gid=antonio euid=antonio suid=antonio >> fsuid=antonio >>> egid=antonio >>>> sgid=antonio fsgid=antonio tty=(none) ses=2 >>> comm=wine-preloader >>>> exe=/usr/bin/wine-preloader >>>> >> subj=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> key=(null) type=AVC >>>> msg=audit(10/06/2011 07:31:47.648:76) : avc: >>> denied { mmap_zero } for >>>> pid=2040 comm=wine-preloader >>>> >>> >> scontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>>> >>> >> tcontext=unconfined_u:unconfined_r:wine_t:s0-s0:c0.c1023 >>> tclass=memprotect >>>> ---- type=SYSCALL msg=audit(11/29/2011 >>> 07:10:52.252:87) : arch=i386 >>>> syscall=open success=no exit=-13(Permission >> denied) >>> a0=0x805db18 >>>> a1=O_WRONLY|O_CREAT|O_TRUNC a2=0x1b6 a3=0x0 >> items=0 >>> ppid=1 pid=4108 >>>> auid=unset uid=root gid=root euid=root suid=root >>> fsuid=root egid=root >>>> sgid=root fsgid=root tty=(none) ses=unset >> comm=mcelog >>> exe=/usr/sbin/mcelog >>>> subj=system_u:system_r:mcelog_t:s0 key=(null) >> type=AVC >>> msg=audit(11/29/2011 >>>> 07:10:52.252:87) : avc: denied { create } >>> for pid=4108 comm=mcelog >>>> name=mcelog.pid >> scontext=system_u:system_r:mcelog_t:s0 >>>> tcontext=system_u:object_r:var_run_t:s0 >> tclass=file >>> ---- type=SYSCALL >>>> msg=audit(11/29/2011 00:18:06.277:14) : arch=i386 >>> syscall=open success=no >>>> exit=-13(Permission denied) a0=0x805db18 >>> a1=O_WRONLY|O_CREAT|O_TRUNC >>>> a2=0x1b6 a3=0x0 items=0 ppid=1 pid=894 auid=unset >>> uid=root gid=root >>>> euid=root suid=root fsuid=root egid=root >> sgid=root >>> fsgid=root tty=(none) >>>> ses=unset comm=mcelog exe=/usr/sbin/mcelog >>>> subj=system_u:system_r:mcelog_t:s0 key=(null) >> type=AVC >>> msg=audit(11/29/2011 >>>> 00:18:06.277:14) : avc: denied { create } >>> for pid=894 comm=mcelog >>>> name=mcelog.pid >> scontext=system_u:system_r:mcelog_t:s0 >>>> tcontext=system_u:object_r:var_run_t:s0 >> tclass=file >>> ---- type=SYSCALL >>>> msg=audit(12/06/2011 01:54:44.898:13) : arch=i386 >>> syscall=open success=no >>>> exit=-13(Permission denied) a0=0x805db18 >>> a1=O_WRONLY|O_CREAT|O_TRUNC >>>> a2=0x1b6 a3=0x0 items=0 ppid=1 pid=916 auid=unset >>> uid=root gid=root >>>> euid=root suid=root fsuid=root egid=root >> sgid=root >>> fsgid=root tty=(none) >>>> ses=unset comm=mcelog exe=/usr/sbin/mcelog >>>> subj=system_u:system_r:mcelog_t:s0 key=(null) >> type=AVC >>> msg=audit(12/06/2011 >>>> 01:54:44.898:13) : avc: denied { create } >>> for pid=916 comm=mcelog >>>> name=mcelog.pid >> scontext=system_u:system_r:mcelog_t:s0 >>>> tcontext=system_u:object_r:var_run_t:s0 >> tclass=file >>>> >>>> I will do the same in the other machine and copy >> it >>> here inline >>>> >>>> >>>> Thanks, >>>> >>>> >>>> Antonio >>> >>> rpm -q selinux-policy selinux-policy-3.10.0-88.fc16 >>> >>> I believe some of these are fixed in the latest >> policy. >>> >> >> [students@localhost ~]$ rpm -q selinux-policy >> selinux-policy-3.10.0-86.fc16.noarch >> >> Thanks, >> >> >> Antonio -- > > But updates do not show your new -88 policy :( > > Loaded plugins: langpacks, presto, refresh-packagekit Cleaning repos: > adobe-linux-x86_64 fedora updates updates-testing Cleaning up Everything No > delta-package files removed by presto Loaded plugins: langpacks, presto, > refresh-packagekit Cleaning repos: adobe-linux-x86_64 fedora updates > updates-testing 0 metadata files removed 0 sqlite files removed 0 metadata > files removed Loaded plugins: langpacks, presto, refresh-packagekit > adobe-linux-x86_64 | 951 B 00:00 > adobe-linux-x86_64/primary | 1.2 kB > 00:00 fedora/metalink | 21 kB > 00:00 fedora | 4.2 kB > 00:00 fedora/primary_db | 14 MB > 02:15 fedora/group_gz | 431 kB > 00:01 updates/metalink | 16 kB > 00:00 updates | 4.5 kB > 00:00 updates/primary_db | 6.1 MB > 00:16 updates/group_gz | 435 kB > 00:01 updates-testing/metalink | 15 kB > 00:00 updates-testing | 4.5 kB > 00:00 updates-testing/primary_db | 1.2 MB > 00:05 updates-testing/group_gz | 435 kB > 00:01 adobe-linux-x86_64 > 2/2 No Packages marked for Update > > > Regards, > > > Antonio Yes 86 is the only one in testing right now. 88 will be next. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iEYEARECAAYFAk+pUQUACgkQrlYvE4MpobPoNwCgoUw4MAoeirKqiYwpB3mwMEPb UPoAoL8e6COhZcOuKL+rqpUklmbViAi7 =ZEPZ -----END PGP SIGNATURE----- -- users mailing list users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe or change subscription options: https://admin.fedoraproject.org/mailman/listinfo/users Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines Have a question? Ask away: http://ask.fedoraproject.org