SELinux is preventing /usr/lib/nspluginwrapper/npviewer.bin from create
access on the file C:\nppdf32Log\debuglog.txt.
***** Plugin catchall (100. confidence) suggests
***************************
If you believe that npviewer.bin should be allowed create access on the
C:\nppdf32Log\debuglog.txt file by default.
Then you should report this as a bug.
You can generate a local policy module to allow this access.
Do
allow this access for now by executing:
# grep npviewer.bin /var/log/audit/audit.log | audit2allow -M mypol
# semodule -i mypol.pp
Additional Information:
Source Context unconfined_u:unconfined_r:mozilla_plugin_t:s0-s0:c
0.c1023
Target Context unconfined_u:object_r:user_home_dir_t:s0
Target Objects C:\nppdf32Log\debuglog.txt [ file ]
Source npviewer.bin
Source Path /usr/lib/nspluginwrapper/npviewer.bin
Port <Unknown>
Host Jehovah
Source RPM Packages nspluginwrapper-1.4.4-16.fc18.i686
Target RPM Packages
Policy RPM selinux-policy-3.11.1-67.fc18.noarch
Selinux Enabled True
Policy Type targeted
Enforcing Mode Enforcing
Host Name Jehovah
Platform Linux Jehovah 3.6.11-3.fc18.x86_64 #1 SMP Mon Dec
17 21:35:39 UTC 2012 x86_64 x86_64
Alert Count 3
First Seen 2013-01-02 17:02:25 MST
Last Seen 2013-01-02 18:13:10 MST
Local ID 80708610-0de3-4dca-ae85-b9d28921e2f9
Raw Audit Messages
type=AVC msg=audit(1357175590.638:355): avc: denied { create } for
pid=4218 comm="npviewer.bin" name="C:\nppdf32Log\debuglog.txt"
scontext=unconfined_u:unconfined_r:mozilla_plugin_t:s0-s0:c0.c1023
tcontext=unconfined_u:object_r:user_home_dir_t:s0 tclass=file
type=SYSCALL msg=audit(1357175590.638:355): arch=i386 syscall=fstat
per=8 success=no exit=EACCES a0=f777432a a1=441 a2=1b6 a3=904e8b0
items=0 ppid=4122 pid=4218 auid=1000 uid=1000 gid=1000 euid=1000
suid=1000 fsuid=1000 egid=1000 sgid=1000 fsgid=1000 tty=(none) ses=2
comm=npviewer.bin exe=/usr/lib/nspluginwrapper/npviewer.bin
subj=unconfined_u:unconfined_r:mozilla_plugin_t:s0-s0:c0.c1023 key=(null)
Hash: npviewer.bin,mozilla_plugin_t,user_home_dir_t,file,create
audit2allow
#============= mozilla_plugin_t ==============
allow mozilla_plugin_t user_home_dir_t:file create;
audit2allow -R
#============= mozilla_plugin_t ==============
allow mozilla_plugin_t user_home_dir_t:file create;
--
All things are workable but don't all things work. Prov. 3:5 & 6
--
test mailing list
test@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe:
https://admin.fedoraproject.org/mailman/listinfo/test