Can't set context of VFAT filesystem

Christopher J. PeBenito cpebenito at tresys.com
Mon Aug 21 13:10:03 UTC 2006


On Sat, 2006-08-19 at 09:18 -0500, Ian Pilcher wrote:
> I am unable to use the context, fscontext, or defcontext options when
> mounting a VFAT filesystem:
> 
> type=AVC msg=audit(1155867673.190:23): avc:  denied  { relabelto } for
> pid=2641 comm="mount"
> scontext=root:system_r:unconfined_mount_t:s0-s0:c0.c255
> tcontext=system_u:object_r:bootloader_t:s0 tclass=filesystem
> 
> Anyone know if this is a bug or expected behavior?

You can't relabel it to bootloader_t, thats a domain type, not a file
type.  My guess is that you want boot_t.

-- 
Chris PeBenito
Tresys Technology, LLC
(410) 290-1411 x150




More information about the fedora-selinux-list mailing list