crond wants 'entrypoint' for updpwd_exec_t

Tom London selinux at gmail.com
Sat Jul 28 23:32:35 UTC 2007


Rawhide, targeted/enforcing.

Seeing the below.

Sort of remember something similar (May 30 according to gmail) that
seemed to be resolved by pam:
http://www.redhat.com/archives/fedora-selinux-list/2007-May/msg00095.html

This similar?

tom


type=AVC msg=audit(1185663661.818:55): avc:  denied  { entrypoint }
for  pid=8356 comm="crond" path="/sbin/unix_update" dev=dm-0
ino=11338066 scontext=system_u:system_r:system_chkpwd_t:s0-s0:c0.c1023
tcontext=system_u:object_r:updpwd_exec_t:s0 tclass=file
type=SYSCALL msg=audit(1185663661.818:55): arch=40000003 syscall=11
success=no exit=-13 a0=2c2918 a1=bffa858c a2=2c4408 a3=400 items=0
ppid=8355 pid=8356 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0
egid=0 sgid=0 fsgid=0 tty=(none) comm="crond" exe="/usr/sbin/crond"
subj=system_u:system_r:crond_t:s0-s0:c0.c1023 key=(null)

-- 
Tom London




More information about the fedora-selinux-list mailing list