[refpolicy] loadkeys and init fds

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Prevent audit messages on boot:

Feb 25 13:52:47 caligula kernel: audit(1203947566.566:9): avc:  denied  {
use } for  pid=2900 comm="loadkeys" path="/dev/console" dev=tmpfs ino=311
context=system_u:system_r:loadkeys_t:s0 tcontext=system_u:system_r:init_t:s0
tclass=fd

Best wishes,

-- 
Martin Orr
Index: policy/modules/apps/loadkeys.te
===================================================================
--- policy/modules/apps/loadkeys.te	(revision 2624)
+++ policy/modules/apps/loadkeys.te	(working copy)
@@ -32,6 +32,7 @@
 term_dontaudit_use_console(loadkeys_t)
 term_use_unallocated_ttys(loadkeys_t)
 
+init_dontaudit_use_fds(loadkeys_t)
 init_dontaudit_use_script_ptys(loadkeys_t)
 
 libs_use_ld_so(loadkeys_t)

[Index of Archives]     [Selinux Refpolicy]     [Linux SGX]     [Fedora Users]     [Fedora Desktop]     [Yosemite Photos]     [Yosemite Camping]     [Yosemite Campsites]     [KDE Users]     [Gnome Users]

  Powered by Linux