Long XFS filesystem avc errors on boot

Aleksey Nogin aleksey at nogin.org
Thu Apr 15 12:33:16 UTC 2004


On Thu, Apr 15, 2004 at 07:16:25PM +1000, Russell Coker wrote:

> > Apr 15 11:27:19 asgard kernel: audit(1081992439.880:0): avc:  denied  {
> > read } for  pid=1802 exe=/usr/bin/kdm name=mem dev=hde2 ino=33580795
> > scontext=system_u:system_r:xdm_t tcontext=system_u:object_r:memory_device_t
> > tclass=chr_file
> > Apr 15 11:27:19 asgard kdm[1802]: Cannot read randomFile "/dev/mem"; X
> > cookies may be easily guessable
> 
> This one is already in bugzilla.  

Yes, bug #118051.

> You could put an allow rule in custom.te if you want to reduce the noise.

A better workaround is to add a line "RandomDevice=/dev/urandom" to the "General" section of your /etc/X11/xdm/kdmrc file.

-- 
Aleksey Nogin

Home Page: http://nogin.org/
E-Mail: nogin at cs.caltech.edu (office), aleksey at nogin.org (personal)
Office: Jorgensen 70, tel: (626) 395-2907



More information about the fedora-selinux-list mailing list