SELinux not enabled

Sjoerd Mullender sjoerd at acm.org
Tue Apr 12 19:13:23 UTC 2005


Stephen Smalley wrote:
> On Tue, 2005-04-12 at 20:53 +0200, Sjoerd Mullender wrote:
> 
>># dmesg | grep -i selinux
>>SELinux:  Initializing.
>>SELinux:  Starting in permissive mode
>>selinux_register_security:  Registering secondary module capability
>>SELinux:  Registering netfilter hooks
>># setenforce Permissive
>>setenforce: SELinux is disabled
>>
>>Note that there is a lot of stuff missing from the dmesg output (I
>>compared this with a system where it does work).
> 
> 
> This suggests that policy was never loaded by /sbin/init.  What is
> in /etc/selinux/targeted/policy?  Can you load it by hand,
> i.e. /usr/sbin/load_policy /etc/selinux/targeted/policy/policy.<version>?
> 

No:
# /usr/sbin/load_policy /etc/selinux/targeted/policy/policy.18
load_policy: booleans.c:48: security_get_boolean_names: Assertion
`selinux_mnt' failed.
Aborted


-- 
Sjoerd Mullender <sjoerd at acm.org>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3931 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20050412/21e5edbb/attachment.bin>


More information about the fedora-selinux-list mailing list