/selinux/null being labeled as root_t?

Colin Walters walters at redhat.com
Fri Jan 14 16:47:33 UTC 2005


Hi,

I'm seeing an odd denial on my FC2 server after the latest kernel
updates.

Jan 14 11:38:15 monk kernel: audit(1105720695.913:0): avc:  denied  { getattr } for  pid=6661 exe=/usr/sbin/sendmail.postfix path=/null dev=selinuxfs ino=189 scontext=zosima:staff_r:staff_mail_t tcontext=system_u:object_r:root_t tclass=chr_file

So this is the /selinux/null file, which should be labeled with
security_t, correct?  My genfscon file just has:

# selinuxfs
genfscon selinuxfs /                    system_u:object_r:security_t

I'm pretty sure this is a kernel problem since I haven't changed my
policy in some time.

(Yes, I plan to upgrade to FC3 soon :))





More information about the fedora-selinux-list mailing list