{a|min}getty/wtmp AVCs

Émeric Maschino emeric.maschino at jouy.inra.fr
Wed Aug 16 09:33:14 UTC 2006


> > I'm getting the following AVCs on my Itanium system
> > (selinux-policy-targeted-2.3.6-1). Are they also noticeable on other
> > architectures?
> >
> > audit(1155148758.991:4): avc:  denied  { write } for  pid=2382 comm="mingetty" n
> > ame="wtmp" dev=dm-0 ino=360636 scontext=system_u:system_r:getty_t:s0 tcontext=sy
> > stem_u:object_r:var_log_t:s0 tclass=file

<snip>

> logrotate was broken and changing the file context on /var/log/wtmp. 
> You can restore the context with restorecon /var/log/wtmp
> Then if you update to the latest logrotate the problem should be fixed.

This worked. Thanks very mucuh.

	Émeric




More information about the fedora-selinux-list mailing list