Hi, I'm testing livecd-creator under rawhide and I see a lot of alerts and setroubleshoot service crashes. Here it grep setroubleshoot /var/log/audit/audit.log > setroubleshoot.log Cheers, Valent. -- http://kernelreloaded.blog385.com/ linux, blog, anime, spirituality, windsurf, wireless registered as user #367004 with the Linux Counter, http://counter.li.org. ICQ: 2125241, Skype: valent.turkovic
type=AVC msg=audit(1205940492.238:121): avc: denied { write } for pid=3151 comm="sealert" name="setroubleshoot_server" dev=sda9 ino=229010 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_run_t:s0 tclass=sock_file type=AVC msg=audit(1205940492.238:121): avc: denied { connectto } for pid=3151 comm="sealert" path="/var/run/setroubleshoot/setroubleshoot_server" scontext=user_u:user_r:user_t:s0 tcontext=system_u:system_r:setroubleshootd_t:s0 tclass=unix_stream_socket type=AVC msg=audit(1205942029.767:740): avc: denied { ptrace } for pid=5457 comm="killall" scontext=user_u:user_r:user_t:s0 tcontext=system_u:system_r:setroubleshootd_t:s0 tclass=process type=AVC msg=audit(1205942134.029:1079): avc: denied { ptrace } for pid=5753 comm="pidof" scontext=user_u:user_r:user_t:s0 tcontext=system_u:system_r:setroubleshootd_t:s0 tclass=process type=AVC msg=audit(1205942211.618:1353): avc: denied { ptrace } for pid=8823 comm="killall" scontext=user_u:user_r:user_t:s0 tcontext=system_u:system_r:setroubleshootd_t:s0 tclass=process type=AVC msg=audit(1205942314.989:1605): avc: denied { getattr } for pid=2473 comm="setroubleshootd" path="/root" dev=sda9 ino=750721 scontext=system_u:system_r:setroubleshootd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=dir type=SYSCALL msg=audit(1205942314.989:1605): arch=40000003 syscall=195 success=yes exit=0 a0=b7b7dc20 a1=b7b7dc74 a2=adcff4 a3=b7b7dc20 items=0 ppid=1 pid=2473 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="setroubleshootd" exe="/usr/bin/python" subj=system_u:system_r:setroubleshootd_t:s0 key=(null) type=AVC msg=audit(1205942356.868:1890): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=34368 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:initrc_exec_t:s0 tclass=file type=AVC msg=audit(1205942356.868:1891): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=34368 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:initrc_exec_t:s0 tclass=file type=AVC msg=audit(1205942356.870:1892): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=34369 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:etc_t:s0 tclass=dir type=AVC msg=audit(1205942356.870:1893): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=34369 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:etc_t:s0 tclass=dir type=AVC msg=audit(1205942356.879:1894): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=159305 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:lib_t:s0 tclass=dir type=AVC msg=audit(1205942356.879:1895): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=159305 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:lib_t:s0 tclass=dir type=AVC msg=audit(1205942356.939:1896): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshootd" dev=loop0 ino=70060 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshootd_exec_t:s0 tclass=file type=AVC msg=audit(1205942356.939:1897): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshootd" dev=loop0 ino=70060 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshootd_exec_t:s0 tclass=file type=AVC msg=audit(1205942357.185:1898): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102085 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_lib_t:s0 tclass=dir type=AVC msg=audit(1205942357.186:1899): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102085 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_lib_t:s0 tclass=dir type=AVC msg=audit(1205942357.187:1900): avc: denied { add_name } for pid=3651 comm="livecd-creator" name="setroubleshoot" scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:var_log_t:s0 tclass=dir type=AVC msg=audit(1205942357.187:1900): avc: denied { create } for pid=3651 comm="livecd-creator" name="setroubleshoot" scontext=user_u:user_r:user_t:s0 tcontext=user_u:object_r:var_log_t:s0 tclass=dir type=AVC msg=audit(1205942357.188:1901): avc: denied { relabelfrom } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102086 scontext=user_u:user_r:user_t:s0 tcontext=user_u:object_r:var_log_t:s0 tclass=dir type=AVC msg=audit(1205942357.188:1901): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102086 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_log_t:s0 tclass=dir type=AVC msg=audit(1205942357.189:1902): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102086 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_log_t:s0 tclass=dir type=AVC msg=audit(1205942357.189:1903): avc: denied { add_name } for pid=3651 comm="livecd-creator" name="setroubleshoot" scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:var_run_t:s0 