On 06/23/2011 06:29 AM, GSO wrote: > Jun 22 21:40:22 localhost kernel: SELinux: Permission execmod in class > fifo_file not defined in policy. > Jun 22 21:40:22 localhost kernel: SELinux: Permission syslog in class > capability2 not defined in policy. > Jun 22 21:40:22 localhost kernel: SELinux: the above unknown classes and > permissions will be allowed These aren't a big deal. It just tells me that you are running a new kernel and an old policy. (upstream kernel with RHEL6 policy?) They are not the cause of your problem. Something else being dontaudit'd is likely the cause of the problem if it all works in permissive. -Eric -- selinux mailing list selinux@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/selinux