Long XFS filesystem avc errors on boot

Stephen Smalley sds at epoch.ncsc.mil
Thu Apr 15 12:01:03 UTC 2004


On Thu, 2004-04-15 at 05:16, Russell Coker wrote:
> > Apr 15 11:26:06 asgard kernel: inode_doinit_with_dentry:  getxattr returned
> > 13 for dev=hde2 ino=234962799
> 
> 13 == EACCES?  That can't be right.  Steve, what do you think about this?

Is XFS internally performing its own permission check on getxattr for
the security namespace?  If so, then that is a bug in XFS, as access
checking needs to be handled by the security module so that it can
internally call the handlers without restriction.

-- 
Stephen Smalley <sds at epoch.ncsc.mil>
National Security Agency




More information about the fedora-selinux-list mailing list