tclass=dir type=AVC msg=audit(1205942357.189:1903): avc: denied { create } for pid=3651 comm="livecd-creator" name="setroubleshoot" scontext=user_u:user_r:user_t:s0 tcontext=user_u:object_r:var_run_t:s0 tclass=dir type=AVC msg=audit(1205942357.191:1904): avc: denied { relabelfrom } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102087 scontext=user_u:user_r:user_t:s0 tcontext=user_u:object_r:var_run_t:s0 tclass=dir type=AVC msg=audit(1205942357.191:1904): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102087 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_run_t:s0 tclass=dir type=AVC msg=audit(1205942357.192:1905): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshoot" dev=loop0 ino=102087 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_run_t:s0 tclass=dir type=AVC msg=audit(1205942357.611:1908): avc: denied { ioctl } for pid=9149 comm="setroubleshoot" path="/etc/rc.d/init.d/setroubleshoot" dev=loop0 ino=34368 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:initrc_exec_t:s0 tclass=file type=SYSCALL msg=audit(1205942357.611:1908): arch=40000003 syscall=54 success=no exit=-25 a0=3 a1=5401 a2=bfce2018 a3=bfce2058 items=0 ppid=9144 pid=9149 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts1 ses=1 comm="setroubleshoot" exe="/bin/bash" subj=user_u:user_r:user_t:s0 key=(null) type=AVC msg=audit(1205942368.805:1943): avc: denied { relabelto } for pid=3651 comm="livecd-creator" name="setroubleshoot_icon.png" dev=loop0 ino=127690 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:usr_t:s0 tclass=lnk_file type=AVC msg=audit(1205942368.806:1944): avc: denied { setattr } for pid=3651 comm="livecd-creator" name="setroubleshoot_icon.png" dev=loop0 ino=127690 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:usr_t:s0 tclass=lnk_file type=AVC msg=audit(1205942368.808:1945): avc: denied { unlink } for pid=3651 comm="livecd-creator" name="setroubleshoot_icon.png" dev=loop0 ino=115652 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:usr_t:s0 tclass=file type=AVC msg=audit(1205946614.523:2278): avc: denied { connectto } for pid=14588 comm="setroubleshootd" path="/var/run/audispd_events" scontext=root:sysadm_r:sysadm_t:s0-s0:c0.c1023 tcontext=system_u:system_r:auditd_t:s0 tclass=unix_stream_socket type=SYSCALL msg=audit(1205946614.523:2278): arch=40000003 syscall=102 success=yes exit=0 a0=3 a1=b70ad360 a2=14e118 a3=0 items=0 ppid=1 pid=14588 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4 comm="setroubleshootd" exe="/usr/bin/python" subj=root:sysadm_r:sysadm_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1205946666.624:2300): avc: denied { write } for pid=14960 comm="setroubleshootd" name="setroubleshootd.pid" dev=sda9 ino=228620 scontext=system_u:system_r:setroubleshootd_t:s0 tcontext=root:object_r:var_run_t:s0 tclass=file type=SYSCALL msg=audit(1205946666.624:2300): arch=40000003 syscall=5 success=yes exit=5 a0=83d68f8 a1=8241 a2=1b6 a3=240 items=0 ppid=14959 pid=14960 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="setroubleshootd" exe="/usr/bin/python" subj=system_u:system_r:setroubleshootd_t:s0 key=(null) type=AVC msg=audit(1205946842.829:136): avc: denied { write } for pid=3200 comm="sealert" name="setroubleshoot_server" dev=sda9 ino=229010 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_run_t:s0 tclass=sock_file type=AVC msg=audit(1205946842.829:136): avc: denied { connectto } for pid=3200 comm="sealert" path="/var/run/setroubleshoot/setroubleshoot_server" scontext=user_u:user_r:user_t:s0 tcontext=system_u:system_r:setroubleshootd_t:s0 tclass=unix_stream_socket type=AVC msg=audit(1205947494.683:115): avc: denied { write } for pid=3124 comm="sealert" name="setroubleshoot_server" dev=sda9 ino=229012 scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:setroubleshoot_var_run_t:s0 tclass=sock_file type=AVC msg=audit(1205947494.683:115): avc: denied { connectto } for pid=3124 comm="sealert" path="/var/run/setroubleshoot/setroubleshoot_server" scontext=user_u:user_r:user_t:s0 tcontext=system_u:system_r:setroubleshootd_t:s0 tclass=unix_stream_socket type=AVC msg=audit(1205996975.891:3748): avc: denied { getattr } for pid=2451 comm="setroubleshootd" path="/var/lib/PolicyKit" dev=sda9 ino=228605 scontext=system_u:system_r:setroubleshootd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=dir type=SYSCALL msg=audit(1205996975.891:3748): arch=40000003 syscall=195 success=yes exit=0 a0=b79fbc00 a1=b79fbc64 a2=adcff4 a3=b79fbc00 items=0 ppid=1 pid=2451 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="setroubleshootd" exe="/usr/bin/python" subj=system_u:system_r:setroubleshootd_t:s0 key=(null) type=AVC msg=audit(1205998487.975:3886): avc: denied { add_name } for pid=5046 comm="bash" name="setroubleshoot.log" scontext=user_u:user_r:user_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=dir
-- fedora-selinux-list mailing list fedora-selinux-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-selinux-list