avc denied messages from microcode_ctl

Russell Coker russell at coker.com.au
Tue Jun 15 02:42:09 UTC 2004


On Tue, 15 Jun 2004 12:13, Tom London <selinux at comcast.net> wrote:
> [root at dell root]# ls -l /udev/microcode
> crw-------  1 root root 10, 184 May 25 13:56 /udev/microcode
> [root at dell root]# ls -lZ /udev/microcode
> crw-------  root     root     system_u:object_r:device_t
> /udev/microcode
> [root at dell root]#

It seems that /dev/cpu/[0-9]+/microcode has moved to /dev/microcode.  I think 
that's a good thing.

Add the following to file_contexts/types.fc right after the /dev/cpu entry and 
then things should be fine.

/u?dev/microcode        -c      system_u:object_r:cpu_device_t


-- 
http://www.coker.com.au/selinux/   My NSA Security Enhanced Linux packages
http://www.coker.com.au/bonnie++/  Bonnie++ hard drive benchmark
http://www.coker.com.au/postal/    Postal SMTP/POP benchmark
http://www.coker.com.au/~russell/  My home page



More information about the fedora-selinux-list mailing list