[policy-1.9-5] VNC module in X AVC

Aleksey Nogin aleksey at nogin.org
Sat Mar 20 20:42:19 UTC 2004


If I have

Load "vnc"

in my XF86Config, then by default the vnc module will listen on port 
5900+display. In policy-1.9-5 this does not seem to be allowed:

audit(1079814805.625:0): avc:  denied  { name_bind } for  pid=2025 
exe=/usr/X11R6/bin/XFree86 src=5900 
scontext=system_u:system_r:xdm_xserver_t 
tcontext=system_u:object_r:port_t tclass=tcp_socket

-- 
Aleksey Nogin

Home Page: http://nogin.org/
E-Mail: nogin at cs.caltech.edu (office), aleksey at nogin.org (personal)
Office: Jorgensen 70, tel: (626) 395-2907



More information about the fedora-selinux-list mailing list