I got a avc: denied { search } for comm="pam_console_app" dev=sdb6 egid=650 euid=0 exe="/sbin/pam_console_apply" exit=-13 fsgid=650 fsuid=0 gid=650 items=0 name="gdm" pid=2693 scontext=system_u:system_r:pam_console_t:s0-s0:c0.c1023 sgid=650 subj=system_u:system_r:pam_console_t:s0-s0:c0.c1023 suid=0 tclass=dir tcontext=system_u:object_r:xserver_log_t:s0 tty=(none) uid=0 audit2allow recommended: allow pam_console_t xserver_log_t:dir search; Is this a reasonable module for me to add? To me it seems benign. -- William Chimiak Laboratory for Telecommunications Sciences 8080 Greenmead Road College Park, MD 240-949-2778 -- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with the words "unsubscribe selinux" without quotes as the message.