Not sure what to do with this one... a fix please?
======================================
Summary:
SELinux is preventing sh (awstats_t) "getattr" to / (fs_t).
Detailed Description:
SELinux denied access requested by sh. It is not expected that this
access is
required by sh and this access may signal an intrusion attempt. It is also
possible that the specific version or configuration of the application is
causing it to require additional access.
Allowing Access:
You can generate a local policy module to allow this access - see FAQ
(http://fedora.redhat.com/docs/selinux-faq-fc5/#id2961385) Or you can
disable
SELinux protection altogether. Disabling SELinux protection is not
recommended.
Please file a bug report (http://bugzilla.redhat.com/bugzilla/enter_bug.cgi)
against this package.
Additional Information:
Source Context system_u:system_r:awstats_t:s0-s0:c0.c1023
Target Context system_u:object_r:fs_t:s0
Target Objects / [ filesystem ]
Source awstats.pl
Source Path <Unknown>
Port <Unknown>
Host bronze.cdkkt.com
Source RPM Packages
Target RPM Packages filesystem-2.4.13-1.fc9
Policy RPM selinux-policy-3.3.1-74.fc9
Selinux Enabled True
Policy Type targeted
MLS Enabled True
Enforcing Mode Enforcing
Plugin Name catchall
Host Name bronze.cdkkt.com
Platform Linux bronze.cdkkt.com
2.6.25.9-76.fc9.i686 #1 SMP
Fri Jun 27 16:14:35 EDT 2008 i686 i686
Alert Count 4
First Seen Fri 11 Jul 2008 08:01:08 AM PDT
Last Seen Fri 11 Jul 2008 08:01:09 AM PDT
Local ID b2a086fa-2d4d-4819-a560-b8f0049272c6
Line Numbers
Raw Audit Messages
host=bronze.cdkkt.com type=AVC msg=audit(1215788469.468:354): avc:
denied { getattr } for pid=14761 comm="sh" name="/" dev=sda6 ino=2
scontext=system_u:system_r:awstats_t:s0-s0:c0.c1023
tcontext=system_u:object_r:fs_t:s0 tclass=filesystem
--
fedora-selinux-list mailing list
fedora-selinux-list@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/fedora-selinux-list